forked from mirror/misskey
![]() * fix(backend): Fix an issue where the origin of ActivityPub lookup response was not validated correctly. [GHSA-6w2c-vf6f-xf26](https://github.com/misskey-dev/misskey/security/advisories/GHSA-6w2c-vf6f-xf26) Signed-off-by: eternal-flame-AD <yume@yumechi.jp> * Enhance: Add configuration option to disable all external redirects when responding to an ActivityPub lookup (config.disallowExternalApRedirect) Signed-off-by: eternal-flame-AD <yume@yumechi.jp> * fixup! fix(backend): Fix an issue where the origin of ActivityPub lookup response was not validated correctly. * docs & one edge case Signed-off-by: eternal-flame-AD <yume@yumechi.jp> * apply suggestions Signed-off-by: eternal-flame-AD <yume@yumechi.jp> * remove stale frontend reference to _responseInvalidIdHostNotMatch Signed-off-by: eternal-flame-AD <yume@yumechi.jp> * apply suggestions Signed-off-by: eternal-flame-AD <yume@yumechi.jp> --------- Signed-off-by: eternal-flame-AD <yume@yumechi.jp> |
||
---|---|---|
.. | ||
entities | ||
misc | ||
queue/processors | ||
AbuseReportNotificationService.ts | ||
activitypub.ts | ||
AnnouncementService.ts | ||
ap-request.ts | ||
ApMfmService.ts | ||
CaptchaService.ts | ||
chart.ts | ||
CustomEmojiService.ts | ||
DriveService.ts | ||
extract-mentions.ts | ||
FetchInstanceMetadataService.ts | ||
FileInfoService.ts | ||
FlashService.ts | ||
MetaService.ts | ||
MfmService.ts | ||
NoteCreateService.ts | ||
ReactionService.ts | ||
RelayService.ts | ||
RoleService.ts | ||
S3Service.ts | ||
SigninWithPasskeyApiService.ts | ||
SystemWebhookService.ts | ||
UserSearchService.ts | ||
UserWebhookService.ts | ||
WebhookTestService.ts |