From 013779aedf93a6f6ff878c457de53e729540c252 Mon Sep 17 00:00:00 2001 From: vasraz Date: Wed, 7 Sep 2022 18:45:20 +0100 Subject: Fix high-severity bug 'application exposed to path traversal attack' Signed-off-by: Vasyl Razinkov Change-Id: I7f4b1e8d083cc39f8e57dcedddecc6af56fdc9c2 Issue-ID: SDC-4169 --- catalog-be/src/main/webapp/WEB-INF/web.xml | 45 +++++++++++++++++------------- 1 file changed, 26 insertions(+), 19 deletions(-) (limited to 'catalog-be/src') diff --git a/catalog-be/src/main/webapp/WEB-INF/web.xml b/catalog-be/src/main/webapp/WEB-INF/web.xml index ca71eee221..64763b27a8 100644 --- a/catalog-be/src/main/webapp/WEB-INF/web.xml +++ b/catalog-be/src/main/webapp/WEB-INF/web.xml @@ -1,7 +1,8 @@ - + jersey @@ -77,7 +78,8 @@ ECOMPServlet - org.onap.portalsdk.core.onboarding.crossapi.PortalRestAPIProxy + org.onap.portalsdk.core.onboarding.crossapi.PortalRestAPIProxy + 3 true @@ -174,22 +176,22 @@ /sdc/* - + + basicAuthFilter + /* + --> @@ -252,6 +254,11 @@ org.openecomp.sdc.be.togglz.TogglzConfiguration + + org.eclipse.jetty.servlet.Default.dirAllowed + false + + org.openecomp.sdc.be.listen.BEAppContextListener -- cgit 1.2.3-korg