Commit 714df9e
ci(iast): fix flaky test [backport 3.19] (#15754)
Backport 381404b from #15749 to 3.19.
The urlparse function was imported inside the async function
view_iast_ssrf_secure, which caused a race condition in multiprocess
mode where:
- The IAST validator wrapper for urlparse is set up at module startup
- But importing inside a function can bypass or inconsistently apply the
wrapper
- This caused the secure mark to not be applied reliably, leading to
false SSRF vulnerability reports
Flaky tests IDs: DD_1PGYGI DD_ONKXDT DD_U2V880 DD_954GJO DD_O236KS
Signed-off-by: Alberto Vara <[email protected]>
Co-authored-by: Alberto Vara <[email protected]>1 parent 0cab93b commit 714df9e
2 files changed
+3
-5
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
144 | 144 | | |
145 | 145 | | |
146 | 146 | | |
147 | | - | |
148 | 147 | | |
149 | 148 | | |
150 | 149 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
5 | 5 | | |
6 | 6 | | |
7 | 7 | | |
| 8 | + | |
8 | 9 | | |
9 | 10 | | |
10 | 11 | | |
| |||
107 | 108 | | |
108 | 109 | | |
109 | 110 | | |
110 | | - | |
111 | | - | |
112 | 111 | | |
113 | 112 | | |
114 | | - | |
| 113 | + | |
115 | 114 | | |
116 | 115 | | |
117 | 116 | | |
118 | 117 | | |
119 | 118 | | |
120 | | - | |
| 119 | + | |
121 | 120 | | |
122 | 121 | | |
123 | 122 | | |
| |||
0 commit comments