Uploaded image for project: 'NetBeans'
  1. NetBeans
  2. NETBEANS-3242

Security flaw in pluginportal's google sign on

Rank to TopRank to BottomVotersWatch issueWatchersConvert to sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 3.0
    • 3.0
    • None

    Description

      Login process should work with google auth tokenĀ  and backend controller should verify and extract user from token insteas of passed value from client js part of the login which can be altered.

      Attachments

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            jpirek Jan Pirek
            jpirek Jan Pirek
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Issue deployment