Skip to content

Conversation

dduzgun-security
Copy link
Collaborator

Description

Adding a max limit on the Content-Length value for the event endpoint (EventFire function).
Based the max limit of 100 bytes from what we mention in our doc: https://github.com/hashicorp/consul/blob/main/website/content/commands/event.mdx#consul-event

Testing & Reproduction steps

Links

PR Checklist

  • updated test coverage
  • external facing docs updated
  • appropriate backport labels added
  • not a security concern

PCI review checklist

  • I have documented a clear reason for, and description of, the change I am making.

  • If applicable, I've documented a plan to revert these changes if they require more than reverting the pull request.

  • If applicable, I've documented the impact of any changes to security controls.

    Examples of changes to security controls include using new access control methods, adding or removing logging pipelines, etc.

@dduzgun-security dduzgun-security requested a review from a team as a code owner September 25, 2025 22:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant