Uploaded image for project: 'Nuxeo Platform'
  1. Nuxeo Platform
  2. NXP-21270

No sanitizing done when adding note through UI

    XMLWordPrintable

    Details

      Description

      1. create new note in the JSF UI
      2. add the content of this HTML file by copy/pasting (in Firefox since Chrome may crash)
      3. save the note
      4. notice the unformatted behavior
      5. in the logs we can see the following error:
        2016-12-05 11:20:01,873 ERROR [http-bio-0.0.0.0-8080-exec-17] [org.nuxeo.ecm.platform.htmlsanitizer.HtmlSanitizerServiceImpl] Cannot sanitize doc /default-domain/workspaces/testWorkspaceSUPNXP18524/manote2 (null) field note if mime_type!=text/plain,text/x-web-markdown: org.owasp.validator.html.ScanException: The input was too large. The specified input was 763 655 bytes and the maximum is 100 000 bytes.
        
      6. this is working fine in 7.10
      7. the error also appears when adding the note through drive client

        Attachments

          Activity

            People

            • Assignee:
              Unassigned
              Reporter:
              ffischer Frantz Fischer
              Participants:
            • Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

              • Created:
                Updated: