Affects: Documentation (Ref Guide, User Guide, etc.), Release Notes project_key: JBEPP
Add warning about WSRP issue: "Portlet rendering over WSRP may randomly fails ending up with the following error that can be found in the log: javax.jcr.ItemNotFoundException: FATAL: Parent is null A refresh of the page would temporarly fix the issue. We are currently working on a fix."
Ensure the following two security issues are documented: XSS issues passed in URL https://jira.jboss.org/browse/GTNPORTAL-1667 is the most critical IMO and also very difficult to fix without a clear understanding of the URL encoding. It will need immediate attention, I had a look into it, the problem is that the portal is rendering URLs by taking the current URL as-is, allowing anyone to execute XSS. Gadget proxy can serve as anonymous proxy https://jira.jboss.org/browse/GTNPORTAL-1666
Closing old ticket.