Changeset 2441484 for apps/jetty


Ignore:
Timestamp:
Aug 9, 2017 7:53:41 PM (3 years ago)
Author:
zzz <zzz@…>
Branches:
master
Children:
3d38522
Parents:
2c76b87
Message:

Package changelogs
Fix extra chars in patch 1
Fix javadoc causing build error on Trusty
Deb build doc updates

File:
1 edited

Legend:

Unmodified
Added
Removed
  • apps/jetty/java/src/net/i2p/servlet/I2PDefaultServlet.java

    r2c76b87 r2441484  
    249249     *
    250250     * Encode any characters that could break the URI string in an HREF.
    251      * Such as <a href="/path/to;<script>Window.alert("XSS"+'%20'+"here");</script>">Link</a>
     251     * Such as &lt;a href="/path/to;&lt;script&gt;Window.alert("XSS"+'%20'+"here");&lt;/script&gt;"&gt;Link&lt;/a&gt;
    252252     *
    253      * The above example would parse incorrectly on various browsers as the "<" or '"' characters
     253     * The above example would parse incorrectly on various browsers as the "&lt;" or '"' characters
    254254     * would end the href attribute value string prematurely.
    255255     *
Note: See TracChangeset for help on using the changeset viewer.