Skip to content

Update axon.py#3308

Open
Barbariandev wants to merge 1 commit intolatent-to:masterfrom
Barbariandev:master
Open

Update axon.py#3308
Barbariandev wants to merge 1 commit intolatent-to:masterfrom
Barbariandev:master

Conversation

@Barbariandev
Copy link
Copy Markdown

Possible security vulnerability

@basfroman
Copy link
Copy Markdown
Collaborator

Hi @Barbariandev, pls add more details to the PR description to explain why you consider this a potential security vulnerability.

@Barbariandev
Copy link
Copy Markdown
Author

default_verify accepted signature="" or signature=None and only rejected requests that had signatures that were not None and which were invalid. As I understand it this is not the intended behavior

@thewhaleking
Copy link
Copy Markdown
Contributor

Read CONTRIBUTING

@thewhaleking thewhaleking requested a review from a team April 14, 2026 10:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants