Skip to content

BREAKING CHANGE: keep strict URL validation as default#4812

Merged
achmelo merged 3 commits into
v3.x.xfrom
reboot/strict-url-validation
Jul 15, 2026
Merged

BREAKING CHANGE: keep strict URL validation as default#4812
achmelo merged 3 commits into
v3.x.xfrom
reboot/strict-url-validation

Conversation

@achmelo

@achmelo achmelo commented Jul 14, 2026

Copy link
Copy Markdown
Member

Description

Enable StrictServerWebExchangeFirewall as default, with option to allow relaxed validation. ZWE_configs_apiml_security_enableStrictUrlValidation=false revert back to the original behavior.

Linked to # (issue)
Part of the # (epic)

Type of change

  • fix: Bug fix (non-breaking change which fixes an issue)
  • feat: New feature (non-breaking change which adds functionality)
  • docs: Change in a documentation
  • refactor: Refactor the code
  • chore: Chore, repository cleanup, updates the dependencies.
  • BREAKING CHANGE or !: Breaking change (fix or feature that would cause existing functionality to not work as expected)

Checklist:

  • My code follows the style guidelines of this project
  • PR title conforms to commit message guideline ## Commit Message Structure Guideline
  • I have commented my code, particularly in hard-to-understand areas. In JS I did provide JSDoc
  • I have made corresponding changes to the documentation
  • My changes generate no new warnings
  • I have added tests that prove my fix is effective or that my feature works
  • New and existing unit tests pass locally with my changes
  • The java tests in the area I was working on leverage @nested annotations
  • Any dependent changes have been merged and published in downstream modules

For more details about how should the code look like read the Contributing guideline

achmelo added 2 commits July 14, 2026 13:12
Signed-off-by: ac892247 <a.chmelo@gmail.com>
Signed-off-by: ac892247 <a.chmelo@gmail.com>
@pablocarle

Copy link
Copy Markdown
Contributor

Is this a breaking change?

@achmelo

achmelo commented Jul 15, 2026

Copy link
Copy Markdown
Member Author

Is this a breaking change?

yes

@pablocarle

Copy link
Copy Markdown
Contributor

Is this a breaking change?

yes

can we mark it as such?

@sonarqubecloud

Copy link
Copy Markdown

@achmelo achmelo changed the title fix: keep strict URL validation as default BREAKING CHANGE: keep strict URL validation as default Jul 15, 2026
@achmelo
achmelo merged commit fa91df1 into v3.x.x Jul 15, 2026
49 of 52 checks passed
@achmelo
achmelo deleted the reboot/strict-url-validation branch July 15, 2026 10:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

Development

Successfully merging this pull request may close these issues.

3 participants