Comment 2 for bug 1919468

Revision history for this message
Seth Arnold (seth-arnold) wrote :

Hello Malte, on a first read I don't think this is a security issue: if a client is responsible for adding a "connection: close" header to the messages, a malicious client could just as easily issue requests without this header, no?

Thanks