Uploaded image for project: 'Dev - Nexus Repo'
  1. Dev - Nexus Repo
  2. NEXUS-12852

certain responses may print absolute file system paths in the response

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 3.2.1
    • Fix Version/s: 3.3.0
    • Component/s: Security
    • Labels:
      None

      Description

      In a non-default configuration, a very limited set of pages returned from Nexus may print the absolute file path to a single directory on the server.

      It is not desired to expose any absolute file paths on the server in any pages without just cause.

      No actual access to these paths is granted - this issue is about exposing path information only.

        Attachments

          Activity

            People

            Assignee:
            Unassigned
            Reporter:
            plynch Peter Lynch
            Last Updated By:
            Peter Lynch
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved:

                tigCommentSecurity.panel-title