Uploaded image for project: 'Magnolia DAM Module'
  1. Magnolia DAM Module
  2. MGNLDAM-703

Security improvements

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not an issue
    • Icon: Neutral Neutral
    • None
    • 2.2.2
    • DAM Core
    • Kromeriz 90
    • 2

      Valid findings of Frost Bank code scan:

      Log Forging

      Class Code
      magnolia-dam-core​/info​/magnolia​/dam​/core​/download​/DamDownloadServlet​.java:284 private static final Logger log = LoggerFactory.getLogger(DamDownloadServlet.class);
      magnolia-dam-core​/info​/magnolia​/dam​/core​/download​/DamDownloadServlet​.java:187 private static final Logger log = LoggerFactory.getLogger(DamDownloadServlet.class);

        Acceptance criteria

              Unassigned Unassigned
              ochytil Ondrej Chytil
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved:

                  Bug DoR
                  Task DoD