You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The PR is addressing real problems but I don't think its solutions are quite right.
I do think we could perhaps improve the docs to be even more clear about the importance of using encodeURIComponent, or to encourage the use of a package like url-assembler when dynamically constructing paths.
glasser
changed the title
Evaluate AS PR 4660 (security enhancements to resolveURL)
Improve docs around use of encodeURIComponent or other approaches to dynamic paths
Nov 8, 2022
We closed apollographql/apollo-server#4660 to move it to this repository. We should look to see if the change is still applicable.
The text was updated successfully, but these errors were encountered: