Saxtransformerfactory validating feature


27-Nov-2019 19:30

RELEASE:compile | - org.springframework.batch:spring-batch-infrastructure:jar:2.0.2. RELEASE:compile | | - (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | | - (org.springframework:spring-core:jar:2.5.6:compile - omitted for duplicate) | | \- (stax:stax:jar:1.2.0:compile - omitted for duplicate) | - org.aspectj:aspectjrt:jar:1.5.4:compile | - org.aspectj:aspectjweaver:jar:1.5.4:compile | - com.thoughtworks.xstream:xstream:jar:1.3:compile | | \- xpp3:xpp3_min:jar:1.1.4c:compile | - org.codehaus.jettison:jettison:jar:1.0:compile | - org.springframework:spring-aop:jar:2.5.6:compile | | - aopalliance:aopalliance:jar:1.0:compile | | - (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | | - (org.springframework:spring-beans:jar:2.5.6:compile - omitted for duplicate) | | \- (org.springframework:spring-core:jar:2.5.6:compile - omitted for duplicate) | - org.springframework:spring-beans:jar:2.5.6:compile | | - (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | | \- (org.springframework:spring-core:jar:2.5.6:compile - omitted for duplicate) | - org.springframework:spring-context:jar:2.5.6:compile | | - (aopalliance:aopalliance:jar:1.0:compile - omitted for duplicate) | | - (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | | - (org.springframework:spring-beans:jar:2.5.6:compile - omitted for duplicate) | | \- (org.springframework:spring-core:jar:2.5.6:compile - omitted for duplicate) | - org.springframework:spring-core:jar:2.5.6:compile | | \- (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | - org.springframework:spring-tx:jar:2.5.6:compile | | - (commons-logging:commons-logging:jar:1.1.1:compile - omitted for duplicate) | | - (org.springframework:spring-beans:jar:2.5.6:compile - omitted for duplicate) | | - (org.springframework:spring-context:jar:2.5.6:compile - omitted for duplicate) | | \- (org.springframework:spring-core:jar:2.5.6:compile - omitted for duplicate) | \- stax:stax:jar:1.2.0:compile | \- stax:stax-api:jar:1.0.1:compile - commons-dbcp:commons-dbcp:jar:1.2.2:compile | \- commons-pool:commons-pool:jar:1.3:compile - org.hibernate:hibernate-core:jar:3.3.2. /Users/jbristow/.m2/repository/xstream/xstream/1.1.3/xstream-1.1.3/Users/jbristow/.m2/repository/xpp3/xpp3_min/1.1.3.4.

GA:test | | - xstream:xstream:jar:1.1.3:test | | - (xpp3:xpp3_min:jar:1.1.3.4. /Users/jbristow/.m2/repository/org/springframework/spring-core/2.5.6/spring-core-2.5.6/Users/jbristow/.m2/repository/stax/stax/1.2.0/stax-1.2.0/Users/jbristow/.m2/repository/org/aspectj/aspectjrt/1.5.4/aspectjrt-1.5.4/Users/jbristow/.m2/repository/org/aspectj/aspectjweaver/1.5.4/aspectjweaver-1.5.4/Users/jbristow/.m2/repository/com/thoughtworks/xstream/xstream/1.3/xstream-1.3/Users/jbristow/.m2/repository/org/codehaus/jettison/jettison/1.0/jettison-1.0/Users/jbristow/.m2/repository/org/springframework/spring-aop/2.5.6/spring-aop-2.5.6/Users/jbristow/.m2/repository/aopalliance/aopalliance/1.0/aopalliance-1.0/Users/jbristow/.m2/repository/org/springframework/spring-beans/2.5.6/spring-beans-2.5.6/Users/jbristow/.m2/repository/org/springframework/spring-context/2.5.6/spring-context-2.5.6/Users/jbristow/.m2/repository/org/springframework/spring-tx/2.5.6/spring-tx-2.5.6/Users/jbristow/.m2/repository/org/dbunit/dbunit/2.4.5/dbunit-2.4.5/Users/jbristow/.m2/repository/junit/junit/4.7/junit-4.7/Users/jbristow/.m2/repository/org/slf4j/slf4j-log4j12/1.5.6/slf4j-log4j12-1.5.6/Users/jbristow/.m2/repository/xpp3/xpp3_min/1.1.4c/xpp3_min-1.1.4/opt/bml_code/mc/mc-test-support/target/test-classes/ /opt/bml_code/mc/mc-test-support/target/classes/ /Users/jbristow/.m2/repository/org/springframework/spring-core/2.5.6. (XXE), which is now part of the OWASP Top 10 via the point A4, is a type of attack against an application that parses XML input.XXE issue is referenced under the ID 611 in the Common Weakness Enumeration referential./** * Saves the xml, contained by the specified input with the custom indentation.

* If the input is the result of jaxb marshalling, make sure to set * Marshaller.

O:compile - scope updated from test; omitted for duplicate) | | \- org.jboss.el:jboss-el:jar:1.0_02. /Users/jbristow/.m2/repository/org/springframework/batch/spring-batch-infrastructure/2.0.2.