angler-fishThe Vulnerability History Project

[1.7.x] Stripped headers containing underscores to prevent spoofing in WSGI environ.

      This is a security fix. Disclosure following shortly.

Thanks to Jedediah Smith for the report.
    
commit 41b4bc73ee0da7b2e09f4af47fc1fd21144c710f
-11
-16
-24
-24
+1 -23
-67
expand_less