Fix sql injection vulnerability 27/88827/1
authorDominik Orliński <d.orlinski@samsung.com>
Tue, 30 Apr 2019 09:29:06 +0000 (11:29 +0200)
committerDominik Orliński <d.orlinski@samsung.com>
Thu, 30 May 2019 06:55:47 +0000 (08:55 +0200)
commit3264d36e04f57e7f9d407b49c1253f73c4bf5d72
treeed20e442864995b432758268c445093144ac1ac6
parentba546e970d779a5e87a07b3058a85e1446c39129
Fix sql injection vulnerability

Use a variable binding instead of concatenation.
Add new test for function 'createLocalUserIfNecessary'.

Issue-ID: OJSI-174
Change-Id: Iddd65893bb2cb16c90d4f8db59816fdf261874bc
Signed-off-by: Dominik Orliński <d.orlinski@samsung.com>
ecomp-portal-BE-common/src/main/java/org/onap/portalapp/portal/service/UserRolesCommonServiceImpl.java
ecomp-portal-BE-common/src/test/java/org/onap/portalapp/portal/service/UserRolesCommonServiceImplTest.java