[jira] [Created] (OFBIZ-12226) Secure Gl passed to URL - follows deletion of 10015 - COGS avg cost adjustment

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

[jira] [Created] (OFBIZ-12226) Secure Gl passed to URL - follows deletion of 10015 - COGS avg cost adjustment

Nicolas Malin (Jira)
Ernest Hocking created OFBIZ-12226:
--------------------------------------

             Summary: Secure Gl passed to URL - follows deletion of 10015 - COGS avg cost adjustment
                 Key: OFBIZ-12226
                 URL: https://issues.apache.org/jira/browse/OFBIZ-12226
             Project: OFBiz
          Issue Type: Sub-task
          Components: accounting
    Affects Versions: Release Branch 17.12
            Reporter: Ernest Hocking


The Following Errors Occurred:

Error calling event: org.apache.ofbiz.webapp.event.EventHandlerException: Found URL parameter [glAccountTypeId] passed to secure (https) request-map with uri [createGlAccountTypeDefault] with an event that calls service [createGlAccountTypeDefault]; this is not allowed for security reasons! The data should be encrypted by making it part of the request body (a form field) instead of the request URL. Moreover it would be kind if you could create a Jira sub-task of https://issues.apache.org/jira/browse/OFBIZ-2330 (check before if a sub-task for this error does not exist). If you are not sure how to create a Jira issue please have a look before at https://cwiki.apache.org/confluence/display/OFBIZ/OFBiz+Contributors+Best+Practices Thank you in advance for your help.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)