purl Issues
PURL interns scheme strings into the KEYWORD
package. If you parse URLs from untrusted input, an attacker could exploit this behaviour as a denial of service attack. A possible defense is shown below.
PURL interns scheme strings into the KEYWORD
package. If you parse URLs from untrusted input, an attacker could exploit this behaviour as a denial of service attack. A possible defense is shown below.