[ 
https://issues.apache.org/jira/browse/WICKET-6230?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15428009#comment-15428009
 ] 

Daniel Stoch edited comment on WICKET-6230 at 8/19/16 11:22 AM:
----------------------------------------------------------------

I think the problem can be inside UrlRenderer.renderRelativeUrl(url) method. 
This method returns the following results:
{code}
url = test/text/aaa./
result = ../aaa.
{code}
{code}
url = test/text/aaa.../
result = ../aaa.../
{code}

The last if in this method maybe is problematic:
{code}
                // add trailing slash if the url has no query string and ends 
with ..
                if (renderedUrl.indexOf('?') == -1 && 
renderedUrl.endsWith(".."))
                {
                        // WICKET-4401
                        renderedUrl = renderedUrl + '/';
                }
{code}


was (Author: interface):
I think the problem can be inside UrlRenderer.renderUrl(url) method. This 
method returns the following results:
{code}
url = test/text/aaa./
result = ../aaa.
{code}
{code}
url = test/text/aaa.../
result = ../aaa.../
{code}

> Infinite redirection when using UrlPathPageParametersEncoder
> ------------------------------------------------------------
>
>                 Key: WICKET-6230
>                 URL: https://issues.apache.org/jira/browse/WICKET-6230
>             Project: Wicket
>          Issue Type: Bug
>          Components: wicket
>    Affects Versions: 6.22.0, 6.24.0
>            Reporter: Daniel Stoch
>         Attachments: mountingtest.zip
>
>
> When you mount page with UrlPathPageParametersEncoder:
> {code}
> mount(new MountedMapper("/test", TestPage.class, new 
> UrlPathPageParametersEncoder()));
> {code}
> and then user pass a special parameter value in url which ends with more than 
> one dot and slash (eg. "../", ".../", etc.) then application starts endless 
> redirects. It leads to error in browser such as:
> {quote}
> The page isn’t redirecting properly
> {quote}
> Without last slash everything works ok.
> I have attached a quickstart. Run this application and enter the following 
> url in your browser:
> {code}
> http://localhost:8080/test/text/aaa.../
> {code}



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to