Details
Description
It can be dangerous taking class names as inputs from HTTP messages even if we control the source. Issue is in HttpExceptionUtils in hadoop-common (validateResponse method).
I can provide a PR that will highlight the issue.
Attachments
Issue Links
- links to