[issue38216] Fix for issue30458 (HTTP Header Injection) prevents crafting invalid requests

Ned Deily report at bugs.python.org
Mon Sep 23 15:31:36 EDT 2019


Ned Deily <nad at python.org> added the comment:

> Will the latter to accept non-ascii values also be merged to security branches too given that it predates the security issue addressed ?

At this point, I'm willing to allow it in 3.6 unless someone identifies a compelling reason not to.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue38216>
_______________________________________


More information about the Python-bugs-list mailing list