Active
Project:
Drupal core
Version:
main
Component:
routing system
Priority:
Normal
Category:
Task
Assigned:
Unassigned
Reporter:
Created:
25 Jul 2026 at 23:04 UTC
Updated:
25 Jul 2026 at 23:04 UTC
Jump to comment: Most recent
While working on the routing YAML to attribute conversions, it struck me that there is no validation for the requirements array.
For example if you make a typo in _csrf_token then your route is not protected, when you might assume that it is.
Figure out if it is possible to validate route requirements; given that requirement can be dynamic then this may be hard or require new APIs.
Comments