From issues-return-5757-apmail-continuum-issues-archive=continuum.apache.org@continuum.apache.org Tue Feb 01 14:37:53 2011 Return-Path: Delivered-To: apmail-continuum-issues-archive@www.apache.org Received: (qmail 73477 invoked from network); 1 Feb 2011 14:37:52 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.3) by minotaur.apache.org with SMTP; 1 Feb 2011 14:37:52 -0000 Received: (qmail 3324 invoked by uid 500); 1 Feb 2011 14:37:52 -0000 Delivered-To: apmail-continuum-issues-archive@continuum.apache.org Received: (qmail 3254 invoked by uid 500); 1 Feb 2011 14:37:50 -0000 Mailing-List: contact issues-help@continuum.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@continuum.apache.org Delivered-To: mailing list issues@continuum.apache.org Received: (qmail 3242 invoked by uid 99); 1 Feb 2011 14:37:48 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 01 Feb 2011 14:37:48 +0000 X-ASF-Spam-Status: No, hits=-0.0 required=5.0 tests=SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: local policy) Received: from [63.246.2.115] (HELO codehaus01.managed.contegix.com) (63.246.2.115) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 01 Feb 2011 14:37:44 +0000 Received: from codehaus01.managed.contegix.com (localhost.localdomain [127.0.0.1]) by codehaus01.managed.contegix.com (Postfix) with ESMTP id 0717614A82EA for ; Tue, 1 Feb 2011 08:37:23 -0600 (CST) Date: Tue, 1 Feb 2011 08:37:22 -0600 (CST) From: "Brett Porter (JIRA)" To: issues@continuum.apache.org Message-ID: <3364986.200.1296571042343.JavaMail.haus-jira@codehaus01.managed.contegix.com> In-Reply-To: <25856564.108.1296567082919.JavaMail.haus-jira@codehaus01.managed.contegix.com> Subject: [jira] Closed: (CONTINUUM-2604) extremecomponents table should use autoIncludeParameters="false" MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 4e90ceb663894a42f12c0e28abbab431 [ http://jira.codehaus.org/browse/CONTINUUM-2604?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Brett Porter closed CONTINUUM-2604. ----------------------------------- Resolution: Fixed > extremecomponents table should use autoIncludeParameters="false" > ---------------------------------------------------------------- > > Key: CONTINUUM-2604 > URL: http://jira.codehaus.org/browse/CONTINUUM-2604 > Project: Continuum > Issue Type: Bug > Components: Web - UI > Affects Versions: 1.3.6, 1.4.0 (Beta) > Reporter: Brett Porter > Assignee: Brett Porter > Fix For: 1.3.7, 1.4.1 (Beta) > > > this allows users to pass anything in to the page via arbitrary request parameters and should be disabled. > It's unclear if the default of true was relied upon - my testing has not yielded any problems -- This message is automatically generated by JIRA. - If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa - For more information on JIRA, see: http://www.atlassian.com/software/jira