Uploaded image for project: 'camunda BPM'
  1. camunda BPM
  2. CAM-10849

CSRF Prevention filter in Spring Boot Starter is not always enabled

    • Icon: Bug Report Bug Report
    • Resolution: Won't Do
    • Icon: L3 - Default L3 - Default
    • spring-boot 3.0.x
    • spring-boot 3.0.7
    • spring-boot
    • None

      CAM-10502 copies the whole functionality of the CSRF Prevention filter from the Webapps to the Spring Boot Starter in order to make maintenance easier.

      The initial port of the CSRF Prevention filter to the Starter used the Webapps class, and was only enabled for the Camunda Spring Boot Starter 3.0, if version 7.9.2 or later of the Process Engine is used.

      Since the functionality is now completely ported, this check isn't needed.

        This is the controller panel for Smart Panels app

            [CAM-10849] CSRF Prevention filter in Spring Boot Starter is not always enabled

            Thorben Lindhauer added a comment - - edited

            The version check is still required, because the client side is missing in versions < 7.9.2. Closing this ticket.

            Thorben Lindhauer added a comment - - edited The version check is still required, because the client side is missing in versions < 7.9.2. Closing this ticket.

              thorben.lindhauer Thorben Lindhauer
              nikola.koevski Nikola Koevski
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: