In Apache APISIX Dashboard before 2.10.1, the Manager API uses two frameworks and introduces framework `droplet` on the basis of framework `gin`, all APIs and authentication middleware are developed based on framework `droplet`, but some API directly use the interface of framework `gin` thus bypassing the authentication.
https://github.com/AnonUsenix/LLM_Agent_Cybersecurity_Forensic
https://github.com/YutuSec/Apisix_Crack
https://github.com/yggcwhat/Demo
https://github.com/fany0r/CVE-2021-45232-RCE
https://github.com/Kuibagit/CVE-2021-45232-RCE
https://github.com/GYLQ/CVE-2021-45232-RCE
https://github.com/jxpsx/CVE-2021-45232-RCE
https://github.com/shakeman8/CVE-2021-45232-RCE
https://github.com/Osyanina/westone-CVE-2021-45232-scanner
https://lists.apache.org/thread/979qbl6vlm8269fopfyygnxofgqyn6k5