diff options
| author | Carl Meyer <carl@oddbird.net> | 2015-06-10 15:45:20 -0600 |
|---|---|---|
| committer | Tim Graham <timograham@gmail.com> | 2015-07-08 15:23:18 -0400 |
| commit | 66d12d1ababa8f062857ee5eb43276493720bf16 (patch) | |
| tree | c9abdb69562943a9553b893fdc3f5ec0b0c78921 /tests/validators/invalid_urls.txt | |
| parent | 64e8a5f1bbebc65f9f66ee4b49df0bace932a31e (diff) | |
[1.8.x] Fixed #19324 -- Avoided creating a session record when loading the session.
The session record is now only created if/when the session is modified. This
prevents a potential DoS via creation of many empty session records.
This is a security fix; disclosure to follow shortly.
Diffstat (limited to 'tests/validators/invalid_urls.txt')
0 files changed, 0 insertions, 0 deletions
