diff options
author | Marc Alexander <admin@m-a-styles.de> | 2016-12-27 18:11:31 +0100 |
---|---|---|
committer | Marc Alexander <admin@m-a-styles.de> | 2016-12-27 18:12:18 +0100 |
commit | ad251e4590744b0927019ae935c92c7101aa7678 (patch) | |
tree | ac43ca2d649caf162f2589f02d5194c67dcb8898 /tests/version | |
parent | 658820654f5789a786a5537c1b43991744b83d2c (diff) | |
download | forums-ad251e4590744b0927019ae935c92c7101aa7678.tar forums-ad251e4590744b0927019ae935c92c7101aa7678.tar.gz forums-ad251e4590744b0927019ae935c92c7101aa7678.tar.bz2 forums-ad251e4590744b0927019ae935c92c7101aa7678.tar.xz forums-ad251e4590744b0927019ae935c92c7101aa7678.zip |
[ticket/security-203] Do not add null values to versions info
Also stopped using reference for validate_versions() method argument.
SECURTIY-203
Diffstat (limited to 'tests/version')
-rw-r--r-- | tests/version/version_helper_remote_test.php | 15 |
1 files changed, 14 insertions, 1 deletions
diff --git a/tests/version/version_helper_remote_test.php b/tests/version/version_helper_remote_test.php index 596b7194de..b2d497b72a 100644 --- a/tests/version/version_helper_remote_test.php +++ b/tests/version/version_helper_remote_test.php @@ -172,7 +172,20 @@ class version_helper_remote_test extends \phpbb_test_case 'current' => '1.0.1', 'download' => 'https://www.phpbb.com/customise/db/download/104136', 'announcement' => 'https://www.phpbb.com/customise/db/extension/boardrules/', - 'eol' => null, + 'security' => false, + ))), 'VERSIONCHECK_INVALID_ENTRY'), + array('{ + "unstable": { + "1.0": { + "current<script>alert(\'foo\');</script>": "1.0.1", + "download2": "https://www.phpbb.com/customise/db/download/104136", + "bannouncement": "https://www.phpbb.com/customise/db/extension/boardrules/", + "eol": null, + "security": false, + "foobar": "<script>alert(\'test\');<script>" + } + } +}', true, array('stable' => array(), 'unstable' => array('1.0' => array( 'security' => false, ))), 'VERSIONCHECK_INVALID_ENTRY'), ); |