You are viewing a plain text version of this content. The canonical link for it is here.
Posted to users@tapestry.apache.org by Михаил Ярв <mi...@mail.ru> on 2014/07/07 16:16:35 UTC

Re[2]: "assets" folder vulnerability

 5.3.7


Mon, 07 Jul 2014 11:14:59 -0300 от "Thiago H de Paula Figueiredo" <th...@gmail.com>:
>On Mon, 07 Jul 2014 10:30:42 -0300, Михаил Ярв < mixa_poison@mail.ru > wrote:
>
>> At present it is possible to view structure of application classes. All 
>> you need is to follow "/assets/1.0.0-DEV/app/" url in Tapestry 
>> application.
>
>What Tapestry version are you using?
>
>-- 
>Thiago H. de Paula Figueiredo
>Tapestry, Java and Hibernate consultant and developer
>http://machina.com.br
>
>---------------------------------------------------------------------
>To unsubscribe, e-mail:  users-unsubscribe@tapestry.apache.org
>For additional commands, e-mail:  users-help@tapestry.apache.org
>


Re: "assets" folder vulnerability

Posted by Geoff Callender <ge...@gmail.com>.
See
http://jumpstart.doublenegative.com.au/jumpstart/examples/infrastructure/protectingassets
.

On Tuesday, 8 July 2014, Михаил Ярв <mi...@mail.ru> wrote:

>  5.3.7
>
>
> Mon, 07 Jul 2014 11:14:59 -0300 от "Thiago H de Paula Figueiredo" <
> thiagohp@gmail.com <javascript:;>>:
> >On Mon, 07 Jul 2014 10:30:42 -0300, Михаил Ярв < mixa_poison@mail.ru
> <javascript:;> > wrote:
> >
> >> At present it is possible to view structure of application classes. All
> >> you need is to follow "/assets/1.0.0-DEV/app/" url in Tapestry
> >> application.
> >
> >What Tapestry version are you using?
> >
> >--
> >Thiago H. de Paula Figueiredo
> >Tapestry, Java and Hibernate consultant and developer
> >http://machina.com.br
> >
> >---------------------------------------------------------------------
> >To unsubscribe, e-mail:  users-unsubscribe@tapestry.apache.org
> <javascript:;>
> >For additional commands, e-mail:  users-help@tapestry.apache.org
> <javascript:;>
> >
>
>