> The issue with Plausible's server: I didn't want to put it out there because then they get the fix for their commercial product for free after I spent the time doing all the work for them, but I feel like the same bug might actually exist all over the Web, so I'm going to write it up and post it online.
Yeah, no. So far, you only say there's a bug in their server configuration that prevents logging in some cases. I self host plausible and I'd be very much interested in what misconfiguration I could have triggered.
Is it a TCP pool connection problem ? A pre-flight request thing ? Wrong CORS headers ?
On one hand you could be doing FUD, on the other there is a gunfoot problem that could impact self hosters but the knowledge doesn't come out.
I suppose it's a problem that can be pinpoint from the outside, without knowing the proxy stack running at plausible so it should be observable with HTTP sniffer/wireshark.
Yeah, no. So far, you only say there's a bug in their server configuration that prevents logging in some cases. I self host plausible and I'd be very much interested in what misconfiguration I could have triggered.
Is it a TCP pool connection problem ? A pre-flight request thing ? Wrong CORS headers ?
On one hand you could be doing FUD, on the other there is a gunfoot problem that could impact self hosters but the knowledge doesn't come out.
I suppose it's a problem that can be pinpoint from the outside, without knowing the proxy stack running at plausible so it should be observable with HTTP sniffer/wireshark.