Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Last Resort Error Handler #9122

Closed
rymsha opened this issue Oct 4, 2021 · 1 comment
Closed

Last Resort Error Handler #9122

rymsha opened this issue Oct 4, 2021 · 1 comment
Assignees
Labels
Improvement Security Fix for something unsafe
Projects
Milestone

Comments

@rymsha
Copy link
Contributor

rymsha commented Oct 4, 2021

In case of error in URL jetty shows default error page (400), that can potentially be used for fishing attacks
https://github.com/eclipse/jetty.project/issues/6958

Implement Error Handler that does not write any user provided information on the page

@rymsha rymsha added Improvement Security Fix for something unsafe labels Oct 4, 2021
rymsha added a commit that referenced this issue Oct 4, 2021
rymsha added a commit that referenced this issue Oct 5, 2021
@rymsha
Copy link
Contributor Author

rymsha commented Oct 5, 2021

This is a continuation of #8342
#8382 is still actual

@rymsha rymsha added this to To do in 7.8.0 via automation Oct 5, 2021
@rymsha rymsha moved this from To do to In progress in 7.8.0 Oct 5, 2021
@rymsha rymsha added this to the 7.8.0 milestone Oct 5, 2021
rymsha added a commit that referenced this issue Oct 5, 2021
@rymsha rymsha moved this from In progress to Done in 7.8.0 Oct 6, 2021
@rymsha rymsha self-assigned this Oct 6, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Improvement Security Fix for something unsafe
Projects
No open projects
7.8.0
Done
Development

No branches or pull requests

2 participants