Uploaded image for project: 'Jetspeed 2 (Retired)'
  1. Jetspeed 2 (Retired)
  2. JS2-1076

insecure redirector during login

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 2.1.4, 2.2.1
    • Security
    • None
    • all

    Description

      /jetspeed/login/redirector?token

      token.getToken() added to redirector isn't encoded

      Attachments

        Activity

          People

            ate Ate Douma
            radko.keves radko keves
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: