archiva/archiva-modules/archiva-web
Brett Porter 58d905941b [MRM-1480]/[REDBACK-274] (CVE-2011-1026)
o upgrade to redback 1.2.8-SNAPSHOT
o configured struts2's token interceptor + use of <s:token> in affected actions to prevent CSRF issue
[MRM-1460] added selenium tests for CSRF fixes in affected pages
Merged: r1066067:1091313


git-svn-id: https://svn.apache.org/repos/asf/archiva/trunk@1091315 13f79535-47bb-0310-9956-ffa450edef68
2011-04-12 07:16:34 +00:00
..
archiva-applet restore versions on trunk 2010-01-18 11:20:28 +00:00
archiva-rss [MRM-1327] fix 'used by' to work under JCR store. Remove updateProjectReferences API 2011-03-29 12:42:47 +00:00
archiva-security [MRM-1362] Add simple 'CRUD' pages for project-level metadata along with a "generic metadata" plugin 2010-06-07 08:15:53 +00:00
archiva-webapp [MRM-1480]/[REDBACK-274] (CVE-2011-1026) 2011-04-12 07:16:34 +00:00
archiva-webapp-test [MRM-1480]/[REDBACK-274] (CVE-2011-1026) 2011-04-12 07:16:34 +00:00
archiva-webdav [MRM-1327] fix 'used by' to work under JCR store. Remove updateProjectReferences API 2011-03-29 12:42:47 +00:00
archiva-xmlrpc [MRM-1461] 2011-03-16 14:53:40 +00:00
pom.xml restore versions on trunk 2010-01-18 11:20:28 +00:00