code-blueCTF-writeup
#guestroom下载源码审计首先我们来看如何得到flag123456$app->get('/flag', function () use ($app) { if (isset($_SESSION['is_logined']) === false || isset($_SESSION['is_guest']) === true) { $app->redirect('/#try+harder'); } return $app->flag;});
这里我们需要构造is_guest===false,所以我们来
...