Consider validating shindig.container.util.getParamValue paramName argument.
----------------------------------------------------------------------------

                 Key: SHINDIG-1349
                 URL: https://issues.apache.org/jira/browse/SHINDIG-1349
             Project: Shindig
          Issue Type: Improvement
          Components: Javascript 
            Reporter: John Hjelmstad
            Priority: Minor


As a minor security precaution, we should consider validating the paramName 
argument passed into shindig.container.util.getParamValue to prevent regex's 
being passed in that might overbroadly match context.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply via email to