mirror of
https://github.com/Alfresco/alfresco-community-repo.git
synced 2025-07-24 17:32:48 +00:00
MNT-22316 - Added pathInfo length validation before attempting substring (#487)
This commit is contained in:
@@ -716,7 +716,7 @@ public abstract class BaseSSOAuthenticationFilter extends BaseAuthenticationFilt
|
|||||||
}
|
}
|
||||||
else
|
else
|
||||||
{
|
{
|
||||||
if(!pathInfo.substring(0, 6).toLowerCase().equals("/cmis/") && !pathInfo.equals("/discovery"))
|
if((pathInfo.length() > 5 && !pathInfo.substring(0, 6).toLowerCase().equals("/cmis/")) && !pathInfo.equals("/discovery"))
|
||||||
{
|
{
|
||||||
// remove tenant
|
// remove tenant
|
||||||
int idx = pathInfo.indexOf('/', 1);
|
int idx = pathInfo.indexOf('/', 1);
|
||||||
|
Reference in New Issue
Block a user