Skip to content

fix(security): prevent SSRF and header injection in paste-url;fix(pay…#15615

Open
nameearly wants to merge 1 commit intopayloadcms:mainfrom
nameearly:main
Open

fix(security): prevent SSRF and header injection in paste-url;fix(pay…#15615
nameearly wants to merge 1 commit intopayloadcms:mainfrom
nameearly:main

Conversation

@nameearly
Copy link
Copy Markdown

fix(security): prevent SSRF and header injection in paste-url;
fix(payload): preserve paste-url error status and correct external file metadata

…load): preserve paste-url error status and correct external file metadata
@github-actions
Copy link
Copy Markdown
Contributor

Pull Request titles must follow the Conventional Commits specification and have valid scopes.

Unknown scope "security" found in pull request title "fix(security): prevent SSRF and header injection in paste-url;fix(pay…". Scope must match one of: cpa, claude, db-*, db-d1-sqlite, db-mongodb, db-postgres, db-vercel-postgres, db-sqlite, db-d1-sqlite, drizzle, email-*, email-nodemailer, email-resend, eslint, graphql, kv, kv-redis, live-preview, live-preview-react, live-preview-vue, next, payload-cloud, plugin-cloud, plugin-cloud-storage, plugin-ecommerce, plugin-form-builder, plugin-import-export, plugin-mcp, plugin-multi-tenant, plugin-nested-docs, plugin-redirects, plugin-search, plugin-sentry, plugin-seo, plugin-stripe, richtext-*, richtext-lexical, richtext-slate, sdk, storage-*, storage-azure, storage-gcs, storage-r2, storage-uploadthing, storage-vercel-blob, storage-s3, translations, ui, templates, examples(/(\w|-)+)?, deps.

feat(ui): add Button component
^    ^    ^
|    |    |__ Subject
|    |_______ Scope
|____________ Type

Copy link
Copy Markdown
Author

@nameearly nameearly left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

change title

@github-actions github-actions bot added the stale label Mar 15, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant