Skip to content

fix(security): vulnerability where all headers are passed on redirect#2081

Merged
adrian05-ms merged 19 commits intomainfrom
ramsess/fix-redirectHeaderVulnerability
Mar 2, 2026
Merged

fix(security): vulnerability where all headers are passed on redirect#2081
adrian05-ms merged 19 commits intomainfrom
ramsess/fix-redirectHeaderVulnerability

Conversation

@ramsessanchez
Copy link
Contributor

@ramsessanchez ramsessanchez requested a review from a team as a code owner February 12, 2026 19:47
@ramsessanchez ramsessanchez changed the title fix vulnerability where all headers are passed on redirect fix(security): vulnerability where all headers are passed on redirect Feb 12, 2026
baywet
baywet previously approved these changes Mar 2, 2026
Copy link
Member

@baywet baywet left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you for making the changes!

@baywet
Copy link
Member

baywet commented Mar 2, 2026

@adrian05-ms I think some formatting is required here. There are tasks configured to do that for you. (see gradle tasks)

@adrian05-ms
Copy link
Contributor

@adrian05-ms I think some formatting is required here. There are tasks configured to do that for you. (see gradle tasks)

Done, please review again

adrian05-ms and others added 2 commits March 2, 2026 12:23
…middleware/RedirectHandler.java

Co-authored-by: Vincent Biret <vibiret@microsoft.com>
baywet
baywet previously approved these changes Mar 2, 2026
@sonarqubecloud
Copy link

sonarqubecloud bot commented Mar 2, 2026

@adrian05-ms adrian05-ms requested a review from peombwa March 2, 2026 20:44
@adrian05-ms adrian05-ms enabled auto-merge March 2, 2026 20:44
@adrian05-ms adrian05-ms merged commit 38e45c9 into main Mar 2, 2026
10 checks passed
@adrian05-ms adrian05-ms deleted the ramsess/fix-redirectHeaderVulnerability branch March 2, 2026 20:55
@github-project-automation github-project-automation bot moved this from In Progress 🚧 to Done ✔️ in Kiota Mar 2, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Status: Done ✔️

Development

Successfully merging this pull request may close these issues.

5 participants