From 7b0c6735a514d327e589ec806c8968e75d97f801 Mon Sep 17 00:00:00 2001 From: "Malte S. Stretz" Date: Wed, 5 Feb 2025 11:45:24 +0100 Subject: [PATCH] fix(vendor): Remove excessive URL validation Fixes #1019 --- internal/exec/go_getter_utils.go | 5 ----- 1 file changed, 5 deletions(-) diff --git a/internal/exec/go_getter_utils.go b/internal/exec/go_getter_utils.go index 4c6667d45..8a99a5f6c 100644 --- a/internal/exec/go_getter_utils.go +++ b/internal/exec/go_getter_utils.go @@ -27,7 +27,6 @@ func ValidateURI(uri string) error { if len(uri) > 2048 { return fmt.Errorf("URI exceeds maximum length of 2048 characters") } - // Add more validation as needed // Validate URI format if strings.Contains(uri, "..") { return fmt.Errorf("URI cannot contain path traversal sequences") @@ -35,10 +34,6 @@ func ValidateURI(uri string) error { if strings.Contains(uri, " ") { return fmt.Errorf("URI cannot contain spaces") } - // Validate characters - if strings.ContainsAny(uri, "<>|&;$") { - return fmt.Errorf("URI contains invalid characters") - } // Validate scheme-specific format if strings.HasPrefix(uri, "oci://") { if !strings.Contains(uri[6:], "/") {