TwiML Security and Fixes
This cluster addresses security vulnerabilities and enhancements related to TwiML handling in voice calls and gateway functionalities.
| # | Title | Author | Created | GitHub |
|---|---|---|---|---|
| 8297 | fix(voice-call): prevent empty TwiML for non-in-progress outbound calls | vishaltandale00 | 2026-02-03 | View |
| 10231 | fix(voice-call): escape locale/language params in TwiML to prevent XML injection rep | coygeek | 2026-02-06 | View |
| 10238 | Security: Fix TwiML injection via unescaped locale/language/voice parameters | StreetJammer | 2026-02-06 | View |
| 16992 | fix(gateway): escape XML entities in file.filename to prevent prompt injection | AI-Reviewer-QS | 2026-02-15 | View |
| 20058 | feat(voice-call): add Twilio non-US region support (region/edge config) | giumex | 2026-02-18 | View |