You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Currently the namespace rule checker replays the entire sequence prior to sending the attack request. In the case of DELETE requests, resending that request can lead to false negatives because the resource would typically be successfully deleted during the replay. The checker's attack request would then receive a response akin to a 404, which would not trigger a bug in the checker even if the attack request would have otherwise been successful.
The text was updated successfully, but these errors were encountered:
Currently the namespace rule checker replays the entire sequence prior to sending the attack request. In the case of DELETE requests, resending that request can lead to false negatives because the resource would typically be successfully deleted during the replay. The checker's attack request would then receive a response akin to a 404, which would not trigger a bug in the checker even if the attack request would have otherwise been successful.
The text was updated successfully, but these errors were encountered: