Skip to content

Conversation

@rullzer
Copy link
Member

@rullzer rullzer commented Feb 9, 2021

we only set the cookie if it is a proper <=32 char alphanum string.
Otherwise we just ignore the input.
Makes psalm also happier so that we can focus on other errors.

Signed-off-by: Roeland Jago Douma [email protected]

we only set the cookie if it is a proper <=32 char alphanum string.
Otherwise we just ignore the input.
Makes psalm also happier so that we can focus on other errors.

Signed-off-by: Roeland Jago Douma <[email protected]>
@rullzer rullzer added enhancement 3. to review Waiting for reviews labels Feb 9, 2021
@rullzer rullzer added this to the Nextcloud 22 milestone Feb 9, 2021
@LukasReschke LukasReschke merged commit d42f9e6 into master Feb 10, 2021
@LukasReschke LukasReschke deleted the fix/pslam/tainted_cookie branch February 10, 2021 11:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review Waiting for reviews enhancement

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants