Uploaded image for project: 'Solr'
  1. Solr
  2. SOLR-5518

Move editing config files into a new handler

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Blocker
    • Resolution: Fixed
    • 4.7, 6.0
    • 4.7, 6.0
    • None
    • None

    Description

      See SOLR-5287. Uwe Schindler pointed out that writing files the way 5287 is a security vulnerability and that disabling it should be the norm. Subsequent discussion came up with this idea.

      Writing arbitrary config files should NOT be on by default.

      We'll also incorporate Mark's idea of testing XML files before writing anywhere.

      Attachments

        1. SOLR-5518.patch
          51 kB
          Erick Erickson
        2. SOLR-5518.patch
          50 kB
          Erick Erickson

        Issue Links

          Activity

            People

              erickerickson Erick Erickson
              erickerickson Erick Erickson
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: