Closed mcolyer closed 7 years ago
Thanks for this. So the epilogue is marked by trailing --
as in --marker--\r\n
? and then in theory, everything after that should be ignored. But, in some strict scenarios, it's not?
Thanks for this. So the epilogue is marked by trailing -- as in --marker--\r\n? and then in theory, everything after that should be ignored. But, in some strict scenarios, it's not?
Yep, that's my understanding.
While the epilogue should be ignored (see https://tools.ietf.org/html/rfc2046), it is validated by ModSecurity which some sites have enabled.
See #40.
/cc @ioquatix