struts-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Raintung Li (JIRA)" <j...@apache.org>
Subject [jira] [Created] (WW-4645) SecurityMemberAccess exclude class design issue
Date Wed, 15 Jun 2016 08:20:09 GMT
Raintung Li created WW-4645:
-------------------------------

             Summary: SecurityMemberAccess exclude class design issue 
                 Key: WW-4645
                 URL: https://issues.apache.org/jira/browse/WW-4645
             Project: Struts 2
          Issue Type: Bug
          Components: Core Actions
    Affects Versions: 2.3.20
            Reporter: Raintung Li


In the isClassExcluded method invoke targetClass.isAssignableFrom(excludedClass), that mean
targetClass must be parent class of excludedClass or same as excludedClass. How can enumerate
all son classes in the excluded classes? Why not opposite? I prevent the parent class, all
son classes also be prevented. The EX: excludedClass.isAssignableFrom(targetClass)




--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message