Skip to content

Conversation

@franbuehler
Copy link
Contributor

@franbuehler franbuehler commented Oct 20, 2025

This PR solves #4251 by adding the Expect header to the list of forbidden headers: tx.restricted_headers_basic.

@github-actions
Copy link
Contributor

📊 Quantitative test results for language: eng, year: 2023, size: 10K, paranoia level: 1:
🚀 Quantitative testing did not detect new false positives

@franbuehler franbuehler changed the title Add expect header feat: add expect header to list of restricted headers Oct 20, 2025
@franbuehler franbuehler linked an issue Oct 20, 2025 that may be closed by this pull request
@franbuehler franbuehler added this pull request to the merge queue Oct 30, 2025
Merged via the queue into coreruleset:main with commit b05374a Oct 30, 2025
10 of 11 checks passed
@franbuehler franbuehler deleted the add-expect-header branch October 30, 2025 13:54
@touchweb-vincent
Copy link
Contributor

FYI, the BNP Paribas (Axepta) IPN web service appears to use it occasionally, we just get a ping on our infra on a Magento.

@fzipi fzipi added the release:new-feature This PR introduces a new feature label Nov 2, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

release:new-feature This PR introduces a new feature

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Block Expect header

4 participants