-
Notifications
You must be signed in to change notification settings - Fork 21
Pull requests: apache/cocoon
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Do not use Excalibur's SAXParser to prevent XXE injections.
#38
opened Nov 27, 2022 by
jpuerto
Loading…
Add security note about JNDI injection in NamingInputModule.
#37
opened Nov 26, 2022 by
jpuerto
Loading…
Exclude old SLF4J API dependency from JCR that causes errors on spring context initialization.
#35
opened Nov 26, 2022 by
jpuerto
Loading…
Adds new method DataSource.getParentLogger() introduced in Java 1.7.
#33
opened Nov 26, 2022 by
jpuerto
Loading…
Fix SQL injection vulnerability for DatabaseCookieAuthenticatorAction.
#32
opened Nov 10, 2022 by
jpuerto
Loading…
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.