Skip to content

Commit 240856c

Browse files
Security: Add rate limiting to internal Lambda API endpoints (#5113)
Apply UserRateThrottle to Lambda-authenticated challenge endpoints that previously had throttling disabled. Co-authored-by: Cursor Agent <cursoragent@cursor.com>
1 parent 4ae73db commit 240856c

1 file changed

Lines changed: 2 additions & 2 deletions

File tree

apps/challenges/views.py

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -5507,7 +5507,7 @@ def _authenticate_lambda_request(request):
55075507

55085508

55095509
@api_view(["GET"])
5510-
@throttle_classes([])
5510+
@throttle_classes([UserRateThrottle])
55115511
@permission_classes(())
55125512
@authentication_classes(())
55135513
def get_challenge_autoscale_meta(request, challenge_pk):
@@ -5555,7 +5555,7 @@ def get_challenge_autoscale_meta(request, challenge_pk):
55555555

55565556

55575557
@api_view(["GET"])
5558-
@throttle_classes([])
5558+
@throttle_classes([UserRateThrottle])
55595559
@permission_classes(())
55605560
@authentication_classes(())
55615561
def get_challenge_pending_submission_count(request, challenge_pk):

0 commit comments

Comments
 (0)