[bun] Don't allow Transfer-Encoding header

This commit is contained in:
Jarred Sumner
2022-04-04 00:58:26 -07:00
parent cee3783e58
commit a9f0d334bb

View File

@@ -548,6 +548,8 @@ fn NewRequestContext(comptime ssl_enabled: bool, comptime debug_mode: bool, comp
headers: *JSC.FetchHeaders,
) void {
headers.remove(&ZigString.init("content-length"));
headers.remove(&ZigString.init("transfer-encoding"));
if (!ssl_enabled) headers.remove(&ZigString.init("strict-transport-security"));
headers.toUWSResponse(ssl_enabled, this.resp);
}