Set properties on XML parsers to prevent XXE attack 35/108935/2
authorNeil Derraugh <neil.derraugh@yoppworks.com>
Mon, 8 Jun 2020 19:45:58 +0000 (15:45 -0400)
committerOfir Sonsino <ofir.sonsino@intl.att.com>
Wed, 10 Jun 2020 08:23:38 +0000 (08:23 +0000)
commitc8a11265085b1342c4efa03a9985d9fd9ca203a3
tree69722d1c38d2de8f6b0648e869a5510f82d5fc3c
parent6cfebc0867b2f21a401f55734aba30eb245e3c70
Set properties on XML parsers to prevent XXE attack

- Set ACCESS_EXTERNAL_DTD and ACCESS_EXTERNAL_SCHEMA properties on XML
parsers to prevent XXE attacks

Issue-ID: SDC-3106
Signed-off-by: Neil Derraugh <neil.derraugh@yoppworks.com>
Change-Id: If4e835858dd3d718d37b3ee41fb2fd0c94574c24
asdctool/src/main/java/org/openecomp/sdc/asdctool/impl/GraphMLDataAnalyzer.java
catalog-be/src/main/java/org/openecomp/sdc/be/components/impl/ArtifactsBusinessLogic.java
catalog-be/src/main/java/org/openecomp/sdc/be/components/impl/artifact/PayloadTypeEnum.java