Skip to content

Can I crash this service by loading a large dependency in the HTML? #17

@ntnz

Description

@ntnz

This service works by downloading assets in the HTML provided by the front end (fonts, CSS, etc). What's stopping me from providing a massive asset in the HTML crashing the service? This could be mitigated by using translateURLsToAbsolute and locking down the service internet access, but that seems like a work around. you could just provide thousands of allowed assets.

Are there any mitigations for this built into the service?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions