[hibernate-commits] [hibernate/hibernate-orm] d9a33b: HHH-14077 Add test for issue

Andrea Boriero noreply at github.com
Tue Jun 23 11:49:09 EDT 2020


  Branch: refs/heads/wip/6.0
  Home:   https://github.com/hibernate/hibernate-orm
  Commit: d9a33bf405810b257cfd240c862ca0ab21a976b3
      https://github.com/hibernate/hibernate-orm/commit/d9a33bf405810b257cfd240c862ca0ab21a976b3
  Author: Andrea Boriero <andrea at hibernate.org>
  Date:   2020-06-23 (Tue, 23 Jun 2020)

  Changed paths:
    A hibernate-core/src/test/java/org/hibernate/orm/test/jpa/criteria/literal/CriteriaLiteralWithSingleQuoteTest.java

  Log Message:
  -----------
  HHH-14077 Add test for issue


  Commit: eebf01fbf3c2550ee70cdc9c1b02b52e330c8c36
      https://github.com/hibernate/hibernate-orm/commit/eebf01fbf3c2550ee70cdc9c1b02b52e330c8c36
  Author: Andrea Boriero <andrea at hibernate.org>
  Date:   2020-06-23 (Tue, 23 Jun 2020)

  Changed paths:
    M hibernate-core/src/main/java/org/hibernate/type/descriptor/sql/internal/JdbcLiteralFormatterCharacterData.java

  Log Message:
  -----------
  HHH-14077 CVE-2019-14900 SQL injection issue using JPA Criteria API


  Commit: 8bd63116d07260b616b25b4bddf68e2ae5bee14e
      https://github.com/hibernate/hibernate-orm/commit/8bd63116d07260b616b25b4bddf68e2ae5bee14e
  Author: Andrea Boriero <andrea at hibernate.org>
  Date:   2020-06-23 (Tue, 23 Jun 2020)

  Changed paths:
    M hibernate-core/src/test/java/org/hibernate/orm/test/jpa/criteria/literal/CriteriaLiteralWithSingleQuoteTest.java

  Log Message:
  -----------
  HHH-14077 PostgreSQL, skip testLiteralProjectionAndGroupBy (PostgreSQL does not support literals in group by statement)


Compare: https://github.com/hibernate/hibernate-orm/compare/2250b7f84ffe...8bd63116d072


More information about the hibernate-commits mailing list