aboutsummaryrefslogtreecommitdiffstats
path: root/doc
diff options
context:
space:
mode:
authorLoïc Hoguin <[email protected]>2024-01-05 16:24:25 +0100
committerLoïc Hoguin <[email protected]>2024-01-05 16:32:59 +0100
commit6ef79ae410d9bce15a361303ec283f6381965404 (patch)
tree050db233e9df42e421e96f6df0ff4897dc6d8ec4 /doc
parent5b2f600036145653c48a7e8a60853e4a0ecc770b (diff)
downloadcowboy-6ef79ae410d9bce15a361303ec283f6381965404.tar.gz
cowboy-6ef79ae410d9bce15a361303ec283f6381965404.tar.bz2
cowboy-6ef79ae410d9bce15a361303ec283f6381965404.zip
Reject HTTP/1 requests with both content-length and transfer-encoding
The previous behavior was to accept them and drop the content-length header as per the RFC recommendation. But since this behavior is not normal it is safer to just reject such requests than risk security issues.
Diffstat (limited to 'doc')
0 files changed, 0 insertions, 0 deletions