[jira] Updated: (OFBIZ-3862) Ajax requests prevent externalLoginKey parameters from working correctly

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-3862) Ajax requests prevent externalLoginKey parameters from working correctly

Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-3862?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jacques Le Roux updated OFBIZ-3862:
-----------------------------------

    Attachment: externalKey.patch
                externalKey.patch

The attached patch works, but as it's hastily done I prefer other committers to check, notably at the security level

Thanks

> Ajax requests prevent externalLoginKey parameters from working correctly
> ------------------------------------------------------------------------
>
>                 Key: OFBIZ-3862
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-3862
>             Project: OFBiz
>          Issue Type: Bug
>          Components: framework
>    Affects Versions: SVN trunk
>            Reporter: Scott Gray
>         Attachments: externalKey.patch, externalKey.patch
>
>
> A new external login key is generated for every request so if an ajax request fires on a page then the externalLoginKey used in any links on the page is invalidated.

--
This message is automatically generated by JIRA.
-
For more information on JIRA, see: http://www.atlassian.com/software/jira