Patch #43966
closed
Tighten SVN repository URL validation
Added by Jens Krämer 21 days ago.
Updated 19 days ago.
Description
For some reason, the repo URL validation regexp uses \A, but lacks \z. The URL seems to be sufficiently escaped / quoted where used so not really an actual security issue, but still, I do not see a reason to allow values with multiple lines here.
Files
- Target version set to 6.0.10
Setting the target version to 6.0.10.
- Status changed from New to Resolved
- Assignee set to Go MAEDA
Committed the fix in r24589. Thank you.
- Subject changed from tighten SVN repository URL validation to Tighten SVN repository URL validation
- Status changed from Resolved to Closed
Merged the fix into the stable branches in r24590 and r24591.
Also available in: Atom
PDF