Re: [whatwg/url] Malformed URL Normalization in Standard Introduces SSRF Risks (Issue #893)

jasnell left a comment (whatwg/url#893)

-1 on treating this as a security issue. The behavior here is well-defined and has been long established within the whatwg url spec. Further input validation should be applied at the application level rather than the parsing level.

-- 
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/url/issues/893#issuecomment-3707322335
You are receiving this because you are subscribed to this thread.

Message ID: <whatwg/url/issues/893/3707322335@github.com>

Received on Saturday, 3 January 2026 20:11:35 UTC