mirror of
https://github.com/rails/rails.git
synced 2022-11-09 12:12:34 -05:00
378b4fedb1
- https://github.com/rails/rails/pull/35604 introduced a vulnerability fix to raise an error in case the `HTTP_ACCEPT` headers contains malformated mime type. This will cause applications to throw a 500 if a User Agent sends an invalid header. This PR adds the `InvalidMimeType` in the default `rescue_responses` from the ExceptionWrapper and will return a 406. I looked up the HTTP/1.1 RFC and it doesn't stand what should be returned when the UA sends malformated mime type. Decided to get 406 as it seemed to be the status the better suited for this. |
||
---|---|---|
.. | ||
session | ||
templates | ||
callbacks.rb | ||
cookies.rb | ||
debug_exceptions.rb | ||
debug_locks.rb | ||
debug_view.rb | ||
exception_wrapper.rb | ||
executor.rb | ||
flash.rb | ||
host_authorization.rb | ||
public_exceptions.rb | ||
reloader.rb | ||
remote_ip.rb | ||
request_id.rb | ||
show_exceptions.rb | ||
ssl.rb | ||
stack.rb | ||
static.rb |