From 4338ea55e9529bf3e5731dba5a68d2e9a72e349d Mon Sep 17 00:00:00 2001 From: Peter Cai Date: Thu, 20 Feb 2020 13:22:16 +0800 Subject: [PATCH] util: disallow empty content server-side too --- src/util.coffee | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/src/util.coffee b/src/util.coffee index 274f3dd..3994203 100644 --- a/src/util.coffee +++ b/src/util.coffee @@ -16,7 +16,8 @@ MAX_FILENAME_LENGTH = 255 # bytes # Validate content-length header validateLength = (req) -> - (Number.parseInt req.headers.get "content-length") <= MAX_UPLOAD_SIZE + len = Number.parseInt req.headers.get "content-length" + len <= MAX_UPLOAD_SIZE && len > 0 # Only accept paths like `/paste/:file_name` # No further slahses are supported