Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
XSS Protection API 2.1.16
-
None
Description
When falling back to simpler regular expressions to validate URLs, the current log level is WARN, which is too high. This should be set to DEBUG and a WARN should be logged only if the URL cannot be validated.
Attachments
Issue Links
- is related to
-
SLING-8775 java.lang.StackOverflowError in XSSAPIImpl.getValidHref for long URLs
- Closed