Nginx 1.21.1 tso tawm

Cov ceg tseem ceeb ntawm nginx 1.21.1 tau raug tso tawm, nyob rau hauv uas txoj kev loj hlob ntawm cov yam ntxwv tshiab txuas ntxiv (nyob rau hauv qhov kev txhawb nqa ruaj khov ceg 1.20, tsuas yog kev hloov pauv cuam tshuam txog kev tshem tawm qhov ua yuam kev loj thiab qhov tsis zoo).

Cov kev hloov loj:

  • Nginx tam sim no ib txwm rov qab qhov yuam kev thaum siv CONNECT txoj kev; thaum ib txhij teev cov "Tsev-Length" thiab "Transfer-Encoding" headers; thaum muaj qhov chaw lossis tswj cov cim hauv cov lus nug, HTTP header lub npe, lossis tus nqi Host header.
  • Txhim kho kev ntsuas kev ntsuas thaum siv ntau lub mloog pob ntseg.
  • Kev khiav tawm ntawm cov cim """, "", "\", "^", "`", "{", "|" tau raug txhim kho thiab "}" thaum tso npe nrog URI hloov.
  • Txo kev siv lub cim xeeb rau kev thov ua haujlwm ntev thaum proxying siv ntau dua 64 buffers.

Tau qhov twg los: opennet.ru

Ntxiv ib saib