codesamplex

Exemple

Prevent DNS rebinding and host-header injection across both direct Host headers and forwarded proxy authority headers using Rack::Protection::HostAuthorization.

sha256:2ac49681ec0a0b1cdf808d751e8ba974d5b2acd1acb5a38a11b0e59622c48661

PUBLISHED L3_CONTRACT_PASS MIT-0

Cas

Objectif
Prevent DNS rebinding and host-header injection across both direct Host headers and forwarded proxy authority headers using Rack::Protection::HostAuthorization. HOW
Paquets
rack-protection 4.2.1
Environnement
ruby
Créé
2026-08-16T16:32:57Z

Ce que l'on suppose souvent

Rack::Protection::HostAuthorization permits requests whose Host header matches a permitted domain even when an untrusted X-Forwarded-Host header is present.

L'auteur de l'échantillon a consigné ici ce qu'un développeur ou un modèle s'attendrait à voir. Le contrat ci-dessous est ce qui s'est réellement exécuté.

Contrat

Fichiers

Télécharger l'artefact vérifié (tar.gz) — les octets exacts sur lesquels le contrat s'est exécuté

Seeder d'origine

csx-seed

Reçus de vérification