From d43f53947b18eee53cb57064d536475d7492cdd0 Mon Sep 17 00:00:00 2001 From: Robert Godfrey Date: Fri, 22 Aug 2014 10:39:56 +0000 Subject: QPID-6022 : Remove unnecessary and potentially XSS inducing replay of the path info in the error response git-svn-id: https://svn.apache.org/repos/asf/qpid/trunk@1619733 13f79535-47bb-0310-9956-ffa450edef68 --- .../org/apache/qpid/server/management/plugin/servlet/FileServlet.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'qpid/java') diff --git a/qpid/java/broker-plugins/management-http/src/main/java/org/apache/qpid/server/management/plugin/servlet/FileServlet.java b/qpid/java/broker-plugins/management-http/src/main/java/org/apache/qpid/server/management/plugin/servlet/FileServlet.java index 3eab80dbd8..1c741d97e8 100644 --- a/qpid/java/broker-plugins/management-http/src/main/java/org/apache/qpid/server/management/plugin/servlet/FileServlet.java +++ b/qpid/java/broker-plugins/management-http/src/main/java/org/apache/qpid/server/management/plugin/servlet/FileServlet.java @@ -119,7 +119,7 @@ public class FileServlet extends HttpServlet } else { - response.sendError(HttpServletResponse.SC_NOT_FOUND, "unknown file: "+ filename); + response.sendError(HttpServletResponse.SC_NOT_FOUND, "unknown file"); } } -- cgit v1.2.1