Re: [whatwg/fetch] CORS: arbitrary blocking of accept header based on length (#862)

@RubenVerborgh specific values are somewhat speculative, but informed. Some security bugs around this haven't been opened yet, so I'd rather not discuss in too much detail.

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/fetch/issues/862#issuecomment-458535330

Received on Tuesday, 29 January 2019 13:16:09 UTC