« Return to Thread: Action mapping documentation (and a security question)

Re: Action mapping documentation (and a security question)

by newton.dave :: Rate this Message:

Reply to Author | View in Thread

Jan T. Kim wrote:
> (1) Where is the documentation of this wildcard syntax?

http://struts.apache.org/2.x/docs/wildcard-mappings.html
http://struts.apache.org/2.x/docs/action-configuration.html#ActionConfiguration-WildcardMethod

Although the underscore thing is mentioned I don't think it's explicitly
stated. The first link above is linked off the "Guides" page directly,
and from the action configuration page.

> (2) Isn't encoding methods in action name suffixes like this a potential
> security issue?

Yep.

Dave

---------------------------------------------------------------------
To unsubscribe, e-mail: user-unsubscribe@...
For additional commands, e-mail: user-help@...

 « Return to Thread: Action mapping documentation (and a security question)