On Wed, Apr 13, 2011 at 3:14 PM, Brett Porter wrote:
>
>
> On 13/04/2011, at 4:36 PM, c...@apache.org wrote:
>
> > Author: ctan
> > Date: Wed Apr 13 06:36:20 2011
> > New Revision: 1091669
> >
> > URL: http://svn.apache.org/viewvc?rev=1091669&view=rev
> > Log:
> > [CONTINUUM-2620] use c:out and f
Yep, it was caught by the existing selenium tests that go through
project group removal. I just didn't notice it previously because the
selenium tests failed when I ran it prior to my changes.
On Wed, Apr 13, 2011 at 3:15 PM, Brett Porter wrote:
> On 13/04/2011, at 3:56 PM, och...@apache.org wrot
On 13/04/2011, at 3:56 PM, och...@apache.org wrote:
> Author: oching
> Date: Wed Apr 13 05:56:41 2011
> New Revision: 1091659
>
> URL: http://svn.apache.org/viewvc?rev=1091659&view=rev
> Log:
> [CONTINUUM-2622] revert usage of token interceptor for remove project group
> as it breaks delete proj
On 13/04/2011, at 4:36 PM, c...@apache.org wrote:
> Author: ctan
> Date: Wed Apr 13 06:36:20 2011
> New Revision: 1091669
>
> URL: http://svn.apache.org/viewvc?rev=1091669&view=rev
> Log:
> [CONTINUUM-2620] use c:out and fn:escapeXml to prevent XSS attacks
It's good to be cautious in this area