Vineeth Voruganti
|
09a980c2fb
|
Sanitization and Memory Bug Fixes (#419)
* fix: use WeakValueDictionary for _observation_locks to prevent memory leak
* fix: harden input sanitization across API surface (DEV-1400)
- Parameterize SQL in set_config calls to prevent injection via request context
- Strip NUL bytes from string inputs (message content, queries, peer cards)
- Add JSONB metadata validation (100 key limit, 5 depth limit)
- Add filter recursion depth limit (max 5) to prevent stack overflow
- Update changelogs with unreleased entries
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* fix: Refactor Schemas into separate files
* fix: Code Rabbit Comments
---------
Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
|
2026-03-18 15:01:52 -04:00 |