Open jernst opened 11 hours ago
It seems to be activated in wp_safe_remote_get in wp-includes/http.php and things like WebFinger lookup invoke this with the default arguments, which is to check for SSRF, and of course reasonable but cannot be easily overridden.
wp_safe_remote_get
wp-includes/http.php
Once done, make smoke test work: mastodon_api_mastodon_api.session.json with wordpress_mastodon.ubos.constellation.json
mastodon_api_mastodon_api.session.json
wordpress_mastodon.ubos.constellation.json
It seems to be activated in
wp_safe_remote_get
inwp-includes/http.php
and things like WebFinger lookup invoke this with the default arguments, which is to check for SSRF, and of course reasonable but cannot be easily overridden.