From e7883877a98dfcae3f75f1c1a562120d89aed22a Mon Sep 17 00:00:00 2001 From: James Moger <james.moger@gitblit.com> Date: Thu, 09 Feb 2012 08:33:16 -0500 Subject: [PATCH] Fixed session fixation vulnerability (issue 62) --- src/com/gitblit/wicket/pages/TicketPage.java | 11 +++++------ 1 files changed, 5 insertions(+), 6 deletions(-) diff --git a/src/com/gitblit/wicket/pages/TicketPage.java b/src/com/gitblit/wicket/pages/TicketPage.java index 9c8c392..d250a45 100644 --- a/src/com/gitblit/wicket/pages/TicketPage.java +++ b/src/com/gitblit/wicket/pages/TicketPage.java @@ -22,23 +22,22 @@ import org.apache.wicket.markup.repeater.data.ListDataProvider; import org.eclipse.jgit.lib.Repository; -import com.gitblit.utils.JGitUtils; +import com.gitblit.models.TicketModel; +import com.gitblit.models.TicketModel.Comment; import com.gitblit.utils.StringUtils; +import com.gitblit.utils.TicgitUtils; import com.gitblit.wicket.GitBlitWebSession; -import com.gitblit.wicket.RepositoryPage; import com.gitblit.wicket.WicketUtils; -import com.gitblit.wicket.models.TicketModel; -import com.gitblit.wicket.models.TicketModel.Comment; public class TicketPage extends RepositoryPage { public TicketPage(PageParameters params) { super(params); - final String ticketFolder = WicketUtils.getPath(params); + final String ticketFolder = WicketUtils.getObject(params); Repository r = getRepository(); - TicketModel t = JGitUtils.getTicket(r, ticketFolder); + TicketModel t = TicgitUtils.getTicket(r, ticketFolder); add(new Label("ticketTitle", t.title)); add(new Label("ticketId", t.id)); -- Gitblit v1.9.1