|
David Yu made changes - 25/Oct/07 10:31 PM
Greg Wilkins made changes - 25/Oct/07 10:44 PM
David, I think you need to catch a lot more cases. for example getPathInfo
David Yu made changes - 29/Oct/07 02:37 AM
David Yu made changes - 30/Oct/07 03:06 AM
The fix for snoop.jsp causes it to incorrectly format the page with mismatched or missing markup tags - can you look into that? thanks
David Yu made changes - 30/Oct/07 10:28 PM
David Yu made changes - 30/Oct/07 10:51 PM
David Yu made changes - 30/Oct/07 10:52 PM
You need to escape the outputting of the Http parameters, and also the cookies. cheers
David Yu made changes - 31/Oct/07 03:36 AM
David Yu made changes - 31/Oct/07 03:36 AM
I redid this so instead of inserting replace().replace() everywhere, there is a private notag Also many of the getPathInfo and similar methods were not protected.
Greg Wilkins made changes - 02/Nov/07 12:41 AM
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
fix patch attached