|
Author: lektran
Revision: 920381
Modified property: svn:log
Modified: svn:log at Wed Apr 14 19:56:42 2010
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Wed Apr 14 19:56:42 2010
@@ -1,2 +1,2 @@
-Merged from trunk r920371
+[CVE-2010-0432] Merged from trunk r920371
Properly encode any error messages before attempting to write them to the response. I'm doing it here to avoid having to do the encoding within each app's error.jsp file, I think this should be fine though.
|