cloudstack/plugins
Rohit Yadav 19c194c0e1 saml: Safer DocumentBuilderFactory and ParserPool configuration
This implements safer DocumentBuilderFactory and ParserPool utilities
to be used throughout the codebase to prevent potential XXE exploits.

References:
https://cheatsheetseries.owasp.org/cheatsheets/XML_External_Entity_Prevention_Cheat_Sheet.html
https://www.blackhat.com/docs/us-15/materials/us-15-Wang-FileCry-The-New-Age-Of-XXE-java-wp.pdf

Signed-off-by: Rohit Yadav <rohit.yadav@shapeblue.com>
(cherry picked from commit 0c6b92142cc402c3eebf9bf4aa3c77b2d9defc69)
Signed-off-by: Rohit Yadav <rohit.yadav@shapeblue.com>
2022-07-12 18:45:36 +05:30
..
acl Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
affinity-group-processors Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
alert-handlers Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
api Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
backup Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
ca/root-ca Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
database Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
dedicated-resources Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
deployment-planners Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
event-bus Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
ha-planners/skip-heurestics Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
host-allocators/random Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
hypervisors Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
integrations Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
metrics Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
network-elements Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
outofbandmanagement-drivers Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
storage Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
storage-allocators/random Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00
user-authenticators saml: Safer DocumentBuilderFactory and ParserPool configuration 2022-07-12 18:45:36 +05:30
pom.xml Updating pom.xml version numbers for release 4.17.0.0 2022-05-31 14:33:47 -03:00