From 0983bd16ab889b40b430007055687dc909d9536f Mon Sep 17 00:00:00 2001 From: Rob Hudson Date: Wed, 6 Apr 2011 08:16:31 -0700 Subject: Added protection against toolbar injections on gzipped responses. --- debug_toolbar/middleware.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'debug_toolbar/middleware.py') diff --git a/debug_toolbar/middleware.py b/debug_toolbar/middleware.py index de78254..e73dde5 100644 --- a/debug_toolbar/middleware.py +++ b/debug_toolbar/middleware.py @@ -96,7 +96,7 @@ class DebugToolbarMiddleware(object): {'redirect_to': redirect_to} ) response.cookies = cookies - if response.status_code == 200: + if response.status_code == 200 and 'gzip' not in response.get('Content-Encoding', ''): for panel in self.debug_toolbars[request].panels: panel.process_response(request, response) if response['Content-Type'].split(';')[0] in _HTML_TYPES: -- cgit v1.2.3