[ https://issues.apache.org/jira/browse/MAPREDUCE-4720?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13497556#comment-13497556 ]
Robert Joseph Evans commented on MAPREDUCE-4720: ------------------------------------------------ Also there does not appear to be any escaping when you are generating the JSON array. This is mostly with the job name, which I have seen some very strange names, like with a '\n' in them, but it could also lead to a XSS if the name is maliciously formatted. > Browser thinks History Server main page JS is taking too long > ------------------------------------------------------------- > > Key: MAPREDUCE-4720 > URL: https://issues.apache.org/jira/browse/MAPREDUCE-4720 > Project: Hadoop Map/Reduce > Issue Type: Bug > Affects Versions: 0.23.3 > Reporter: Robert Joseph Evans > Assignee: Ravi Prakash > Attachments: MAPREDUCE-4720.branch-0.23.patch, > MAPREDUCE-4720.branch23.patch, MAPREDUCE-4720.branch23.patch, > MAPREDUCE-4720.patch, MAPREDUCE-4720.patch, MAPREDUCE-4720.trunk.patch, > MAPREDUCE-4720.trunk.patch, MAPREDUCE-4720.trunk.patch > > > The main History Server page with the default settings of 20,000 jobs can > cause browsers to think that the JS on the page is stuck and ask you if you > want to kill it. This is a big usability problem. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira