Skip to content

Updated XSSI Json Hijacking explanation #2710

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
wants to merge 228 commits into from
Closed

Conversation

J7mbo
Copy link
Contributor

@J7mbo J7mbo commented Jun 7, 2013

Only methods that respond to GET requests are vulnerable to 'XSSI JSON Hijacking'.

humandb and others added 30 commits October 18, 2012 21:23
Adding tags to the tag list reference
The GetSetMethodNormalizer is not loaded by default
added a note about the new setCurrent method on the progress helper
updated documentation for synchronized services
…tch-1

Also contains tweaks to symfony#1829

Conflicts:
	reference/configuration/framework.rst
…cookbook and linked to that from everywhere else
…ot-deprecated

Conflicts:
	reference/configuration/framework.rst
	reference/constraints/Max.rst
	reference/constraints/Min.rst
weaverryan and others added 26 commits May 5, 2013 21:54
[Components][Console] Fixed typos for table helper
Made the Icu component compatible with ICU 3.8
Conflicts:
	components/yaml/introduction.rst
Conflicts:
	components/yaml/introduction.rst
Conflicts:
	components/yaml/introduction.rst
[Book/Form] minor fix, superfluous word
Conflicts:
	reference/forms/types/options/property_path.rst.inc
Only methods that respond to GET requests are vulnerable to XSSI 'JSON Hijacking'. POST requests remain unaffected.
@weaverryan
Copy link
Member

Hey James!

Very nice addition. I've patched your commit into the 2.2 branch at sha: b845591

Thanks!

@weaverryan weaverryan closed this Jun 30, 2013
weaverryan added a commit that referenced this pull request Jun 30, 2013
…nally)

[#2710] Fixing whitespace
(cherry picked from commit f8ace43)
weaverryan added a commit that referenced this pull request Jun 30, 2013
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.