[hibernate-commits] [hibernate/hibernate-orm] 646b38: HHH-14077 : CVE-2019-14900 SQL injection issue in ...

Andrea Boriero noreply at github.com
Tue Aug 4 17:58:37 EDT 2020


  Branch: refs/heads/5.3
  Home:   https://github.com/hibernate/hibernate-orm
  Commit: 646b383f959eff18d58081b1a574f0d777d353da
      https://github.com/hibernate/hibernate-orm/commit/646b383f959eff18d58081b1a574f0d777d353da
  Author: Gail Badner <gbadner at redhat.com>
  Date:   2020-08-04 (Tue, 04 Aug 2020)

  Changed paths:
    M hibernate-core/src/main/java/org/hibernate/query/criteria/internal/expression/LiteralExpression.java
    A hibernate-core/src/test/java/org/hibernate/jpa/test/criteria/literal/CriteriaLiteralWithSingleQuoteTest.java

  Log Message:
  -----------
  HHH-14077 : CVE-2019-14900 SQL injection issue in Hibernate ORM


  Commit: 1cdf75c212b64777a7b75e931b31fca607e216c7
      https://github.com/hibernate/hibernate-orm/commit/1cdf75c212b64777a7b75e931b31fca607e216c7
  Author: Andrea Boriero <andrea at hibernate.org>
  Date:   2020-08-04 (Tue, 04 Aug 2020)

  Changed paths:
    M hibernate-core/src/test/java/org/hibernate/jpa/test/criteria/literal/CriteriaLiteralWithSingleQuoteTest.java

  Log Message:
  -----------
  HHH-14077 PostgreSQL, skip testLiteralProjectionAndGroupBy (PostgreSQL does not support literals in group by statement)


Compare: https://github.com/hibernate/hibernate-orm/compare/d7400b5a086f...1cdf75c212b6


More information about the hibernate-commits mailing list