Project

General

Profile

Actions

Bug #26065

closed

Bug #26033: Openscap report cannot open in iframe since CSRF headers

OpenSCAP report needs to be rendered without iframe with sanitized html

Added by Clark ANDRIANASOLO 8 days ago. Updated 5 days ago.

Status:
Released
Priority:
N/A
Target version:
Severity:
Major - prevents use of part of Rudder | no simple workaround
UX impact:
It bothers me each time
User visibility:
Operational - other Techniques | Rudder settings | Plugins
Effort required:
Very Small
Priority:
92
Name check:
To do
Fix check:
To do
Regression:
No

Description

In parent ticket, report sanitization tools were updated but in 8.2 the iframe rendering of the API response will not work since CSRF mitigation headers have been added. We need to render the raw content as is.

Actions #1

Updated by Clark ANDRIANASOLO 8 days ago

  • Target version changed from 8.1 to 8.2
Actions #2

Updated by Clark ANDRIANASOLO 8 days ago

  • Description updated (diff)
Actions #3

Updated by Clark ANDRIANASOLO 8 days ago

  • Status changed from New to In progress
Actions #4

Updated by Clark ANDRIANASOLO 8 days ago

  • Status changed from In progress to New
  • Private changed from Yes to No
Actions #5

Updated by Clark ANDRIANASOLO 8 days ago

  • Status changed from New to In progress
Actions #6

Updated by Clark ANDRIANASOLO 8 days ago

  • Status changed from In progress to Pending technical review
  • Assignee changed from Clark ANDRIANASOLO to François ARMAND
  • Pull Request set to https://github.com/Normation/rudder-plugins/pull/779
Actions #7

Updated by Clark ANDRIANASOLO 7 days ago

  • Status changed from Pending technical review to Pending release
Actions #8

Updated by Vincent MEMBRÉ 5 days ago

  • Status changed from Pending release to Released

This bug has been fixed in Rudder plugin openscap v8.2.3-2.2

Actions

Also available in: Atom PDF