Unverified Commit 1c9c8bfa authored by Hong Minhee's avatar Hong Minhee
Browse files

Fix vulnerability in getActorHandle() function

The `getActorHandle()` function had a vulnerability where it trusted the hostname of WebFinger aliases that did not match the hostname of the actor ID. This vulnerability has been fixed by adding a check to ensure that the hostname matches before returning the actor handle.
parent 8362c5af
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment