Patch #43966
closed
Tighten SVN repository URL validation
Added by Jens Krämer about 1 month ago.
Updated about 1 month ago.
Description
For some reason, the repo URL validation regexp uses \A, but lacks \z. The URL seems to be sufficiently escaped / quoted where used so not really an actual security issue, but still, I do not see a reason to allow values with multiple lines here.
Files
- Target version set to 6.0.10
Setting the target version to 6.0.10.
- Status changed from New to Resolved
- Assignee set to Go MAEDA
Committed the fix in r24589. Thank you.
- Subject changed from tighten SVN repository URL validation to Tighten SVN repository URL validation
- Status changed from Resolved to Closed
Merged the fix into the stable branches in r24590 and r24591.
Also available in: Atom
PDF