Validate multipart part headers - #1142
Conversation
|
You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard. |
|
Docs preview: https://0b181ec5-httpx2-docs.pydantic.workers.dev |
Merging this PR will not alter performance
Comparing Footnotes
|
There was a problem hiding this comment.
All reported issues were addressed across 2 files (changes from recent commits).
Reply with feedback, questions, or to request a fix.
Re-trigger cubic
## 2.12.0 (August 18th, 2026) ### Changed * Use `backports.zstd` for Zstandard decoding on Python 3.13 and earlier. ([#1146](pydantic/httpx2#1146)) ### Fixed * Bound peak memory while streaming compressed responses and close response streams when decoding fails. ([#1126](pydantic/httpx2#1126)) ## 2.11.0 (August 18th, 2026) ### Added * Add the public `Origin` value object and `URL.origin` property for normalized, hashable origin comparisons. ([#1134](pydantic/httpx2#1134)) ### Changed * Require Brotli 1.2.0 or later for the `brotli` extra. ([#1141](pydantic/httpx2#1141)) ### Fixed * Restore deprecated status code aliases. ([#1135](pydantic/httpx2#1135)) * Extract HTTP/2 release notes from changelog headings correctly. ([#1136](pydantic/httpx2#1136)) * Respect explicit `Transfer-Encoding` headers and expose buffered request body lengths to WSGI applications. ([#1137](pydantic/httpx2#1137)) * Validate multipart part header names and values before serialization. ([#1142](pydantic/httpx2#1142))
Summary
Validation
uv run pytest tests/httpx2/test_multipart.py -quv run pytest tests/httpx2 -qscripts/checkAI Disclaimer
This PR was developed with the assistance of either Claude or Codex. I've reviewed and verified the changes.