Uploaded image for project: 'Magnolia'
  1. Magnolia
  2. MAGNOLIA-1640

security: security filter must be in front of the virtual uri mapping filter

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • Major
    • 3.0.3
    • 3.0.2
    • security
    • None

    Description

      The virtual uri mapping filter can forward to jsps. In that case code can be executed which should be protected. See MGNLDMS-101 as an example

      Checklists

        Acceptance criteria

        Attachments

          Activity

            People

              pbaerfuss Philipp Bärfuss
              pbaerfuss Philipp Bärfuss
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Checklists

                  Bug DoR
                  Task DoD