| Commit-Queue | +1 |
| Inspect html for hidden footers to help with email filtering. To unsubscribe visit settings. |
| Inspect html for hidden footers to help with email filtering. To unsubscribe visit settings. |
| Commit-Queue | +2 |
| Inspect html for hidden footers to help with email filtering. To unsubscribe visit settings. |
[remoting]: Reject XML stanzas with DTDs in SignalStrategy.
This change adds a pre-parsing check to SignalStrategy::ParseStanzaXml
to reject XML payloads containing <!DOCTYPE to prevent the underlying
unhardened Expat XML parser from processing untrusted DTDs.
Bug: 497828214
| Inspect html for hidden footers to help with email filtering. To unsubscribe visit settings. |