about
  1. about
  2. ABOUT-183

Security warning using search field in production after switch to https

    Details

    • Type: Bug Bug
    • Status: Open
    • Priority: Major Major
    • Resolution: Unresolved
    • Labels:
      None

      Description

      From KENAI-4038

      In the upper right hand corner just under 'Create Account' and 'Login' or 'Welcome, [username]' and Logout there is a search field.
      Check the 'Projects' checkbox (which behaves like a radio button)
      Type any public project listed in the list such as 'bouncescore' and hit the search icon.
      Note: Sometimes you have to check more than once before you see it.

      Behavior: A warning pops up: "Although this page is encrypted, the information you have entered is to be sent over an unencrypted connection and could easily be read by a third party. Are you sure you want to continue sending this information?"

      The following html was found -> <form action="http://www.java.net/search/node" method="post" id="search-theme-form">

      It was suspected the warning is appearing because that should be a httpS as opposed to http.

        Activity

        There are no comments yet on this issue.

          People

          • Assignee:
            fnikola
            Reporter:
            kradm
          • Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

            • Created:
              Updated: