From b76107bb240c54ba4d4c8e1d2badd412e5c473fa Mon Sep 17 00:00:00 2001 From: James Moger <james.moger@gitblit.com> Date: Tue, 04 Nov 2014 17:23:50 -0500 Subject: [PATCH] Whitelist the "target" link attribute in the XSS filter --- src/main/java/com/gitblit/transport/ssh/UsernamePasswordAuthenticator.java | 2 ++ 1 files changed, 2 insertions(+), 0 deletions(-) diff --git a/src/main/java/com/gitblit/transport/ssh/UsernamePasswordAuthenticator.java b/src/main/java/com/gitblit/transport/ssh/UsernamePasswordAuthenticator.java index 861bc22..c4e69dc 100644 --- a/src/main/java/com/gitblit/transport/ssh/UsernamePasswordAuthenticator.java +++ b/src/main/java/com/gitblit/transport/ssh/UsernamePasswordAuthenticator.java @@ -27,6 +27,8 @@ /** * + * Authenticates an SSH session with username/password credentials. + * * @author James Moger * */ -- Gitblit v1.9.1