spring-projects / spring-projects/spring-boot
Harden processing of ClassLoaderFiles
Open
Nobody has claimed this yet.
status: team-only
type: task
- Dominant language
- Java
- Stars
- 81.5k
- Forks
- 42.7k
- Avg merge
- 2d 4h
- Merged PRs (30d)
- 65
Description
With thanks to @unknownhad for bringing this to our attention, some further hardening of ClassLoaderFiles processing is warranted.
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
No file or test is named in the issue. Start by locating ClassLoaderFiles processing in the Spring Boot codebase, then read the surrounding tests and determine which inputs require hardening. Done means the processing safely handles the reported case and the relevant tests cover the behavior.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java, spring-boot
- Domain
- backend, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Quiet
- Clarity
- Needs clarification
- Newbie friendliness
- 35/100