Socket
Socket
Sign inDemoInstall

superagent

Package Overview
Dependencies
37
Maintainers
10
Versions
169
Alerts
File Explorer

Advanced tools

Install Socket

Detect and block malicious and high-risk dependencies

Install

Comparing version 3.8.0 to 3.8.1

4

History.md

@@ -0,1 +1,5 @@

# 3.8.1 (2017-11-08)
* Clear authorization header on cross-domain redirect
# 3.8.0

@@ -2,0 +6,0 @@

6

lib/node/index.js

@@ -420,3 +420,3 @@ 'use strict';

const shouldStripCookie = parse(url).host !== parse(this.url).host;
const changesOrigin = parse(url).host !== parse(this.url).host;

@@ -427,3 +427,3 @@ // implementation of 302 following defacto standard

// in case of POST etc
headers = utils.cleanHeader(this.req._headers, shouldStripCookie);
headers = utils.cleanHeader(this.req._headers, changesOrigin);

@@ -442,3 +442,3 @@ // force GET

// in case of POST etc
headers = utils.cleanHeader(this.req._headers, shouldStripCookie);
headers = utils.cleanHeader(this.req._headers, changesOrigin);

@@ -445,0 +445,0 @@ // force method

@@ -60,3 +60,3 @@ 'use strict';

exports.cleanHeader = function(header, shouldStripCookie){
exports.cleanHeader = function(header, changesOrigin){
delete header['content-type'];

@@ -66,3 +66,5 @@ delete header['content-length'];

delete header['host'];
if (shouldStripCookie) {
// secuirty
if (changesOrigin) {
delete header['authorization'];
delete header['cookie'];

@@ -69,0 +71,0 @@ }

{
"name": "superagent",
"version": "3.8.0",
"version": "3.8.1",
"description": "elegant & feature rich browser / node HTTP with a fluent API",
"scripts": {
"prepublish": "make all",
"prepare": "make all",
"test": "make test"

@@ -8,0 +8,0 @@ },

@@ -932,3 +932,3 @@ (function(f){if(typeof exports==="object"&&typeof module!=="undefined"){module.exports=f()}else if(typeof define==="function"&&define.amd){define([],f)}else{var g;if(typeof window!=="undefined"){g=window}else if(typeof global!=="undefined"){g=global}else if(typeof self!=="undefined"){g=self}else{g=this}g.superagent = f()}})(function(){var define,module,exports;return (function e(t,n,r){function s(o,u){if(!n[o]){if(!t[o]){var a=typeof require=="function"&&require;if(!u&&a)return a(o,!0);if(i)return i(o,!0);var f=new Error("Cannot find module '"+o+"'");throw f.code="MODULE_NOT_FOUND",f}var l=n[o]={exports:{}};t[o][0].call(l.exports,function(e){var n=t[o][1][e];return s(n?n:e)},l,l.exports,e,t,n,r)}return n[o].exports}var i=typeof require=="function"&&require;for(var o=0;o<r.length;o++)s(r[o]);return s})({1:[function(require,module,exports){

exports.cleanHeader = function(header, shouldStripCookie){
exports.cleanHeader = function(header, changesOrigin){
delete header['content-type'];

@@ -938,3 +938,5 @@ delete header['content-length'];

delete header['host'];
if (shouldStripCookie) {
// secuirty
if (changesOrigin) {
delete header['authorization'];
delete header['cookie'];

@@ -941,0 +943,0 @@ }

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap

Packages

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc