Details
-
Sub-task
-
Status: Closed
-
Major
-
Resolution: Implemented
-
18.12.06, 22.01.01
-
None
-
Bug Crush Event - 21/2/2015
Description
OFBIZ-12587 is a definitive solution to prevent any kind of Freemarker exploits. But it's hard to realise because OFBiz exposes objects, like attributes from the Servlet scopes. So in the meantime preventing Freemarker interpolation in fields is a pragmatic solution.
Attachments
Issue Links
- breaks
-
OFBIZ-12595 Test run was unsuccessful because of failing solr tests
-
- Closed
-
-
OFBIZ-12600 Solr requires application/x-www-form-urlencoded
-
- Closed
-
-
OFBIZ-12602 XML Import fails due to security check
-
- Closed
-