Package de.hybris.platform.security
Class Log4JSocketServletTest
- java.lang.Object
-
- de.hybris.platform.testframework.HybrisJUnit4Test
-
- de.hybris.platform.servicelayer.ServicelayerBaseTest
-
- de.hybris.platform.security.Log4JSocketServletTest
-
- All Implemented Interfaces:
JaloSessionHolder
@IntegrationTest public class Log4JSocketServletTest extends ServicelayerBaseTest
This test class has been created to make sure there is noorg.apache.log4j.net.SocketServeravailable on classpath. This class is known to have a vulnerability: CVE-2019-17571 https://nvd.nist.gov/vuln/detail/CVE-2019-17571
-
-
Field Summary
-
Fields inherited from class de.hybris.platform.testframework.HybrisJUnit4Test
jaloSession
-
-
Constructor Summary
Constructors Constructor Description Log4JSocketServletTest()
-
Method Summary
All Methods Instance Methods Concrete Methods Modifier and Type Method Description voidshouldNotContainSocketServerInClasspath()-
Methods inherited from class de.hybris.platform.servicelayer.ServicelayerBaseTest
autowireProperties, getApplicationContext, getBeanName, prepareApplicationContextAndSession
-
Methods inherited from class de.hybris.platform.testframework.HybrisJUnit4Test
establishJaloSession, finish, getOrCreateCurrency, getOrCreateLanguage, init, intenseChecksActivated, takeJaloSession
-
-