-
Bug
-
Resolution: Done
-
Highest
-
Istanbul Release
Sonarcloud identified the following security bugs in your project and, as agreed by the TSC, should be fixed within the Istanbul release. Any not finished in Istanbul must be fixed within the Jakarta release. Follow each of the URLs for details on each each bug, along with recommended fixes.
The verification URL for these issues will be <https://sonarcloud.io/organizations/onap/issues?resolved=false&sonarsourceSecurity=xxe&projects=onap_aai-schema-service>.
If any of the links below fail, please find your code on the master list found at <https://sonarcloud.io/organizations/onap/issues?resolved=false&sonarsourceSecurity=xxe>.
Project: onap_aai-schema-service
Component: onap_aai-schema-service:aai-schema-gen/src/main/java/org/onap/aai/schemagen/genxsd/OxmFileProcessor.java
Message: Disable access to external entities in XML parsing.
Severity: BLOCKER
Line: 224
Effort: 15min
Creation-Date: 2019-01-11T22:05:35+0100
URL: https://sonarcloud.io/project/issues?id=onap_aai-schema-service&issues=AXfW3AaaYB7I11pK45fC&open=AXfW3AaaYB7I11pK45fC
Project: onap_aai-schema-service
Component: onap_aai-schema-service:aai-schema-service/src/main/java/org/onap/aai/schemaservice/nodeschema/NodeIngestor.java
Message: Disable access to external entities in XML parsing.
Severity: BLOCKER
Line: 116
Effort: 15min
Creation-Date: 2019-01-16T04:46:34+0100
URL: https://sonarcloud.io/project/issues?id=onap_aai-schema-service&issues=AXfW3Af3YB7I11pK45fF&open=AXfW3Af3YB7I11pK45fF
Project: onap_aai-schema-service
Component: onap_aai-schema-service:aai-schema-service/src/main/java/org/onap/aai/schemaservice/nodeschema/NodeIngestor.java
Message: Disable access to external entities in XML parsing.
Severity: BLOCKER
Line: 139
Effort: 15min
Creation-Date: 2019-01-16T04:46:34+0100
URL: https://sonarcloud.io/project/issues?id=onap_aai-schema-service&issues=AXfW3Af3YB7I11pK45fG&open=AXfW3Af3YB7I11pK45fG
Project: onap_aai-schema-service
Component: onap_aai-schema-service:aai-schema-service/src/main/java/org/onap/aai/schemaservice/nodeschema/NodeIngestor.java
Message: Disable access to external entities in XML parsing.
Severity: BLOCKER
Line: 140
Effort: 15min
Creation-Date: 2019-01-16T04:46:34+0100
URL: https://sonarcloud.io/project/issues?id=onap_aai-schema-service&issues=AXfW3Af3YB7I11pK45fE&open=AXfW3Af3YB7I11pK45fE
Project: onap_aai-schema-service
Component: onap_aai-schema-service:aai-schema-service/src/main/java/org/onap/aai/schemaservice/nodeschema/validation/DefaultDuplicateNodeDefinitionValidationModule.java
Message: Disable access to external entities in XML parsing.
Severity: BLOCKER
Line: 57
Effort: 15min
Creation-Date: 2019-01-16T04:46:34+0100
URL: https://sonarcloud.io/project/issues?id=onap_aai-schema-service&issues=AXfW3AfRYB7I11pK45fD&open=AXfW3AfRYB7I11pK45fD