Hi Mathieu,

You mean when ran isolated, right?

Because https://ci.apache.org/builders/ofbizTrunkFrameworkPlugins is OK

Thanks

Jacques

Le 24/05/2019 à 23:50, Mathieu Lirzin a écrit :
Hello Jacques,

jler...@apache.org writes:

Author: jleroux
Date: Fri May 24 13:47:08 2019
New Revision: 1859877

URL: http://svn.apache.org/viewvc?rev=1859877&view=rev
Log:
Fixed: Services allow arbitrary HTML for parameters with allow-html set to 
"safe"
(OFBIZ-5254)

This was reopened after discussion at
https://markmail.org/message/jnaitmwahjcjmdn5

This is a new solution which follows the work done with and OFBIZ-10187
Roughly said, it uses org.owasp.html.PolicyFactory and org.owasp.html.Sanitizers

Thanks: Christoph Neuroth for report
This commit breaks the “custrequesttests” test suite with a vanilla
framework after ‘loadAll’. If the issue can not be solved tomorrow
please revert.

Thanks.

Reply via email to