[ 
https://issues.apache.org/jira/browse/SLING-13338?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Joerg Hoh updated SLING-13338:
------------------------------
    Description: 
A method used by consumers to check whether input required sanitization did not 
account for adjustments made by the underlying sanitization logic in one 
specific area, which could cause that check to report input as safe even though 
the full sanitization process would have modified it.

Commit: 


  was:A method used by consumers to check whether input required sanitization 
did not account for adjustments made by the underlying sanitization logic in 
one specific area, which could cause that check to report input as safe even 
though the full sanitization process would have modified it.


> Validation-check API did not reflect certain sanitization outcomes
> ------------------------------------------------------------------
>
>                 Key: SLING-13338
>                 URL: https://issues.apache.org/jira/browse/SLING-13338
>             Project: Sling
>          Issue Type: Improvement
>          Components: XSS Protection API
>            Reporter: Joerg Hoh
>            Assignee: Joerg Hoh
>            Priority: Major
>             Fix For: XSS Protection API 2.4.12
>
>
> A method used by consumers to check whether input required sanitization did 
> not account for adjustments made by the underlying sanitization logic in one 
> specific area, which could cause that check to report input as safe even 
> though the full sanitization process would have modified it.
> Commit: 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to