Issue Number | 5364 |
---|---|
Summary | Eliminate Python stack trace disclosure |
Created | 2025-01-22 12:02:09 |
Issue Type | Improvement |
Submitted By | Kline, Bob (NIH/NCI) [C] |
Assigned To | Kline, Bob (NIH/NCI) [C] |
Status | Resolved |
Resolved | 2025-01-22 12:41:30 |
Resolution | Fixed |
Path | /home/bkline/backups/jira/ocecdr/issue.488427 |
Reported as Medium vulnerability by January appscan. Modify the filter page so that an exception is caught if invalid XML characters are inserted into URL parameters.
Fixed on CDR DEV.
https://github.com/NCIOCPL/cdr-lib/commit/96e7d47
https://github.com/NCIOCPL/cdr-admin/commit/fe3114ee
Elapsed: 0:00:00.001633