Skip to content

[Security]: Remove and disable sensitive data log in http error Log #18918

Merged
kingjia90 merged 5 commits into11.5from
http-log-sensitivie
Jan 13, 2026
Merged

[Security]: Remove and disable sensitive data log in http error Log #18918
kingjia90 merged 5 commits into11.5from
http-log-sensitivie

Conversation

@kingjia90
Copy link
Copy Markdown
Contributor

@kingjia90 kingjia90 commented Jan 13, 2026

Changes in this pull request

Preventing from storing these sensitive data

Additional info

not ideal to have a migration in a bugfix but, better safe than sorry 😅 provinding it as an optional tool to cleanup

Removed logging of POST parameters, cookies, and server variables.
@github-actions
Copy link
Copy Markdown

Review Checklist

  • Target branch (11.5 for bug fixes, others 12.x)
  • Tests (if it's testable code, there should be a test for it - get help)
  • Docs (every functionality needs to be documented, see here)
  • Migration incl. install.sql (e.g. if the database schema changes, ...)
  • Upgrade notes (deprecations, important information, migration hints, ...)
  • Label
  • Milestone

@kingjia90 kingjia90 self-assigned this Jan 13, 2026
@kingjia90 kingjia90 merged commit 002ec7d into 11.5 Jan 13, 2026
17 checks passed
@kingjia90 kingjia90 deleted the http-log-sensitivie branch January 13, 2026 12:37
@github-actions github-actions bot locked and limited conversation to collaborators Jan 13, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant