Re: [whatwg/fetch] Preventing some CRLF header injection attacks (#375)

Note that ideally this is defined at the HTTP level since it's basically a change in header parsing. (And the only way to implement this kind of thing at the application layer is if any header combining is left to the application.)

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/fetch/issues/375#issuecomment-242082924

Received on Wednesday, 24 August 2016 14:24:19 UTC