Improve security of the DocumentBuilder#730
Conversation
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Pro Run ID: 📒 Files selected for processing (2)
📝 WalkthroughWalkthroughTwo PDF parsing classes migrate from unsafe DocumentBuilder instantiation to SecureXML.newSafeDocumentBuilder(). GFPDAcroForm hardens XFA dynamic-render XML parsing, and DictionaryKeysHelper hardens rich-text entry parsing, both removing explicit error handler configurations and updating imports. ChangesXML Parser Security Hardening
Estimated code review effort🎯 2 (Simple) | ⏱️ ~12 minutes Poem
🚥 Pre-merge checks | ✅ 4 | ❌ 1❌ Failed checks (1 warning)
✅ Passed checks (4 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches📝 Generate docstrings
🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
41410cf to
77b74a8
Compare
|
Actionable comments posted: 0 |
Summary by CodeRabbit