? Pending

User tests: Successful: Unsuccessful:

avatar acs-ferreira
acs-ferreira
13 Aug 2017

Summary of Changes

Redis Host and Auth are exposed when exported

Testing Instructions

System info > Download as text or JSON

Expected result

No Redis infos are exposed

Actual result

Redis infos are exposed

avatar joomla-cms-bot joomla-cms-bot - change - 13 Aug 2017
Category Administration com_admin
avatar acs-ferreira acs-ferreira - open - 13 Aug 2017
avatar acs-ferreira acs-ferreira - change - 13 Aug 2017
Status New Pending
avatar acs-ferreira acs-ferreira - change - 13 Aug 2017
Title
Hide Redis Host and Auth from export
SECURITY: Hide Redis Host and Auth from export
avatar acs-ferreira acs-ferreira - edited - 13 Aug 2017
avatar zero-24 zero-24 - change - 14 Aug 2017
Labels Added: ?
avatar zero-24
zero-24 - comment - 14 Aug 2017

Merging on review thanks.

@acs-ferreira Please do report future security issues in the Joomla Core to the JSST and not via the public tracker thanks!
https://developer.joomla.org/security/contact-the-team.html

avatar zero-24 zero-24 - change - 14 Aug 2017
Status Pending Fixed in Code Base
Closed_Date 0000-00-00 00:00:00 2017-08-14 05:53:52
Closed_By zero-24
avatar zero-24 zero-24 - close - 14 Aug 2017
avatar zero-24 zero-24 - merge - 14 Aug 2017
avatar zero-24 zero-24 - change - 14 Aug 2017
Title
SECURITY: Hide Redis Host and Auth from export
Hide Redis Host and Auth from export
avatar zero-24 zero-24 - edited - 14 Aug 2017

Add a Comment

Login with GitHub to post a comment