issues
search
vidyuthd
/
owasp-esapi-java
Automatically exported from code.google.com/p/owasp-esapi-java
0
stars
0
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
esapi-2.0_rc10-config.zip does not include esapi jar
#165
GoogleCodeExporter
closed
9 years ago
2
Change .esapi property file folder to esapi
#164
GoogleCodeExporter
closed
9 years ago
2
DOMConfigurator is being used inappropriately in the ESAPIWebApplicationFirewallFilter
#163
GoogleCodeExporter
opened
9 years ago
3
AntiCSRF Tokens - JSP Tags
#162
GoogleCodeExporter
opened
9 years ago
4
DefaultSecurityConfiguration.loadConfiguration() does not reload validation.properties
#161
GoogleCodeExporter
closed
9 years ago
2
DefaultEncoder.canonicalize() should respect value of Encoder.AllowMultipleEncoding property
#160
GoogleCodeExporter
closed
9 years ago
4
Cannot configure per-class or per-package log levels with Log4j Logger
#159
GoogleCodeExporter
closed
9 years ago
2
ESAPI URL validation RX is vulnerable to DoS
#158
GoogleCodeExporter
closed
9 years ago
7
Need a version of EncryptedProperties that extends java.util.Properties
#157
GoogleCodeExporter
closed
9 years ago
6
Issues while validating locale specific characters.
#156
GoogleCodeExporter
opened
9 years ago
5
org.owasp.esapi.filters.SecurityWrapperResponse.createCookieHeader does not respect HttpOnly and Secure properties in ESAPI.properties
#155
GoogleCodeExporter
closed
9 years ago
3
New XML config and config management needed
#154
GoogleCodeExporter
opened
9 years ago
6
Limit max size of entire cookies
#153
GoogleCodeExporter
opened
9 years ago
3
DefaultEncoder not respecting IntrusionDetector.Disable=true in ESAPI.properties
#152
GoogleCodeExporter
closed
9 years ago
2
HTTPParameterValue regular expression is too restriction
#151
GoogleCodeExporter
closed
9 years ago
9
SecurityWrapperRequest.setAllowableContentRoot() protection evasion
#150
GoogleCodeExporter
closed
9 years ago
3
org.owasp.esapi.filters.SecurityWrapperResponse cookie size limits
#149
GoogleCodeExporter
closed
9 years ago
2
Exceptions in org/owasp/esapi/errors should mark logger as transient
#148
GoogleCodeExporter
closed
9 years ago
2
minimum-config deployment fails
#147
GoogleCodeExporter
opened
9 years ago
4
Executor tests fail for openjdk on linux
#146
GoogleCodeExporter
closed
9 years ago
2
Ensure that the pom.xml is in the zip file
#145
GoogleCodeExporter
closed
9 years ago
1
URL encoding cookies
#144
GoogleCodeExporter
closed
9 years ago
1
HTMLEntityCodec static data can initialized multiple times, possibly deadlocking
#143
GoogleCodeExporter
closed
9 years ago
2
org.owasp.esapi.ESAPI singletons in 1.4 are not thread-safe
#142
GoogleCodeExporter
closed
9 years ago
11
RequestRateThrottleFilter does not work as expected.
#141
GoogleCodeExporter
closed
9 years ago
8
DefaultExecutor.executeSystemCommand() has deadlock potential
#140
GoogleCodeExporter
closed
9 years ago
5
Race condition in ESAPI.securityConfiguration()
#139
GoogleCodeExporter
closed
9 years ago
2
Exception in thread "main" java.lang.NoClassDefFoundError: org/owasp/validator/html/PolicyException
#138
GoogleCodeExporter
closed
9 years ago
4
Add ESAPI to Maven Central
#137
GoogleCodeExporter
closed
9 years ago
1
password change is not saved
#136
GoogleCodeExporter
closed
9 years ago
3
Unprofessional text in log.
#135
GoogleCodeExporter
closed
9 years ago
2
Default logging appender org.apache.log4j.ConsoleAppender is not good for Web applications
#134
GoogleCodeExporter
closed
9 years ago
1
Enchance encodeForOS to auto-detect the underling OS
#133
GoogleCodeExporter
opened
9 years ago
7
SecurityWrapperRequest.setAllowableContentRoot()
#132
GoogleCodeExporter
closed
9 years ago
3
Modifications to .properties files
#131
GoogleCodeExporter
opened
9 years ago
2
Validation is encoding the context in error messages
#130
GoogleCodeExporter
closed
9 years ago
2
Change ESAPI Logging levels to indicate importance of log event but not indicate success/failure
#129
GoogleCodeExporter
opened
9 years ago
3
ESAPI Singletons Inherently Broken
#128
GoogleCodeExporter
closed
9 years ago
1
SecurityWrapperResponse Forcefully Adds Secure Flag Breaking Non-SSL Sites
#127
GoogleCodeExporter
closed
9 years ago
1
Validating email addresses that contain an apostrophe
#126
GoogleCodeExporter
closed
9 years ago
2
SecurityWrapperRequest#getQueryString() decodes percent escapes
#125
GoogleCodeExporter
opened
9 years ago
5
HTTPServletPath regular expression missing from ESAPI.properties
#124
GoogleCodeExporter
closed
9 years ago
4
JSESSIONID cookie name hardcoded, not configurable
#123
GoogleCodeExporter
closed
9 years ago
4
SecurityWrapperRequest.getParameters(String) inconsistent with definition in ServletRequest
#122
GoogleCodeExporter
closed
9 years ago
7
SecurityWrapperRequest should expect a null value for the query string
#121
GoogleCodeExporter
closed
9 years ago
7
JavaEncryptor vulnerable to "padding oracle attack"
#120
GoogleCodeExporter
closed
9 years ago
1
Add Logging support for SLF4J
#119
GoogleCodeExporter
opened
9 years ago
7
Extract standalone methods from Authenticator class
#118
GoogleCodeExporter
opened
9 years ago
5
log4j.xml in the ESAPI jar is used by default in web applications
#117
GoogleCodeExporter
closed
9 years ago
1
Global HTTP Validation Rules -> some possible improvements
#116
GoogleCodeExporter
opened
9 years ago
27
Previous
Next