Spring-security: Avoid Exception Message in HTTP Response

Created on 29 Sep 2017  路  1Comment  路  Source: spring-projects/spring-security

Summary

Users have complained that many security scanners have flagged that the message is being written to the response which can lead to security vulnerabilities. This ticket is intended to avoid writing the Exception Message in HTTP Response.

enhancement

Most helpful comment

Just out of curiosity - what was the motivation behind this?

>All comments

Just out of curiosity - what was the motivation behind this?

Was this page helpful?
0 / 5 - 0 ratings