tracker issue : CF-4161177

select a category, or use search below
(searches all categories and all time range)
Title:

While flagging certain functions that return strings, it should be flagged as error instead of warning.

| View in Tracker

Status/Resolution/Reason: Closed/Fixed/

Reporter/Name(from Bugbase): / ext-user (S Preethi)

Created: 06/06/2016

Components: Security Analyzer

Versions: 2016

Failure Type:

Found In Build/Fixed In Build: 299128 /

Priority/Frequency: Normal / Most users will encounter

Locale/System: English / Linux All,Mac 10 All,Solaris All,Win XP All

Vote Count: 0

Listed in the version 2016.0.03.300466 Issues Fixed doc
Problem:
While flagging certain functions for XSS, it should be flagged as error instead of warning.

Method:

The functions ucase,lcase,mid,trim,left,right,duplicate should be flagged as errors instead of warnings.

----------------------------- Additional Watson Details -----------------------------

Watson Bug ID:	4161177

External Customer Info:
External Company:  
External Customer Name:  
External Customer Email:

Attachments:

Comments:

Last case will be flagged as error only. Rest cases have been fixed
Comment by Uday O.
2500 | June 28, 2016 01:48:28 AM GMT
The fix will be available in the next ColdFusion update. Thanks!
Comment by S P.
2501 | July 07, 2016 05:05:16 AM GMT