Uploaded image for project: 'Solr'
  1. Solr
  2. SOLR-8308

Core gets inaccessible after RENAME operation with special characters

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 5.5, 6.0
    • Component/s: None
    • Labels:
      None

      Description

      You can rename a core using the following modified URL https://SOLR:PORT/solr/admin/cores?wt=json&indexInfo=false&action=RENAME&core=test_app_shared2_replica2&other=%3Csvg+onload%3Dalert(1)%3E&_=1445468005152. The core becomes inaccessible / unusable. There should be more form validation to the core name assignment

        Attachments

        1. SOLR-8308.patch
          1 kB
          Erik Hatcher
        2. SOLR-8308.patch
          1 kB
          Erik Hatcher
        3. SOLR-8308.patch
          5 kB
          Erick Erickson
        4. SOLR-8308.patch
          10 kB
          Erick Erickson

          Issue Links

            Activity

              People

              • Assignee:
                erickerickson Erick Erickson
                Reporter:
                adam.johnson Adam Johnson
              • Votes:
                0 Vote for this issue
                Watchers:
                7 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: