Skip to content
Snippets Groups Projects
  1. Apr 18, 2016
  2. Apr 16, 2016
  3. Apr 15, 2016
  4. Apr 14, 2016
  5. Apr 11, 2016
  6. Apr 07, 2016
  7. Apr 04, 2016
  8. Apr 02, 2016
  9. Mar 31, 2016
    • Andreas Gohr's avatar
      avoid HTTP Response Splitting attacks via redirects #1513 · 98ca30d2
      Andreas Gohr authored
      The header() method of PHP is vulnerable to HTTP Response Splitting
      attacks.
      
      This change makes sure the URL passed to send_redirect (and thus to
      header()) does not contain any control characters that would be needed
      to execute such an attack.
      
      Cleaning input is recommended anyway.
      98ca30d2
  10. Mar 24, 2016
  11. Mar 22, 2016
  12. Mar 19, 2016
  13. Mar 15, 2016
  14. Mar 12, 2016
Loading