Re: [ANNOUNCE] Ajit Kumar as a new Apache Ambari Committer

2016-04-05 Thread Jayush Luniya
Congrats Ajit! Jayush On 4/5/16, 9:05 PM, "Sumit Mohanty" wrote: >It is my pleasure to announce that Ajit Kumar has become a committer for >Apache Ambari. Welcome Ajit. > > >thanks > >-Sumit

[ANNOUNCE] Ajit Kumar as a new Apache Ambari Committer

2016-04-05 Thread Sumit Mohanty
It is my pleasure to announce that Ajit Kumar has become a committer for Apache Ambari. Welcome Ajit. thanks -Sumit

Re: cross-site vulnerability of APIs

2016-04-05 Thread Hitesh Shah
Vulnerabilities should not be exposed on public mailing lists without giving a project the chance to patch vulnerable released versions. Please report such vulnerabilities to secur...@apache.org or priv...@ambari.apache.org. http://www.apache.org/security/#reporting-a-vulnerability thanks — Hi

cross-site vulnerability of APIs

2016-04-05 Thread Keta Patel
Hello all, I recently encountered a couple of APIs which were vulnerable to cross-site script attacks through parameters like "description" or "name". These parameters are passed in directly to server-side code and stored in the database. The UI validation at present only checks for the length of t