Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-25892

The XsrfVulnerabilityDetectionSQLInterceptor throws a RuntimeException when logging mutating actions that are not protected by @RequiresXsrfCheck annotations

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • Low
    • 4.4.4
    • 4.0
    • None

    Description

      XsrfVulnerabilityDetectionSQLInterceptor is designed to log mutating actions that have not been protected by an XSRF annotation, but it also throws a runtime exception, causing the action to abort, but only if the log level is set to info.

      Attachments

        Activity

          People

            rsmart metapoint
            jwinters tier-0 grump
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: