Uploaded image for project: 'Struts 2'
  1. Struts 2
  2. WW-5340

Introduce optional AST node exclusion list

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Minor
    • Resolution: Fixed
    • None
    • 6.4.0
    • Core
    • None

    Description

      Enhance security by implementing an optional exclusion list (in struts.xml) where applications can specify AST nodes that are not required in their applications or are known to carry higher security risk.

      Attachments

        Activity

          People

            Unassigned Unassigned
            kusal Kusal Kithul-Godage
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - 0h
                0h
                Logged:
                Time Spent - 5.5h
                5.5h