Uploaded image for project: 'NetBeans'
  1. NetBeans
  2. NETBEANS-3242

Security flaw in pluginportal's google sign on

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 3.0
    • 3.0
    • None

    Description

      Login process should work with google auth tokenĀ  and backend controller should verify and extract user from token insteas of passed value from client js part of the login which can be altered.

      Attachments

        Activity

          People

            jpirek Jan Pirek
            jpirek Jan Pirek
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: