cloudstack/plugins
Rohit Yadav 7c7ee05cef
saml: Safer DocumentBuilderFactory and ParserPool configuration (#183)
This implements safer DocumentBuilderFactory and ParserPool utilities
to be used throughout the codebase to prevent potential XXE exploits.

References:
https://cheatsheetseries.owasp.org/cheatsheets/XML_External_Entity_Prevention_Cheat_Sheet.html
https://www.blackhat.com/docs/us-15/materials/us-15-Wang-FileCry-The-New-Age-Of-XXE-java-wp.pdf

Signed-off-by: Rohit Yadav <rohit.yadav@shapeblue.com>
2022-07-18 19:40:20 +05:30
..
acl Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
affinity-group-processors Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
alert-handlers Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
api Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
backup Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
ca/root-ca Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
database Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
dedicated-resources Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
deployment-planners Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
event-bus Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
ha-planners/skip-heurestics Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
host-allocators/random Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
hypervisors Backport ScaleIO VM template copy fix for non-direct download (#181) 2022-07-14 16:04:28 +05:30
integrations schema,server,api: events improvement (#127) 2022-05-05 13:44:33 +05:30
metrics Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
network-elements schema,server,api: events improvement (#127) 2022-05-05 13:44:33 +05:30
outofbandmanagement-drivers Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
storage Volume encryption (#135) 2022-06-29 15:51:00 +05:30
storage-allocators/random Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30
user-authenticators saml: Safer DocumentBuilderFactory and ParserPool configuration (#183) 2022-07-18 19:40:20 +05:30
pom.xml Updating pom.xml version numbers for release 4.16.1.0 2022-02-25 19:01:16 +05:30