-
Notifications
You must be signed in to change notification settings - Fork 11
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix(fsxaremoteapi): uri encoding of user input #121
Merged
Merged
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
lksmsr
changed the title
TNG-1179 URI Encoding
fix(fsxaremoteapi): uri encoding of user input
Jul 28, 2022
lksmsr
force-pushed
the
TNG-1179_URI_encoding
branch
from
July 28, 2022 08:59
b4329f3
to
075ce72
Compare
We need to ensure all user input that is used for constructing the backend request is sanitized to prevent any exploiting of potential SSRF vulnerabilities.
lksmsr
force-pushed
the
TNG-1179_URI_encoding
branch
2 times, most recently
from
July 28, 2022 12:27
9cec912
to
86af7a6
Compare
lksmsr
force-pushed
the
TNG-1179_URI_encoding
branch
from
July 28, 2022 12:29
86af7a6
to
4bcf4d8
Compare
We extended the scope of this ticket and added integration tests with it |
…ude tests and remove tslint
ghost
force-pushed
the
TNG-1179_URI_encoding
branch
2 times, most recently
from
August 4, 2022 10:59
06bcbf6
to
1f53b81
Compare
ghost
force-pushed
the
TNG-1179_URI_encoding
branch
from
August 4, 2022 11:03
1f53b81
to
f3b9bf8
Compare
ghost
approved these changes
Aug 8, 2022
ghost
deleted the
TNG-1179_URI_encoding
branch
August 8, 2022 15:48
github-actions bot
pushed a commit
that referenced
this pull request
Aug 8, 2022
## [10.3.2](v10.3.1...v10.3.2) (2022-08-08) ### Bug Fixes * **fsxaremoteapi:** uri encoding of user input ([#121](#121)) ([6fc9ca8](6fc9ca8))
🎉 This PR is included in version 10.3.2 🎉 The release is available on: Your semantic-release bot 📦🚀 |
This pull request was closed.
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
No description provided.