Details

    • Type: Task
    • Status: Closed
    • Priority: Major
    • Resolution: Won't Fix
    • Affects Version/s: 2.1.3, 2.2.1
    • Fix Version/s: 2.4
    • Component/s: Development
    • Security Level: Public (Public: Anyone can view)
    • Labels:
      None
    • Application Requirement:
      Rice
    • KAI Review Status:
      Not Required
    • KTI Review Status:
      Not Required

      Description

      A new version of easyXDM 2.4.17 is out. It's marked as a critical update and contains a fix to the easyxdm.swf that addresses a "possible XSS attack vector".

      FlashTransport is uses for messaging only after SameOrginTransport and PostMessageTransport can't be used. According to the easyXDM website FlashTransport is used for IE6 and IE7.

      For the update replace the easyxdm.swf and easyXDM.js files with the newer ones.

        Attachments

          Issue Links

            Activity

            cniesen Claus Niesen created issue -
            cniesen Claus Niesen made changes -
            Field Original Value New Value
            Link This issue cloned from KULRICE-9013 [ KULRICE-9013 ]
            cniesen Claus Niesen made changes -
            Issue Type Bug Fix [ 1 ] Task [ 3 ]
            Description In IE8 the easyXDM messaging doesn't work. According to the easyXDM messaging in IE8 should work. A new version of easyXDM 2.4.17 is out. It's marked as a critical update and contains a fix to the easyxdm.swf that addresses a "possible XSS attack vector".

            FlashTransport is uses for messaging only after direct access and PostMessageTransport can't be used. According to the easyXDM website FlashTransport is used for IE6 and IE7.

            For the update replace the easyxdm.swf and easyXDM.js files with the newer ones.
            cniesen Claus Niesen made changes -
            Description A new version of easyXDM 2.4.17 is out. It's marked as a critical update and contains a fix to the easyxdm.swf that addresses a "possible XSS attack vector".

            FlashTransport is uses for messaging only after direct access and PostMessageTransport can't be used. According to the easyXDM website FlashTransport is used for IE6 and IE7.

            For the update replace the easyxdm.swf and easyXDM.js files with the newer ones.
            A new version of easyXDM 2.4.17 is out. It's marked as a critical update and contains a fix to the easyxdm.swf that addresses a "possible XSS attack vector".

            FlashTransport is uses for messaging only after SameOrginTransport and PostMessageTransport can't be used. According to the easyXDM website FlashTransport is used for IE6 and IE7.

            For the update replace the easyxdm.swf and easyXDM.js files with the newer ones.
            masargen Matt Sargent made changes -
            Documentation Review Status Pending Review [ 14643 ] Not Required [ 14642 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Fix Version/s 2.2.3 [ 16788 ]
            Fix Version/s 2.3 [ 16595 ]
            Fix Version/s 2.1.4 [ 16750 ]
            Fix Version/s 2.2.2 [ 16752 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Fix Version/s 2.2.4 [ 17010 ]
            Fix Version/s 2.2.3 [ 16788 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Fix Version/s 2.2.5 [ 17030 ]
            Fix Version/s 2.2.4 [ 17010 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Fix Version/s 2.3-backlog [ 16596 ]
            Fix Version/s 2.2.5 [ 17030 ]
            spatterson Shem Patterson (Inactive) made changes -
            Workflow custom [ 164453 ] Copy of custom for rice [ 207819 ]
            spatterson Shem Patterson (Inactive) made changes -
            Workflow Copy of custom for rice [ 207819 ] custom [ 217567 ]
            spatterson Shem Patterson (Inactive) made changes -
            Workflow custom [ 217567 ] Rice Workflow [ 227315 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Fix Version/s 2.4 [ 16913 ]
            Fix Version/s 2.4-backlog [ 16596 ]
            Hide
            cniesen Claus Niesen added a comment -

            Will be replaced with new (non-iframe) portal in 2.5

            Show
            cniesen Claus Niesen added a comment - Will be replaced with new (non-iframe) portal in 2.5
            cniesen Claus Niesen made changes -
            Status Open [ 1 ] Resolved [ 5 ]
            Resolution Won't Fix [ 2 ]
            jcoltrin Jessica Coltrin (Inactive) made changes -
            Status Resolved [ 5 ] Closed [ 6 ]

              People

              • Assignee:
                Unassigned
                Reporter:
                cniesen Claus Niesen
              • Votes:
                0 Vote for this issue
                Watchers:
                1 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: