Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix security issue #103

Closed
songeunwoo opened this issue Apr 14, 2016 · 2 comments
Closed

Fix security issue #103

songeunwoo opened this issue Apr 14, 2016 · 2 comments
Assignees
Milestone

Comments

@songeunwoo
Copy link
Contributor

Fix ngrinder security issue.

songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 15, 2016
 - web.xml xssEscapeServletFilter append.
 - pom.xml lucy-xss-servlet append.
 - lucy-xss-servlet-filter append.
 - lucy-xss-superset-sax append.
 - navigator.ftl content replace Modified.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 15, 2016
 - Fix ngrinder security Modified.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 15, 2016
 - add comment XssSaxFilterDepender.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 15, 2016
 - add comment XssSaxFilterDepender.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 18, 2016
 - add comment XssSaxFilterDepender.
 - multipart / form-data exceptions.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 18, 2016
 - add comment XssSaxFilterDepender.
 - multipart / form-data exceptions.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 18, 2016
 - web.xml url-pattern append.
junoyoon added a commit that referenced this issue Apr 19, 2016
#103 Fix security issue - Reviewed by JunHo Yoon
@junoyoon junoyoon added this to the 3.4.0 milestone Apr 19, 2016
@junoyoon
Copy link
Contributor

Fixed

@songeunwoo
Copy link
Contributor Author

songeunwoo commented Apr 26, 2016

@junoyoon
if we use generic type, it becomes an unnecessary filter so that it needs to be modified when creating a stress script.

@songeunwoo songeunwoo reopened this Apr 26, 2016
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 26, 2016
 - generic type fixed.
songeunwoo pushed a commit to songeunwoo/ngrinder that referenced this issue Apr 27, 2016
 - lucy-xss-servlet-filter-rule.xml url rule setting fix.
junoyoon added a commit that referenced this issue Apr 27, 2016
#103 Fix security issue
Reviewed by : JunHo Yoon
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants