-
Notifications
You must be signed in to change notification settings - Fork 370
Permalink
Choose a base ref
{{ refName }}
default
Choose a head ref
{{ refName }}
default
Comparing changes
Choose two branches to see what’s changed or to start a new pull request.
If you need to, you can also or
learn more about diff comparisons.
Open a pull request
Create a new pull request by comparing changes across two branches. If you need to, you can also .
Learn more about diff comparisons here.
base repository: ESAPI/esapi-java-legacy
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: esapi-2.6.2.0
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
...
head repository: ESAPI/esapi-java-legacy
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: esapi-2.7.0.0
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
- 19 commits
- 26 files changed
- 3 contributors
Commits on Jun 3, 2025
-
Configuration menu - View commit details
-
Copy full SHA for 9ac6c97 - Browse repository at this point
Copy the full SHA 9ac6c97View commit details -
Configuration menu - View commit details
-
Copy full SHA for bc0d887 - Browse repository at this point
Copy the full SHA bc0d887View commit details
Commits on Jun 9, 2025
-
Configuration menu - View commit details
-
Copy full SHA for 849c15e - Browse repository at this point
Copy the full SHA 849c15eView commit details -
Configuration menu - View commit details
-
Copy full SHA for 40026bf - Browse repository at this point
Copy the full SHA 40026bfView commit details -
Configuration menu - View commit details
-
Copy full SHA for 436fee5 - Browse repository at this point
Copy the full SHA 436fee5View commit details -
Configuration menu - View commit details
-
Copy full SHA for 1da613b - Browse repository at this point
Copy the full SHA 1da613bView commit details -
Configuration menu - View commit details
-
Copy full SHA for 2d444b9 - Browse repository at this point
Copy the full SHA 2d444b9View commit details
Commits on Jun 10, 2025
-
Configuration menu - View commit details
-
Copy full SHA for 02f4a91 - Browse repository at this point
Copy the full SHA 02f4a91View commit details -
Configuration menu - View commit details
-
Copy full SHA for 8225a67 - Browse repository at this point
Copy the full SHA 8225a67View commit details -
Configuration menu - View commit details
-
Copy full SHA for 61de71f - Browse repository at this point
Copy the full SHA 61de71fView commit details -
Configuration menu - View commit details
-
Copy full SHA for 06d0ff2 - Browse repository at this point
Copy the full SHA 06d0ff2View commit details -
Configuration menu - View commit details
-
Copy full SHA for a10e323 - Browse repository at this point
Copy the full SHA a10e323View commit details -
Configuration menu - View commit details
-
Copy full SHA for 844eb0c - Browse repository at this point
Copy the full SHA 844eb0cView commit details -
New property file for testing DefaultEncoder.encodeForSQL when it's
method is not explicitly enabled. Should result in a NotConfiguredByDefaultException being thrown.
Configuration menu - View commit details
-
Copy full SHA for eb425bb - Browse repository at this point
Copy the full SHA eb425bbView commit details -
Configuration menu - View commit details
-
Copy full SHA for 0129740 - Browse repository at this point
Copy the full SHA 0129740View commit details -
Configuration menu - View commit details
-
Copy full SHA for 23a2b76 - Browse repository at this point
Copy the full SHA 23a2b76View commit details
Commits on Jun 11, 2025
-
Configuration menu - View commit details
-
Copy full SHA for e232291 - Browse repository at this point
Copy the full SHA e232291View commit details
Commits on Jun 27, 2025
-
Merging Private Branch contents from Kevin's Repo. (#888)
* Fix javadoc botch forgetting to end italics. :( * Added new static method 'isMethodExplicityEnabled' abd other minor Javadoc tweaks. * Added default exception message if one wasn't specified or was empty. * Changed to use a more politically correct property name. But I still like 'ESAPI.enableLegCannonModeAndGetMyAssFired.justification' better. ;-) * Add code to ensure that DefaultEncoder.encodeForSQL is explicity enabled if someone wants to use it. * Updating ESAPI util for ExplictMethod verify Updating parameter null check to test null case. Removing null check on property result (if null ConfigurationException is thrown). Simplifying return from method to verify response is not empty. * ESAPI methodEnabled Tests Adding branch testing for ESAPI.isMethodExplicitlyEnabled behavior to account for parameter cases. Only case not covered is providing an ESAPI.properties that does not contain the new key. * Test Coverage using the SecurityConfigurationWrapper to verify remaining test case when a ConfigurationException is thrown when the new property is missing or undefined. * Added deprecations, deprecation warnings, and other Javadoc refinements. * Reference specific CVE ID for logged message. * Change from EVENT_FAILURE to SECURITY_FAILURE, because it potentially is, despite best intentions. * Draft #2. Needs reviewd and completed. Track changes disabled. * Apparently {@inheritdoc} doesn't inherit @deprecated from interfaces. Plus minor type fix ('class' ==> 'method'). * Draft 3 - completed several more sections. * Minor corrections to ESAPI Security Bulletin #13. * Update to FileUploads 1.6.0 to address CVE-2025-48976, which likely didn't affect HTTPUtilities.getFileUploads interaces anyway. * Implement java.util.function.Supplier since we are using Java 8 for a while. * Incorporate Jeremiah Stacey's feedback. * Incorporate Erika von Kampen's feedback. * Final draft of Security Bulletin #13 until CVE published. (Need to include its summary description.) * Fix minor typos. * Update versions of spotbugs-maven-plugin and maven-pmd-plugin. * Update previous release date. * release info for 2.7.0.0 * ESAPI 2.7.0.0 release notes. --------- Co-authored-by: kwwall <[email protected]> Co-authored-by: jeremiah.stacey <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f75ac2c - Browse repository at this point
Copy the full SHA f75ac2cView commit details -
Configuration menu - View commit details
-
Copy full SHA for 0fa4c0f - Browse repository at this point
Copy the full SHA 0fa4c0fView commit details
Loading
This comparison is taking too long to generate.
Unfortunately it looks like we can’t render this comparison for you right now. It might be too big, or there might be something weird with your repository.
You can try running this command locally to see the comparison on your machine:
git diff esapi-2.6.2.0...esapi-2.7.0.0