Consider validating shindig.container.util.getParamValue paramName argument.
----------------------------------------------------------------------------
Key: SHINDIG-1349
URL: https://issues.apache.org/jira/browse/SHINDIG-1349
Project: Shindig
Issue Type: Improvement
Components: Javascript
Reporter: John Hjelmstad
Priority: Minor
As a minor security precaution, we should consider validating the paramName
argument passed into shindig.container.util.getParamValue to prevent regex's
being passed in that might overbroadly match context.
--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.