bug: Sanitize MongoDB operators from user-tracking payloads#5364
Conversation
|
@MasterJi27 is attempting to deploy a commit to the jhasourav07's projects Team on Vercel. A member of the Team first needs to authorize it. |
Aamod-Dev
left a comment
There was a problem hiding this comment.
Thanks for the contribution! The implementation looks solid and addresses the issue well. Approving.
|
@Aamod007 Thank you for reviewing and approving my PRs. Currently, I have the following approved PRs open:
All of them have been reviewed and approved. The remaining blocker appears to be Vercel deployment authorization. Could someone from the team please authorize the Vercel deployment and merge these PRs when convenient? It would help me continue working on additional assigned issues without having multiple approved PRs pending. Thank you! |
|
🎉 Congratulations @MasterJi27! Your PR has been successfully merged. 🚀 Thank you for contributing to CommitPulse. Your work helps us build a better tool for the community.
Keep building! 💻✨ |
Resolves #5268. Recursively strips keys starting with $ from incoming user-tracking payloads to prevent MongoDB query operator injection.