I-D
I-D copied to clipboard
content-warning: security considerations, processing unexisting body
I expect
more security considerations, eg.
An intermediary could alter by chance or purpose a Content-Warning header. Implementors SHOULD validate the payload body to avoid that this results in:
- processing an unexisting body
- looking for
warningattribute in a response with an unsuitable Content-Type - Not processing an actually present
warningattribute in the payload.