[CORE] Unset sensitive information from the environment

This commit is contained in:
Bruno Aleixo 2022-01-30 16:39:43 +00:00
parent afd1211852
commit 162b01e2c5

View File

@ -33,6 +33,7 @@ declare(strict_types = 1);
use App\CacheKernel;
use App\Kernel;
use App\Util\Formatting;
use Symfony\Component\ErrorHandler\Debug;
use Symfony\Component\HttpFoundation\Request;
@ -68,7 +69,12 @@ if ('prod' === $kernel->getEnvironment() || isset($_ENV['SOCIAL_USE_CACHE_KERNEL
$kernel = new CacheKernel($kernel);
}
$request = Request::createFromGlobals();
$request = Request::createFromGlobals();
$_ENV = array_filter(
$_ENV,
fn (string $key) => Formatting::startsWith($key, ['HTTP', 'APP']) && $key !== 'APP_SECRET',
\ARRAY_FILTER_USE_KEY,
);
$response = $kernel->handle($request);
$response->send();
$kernel->terminate($request, $response);