diff --git a/java/ql/src/experimental/Security/CWE/CWE-665/InsecureRmiJmxEnvironmentConfiguration.qhelp b/java/ql/src/experimental/Security/CWE/CWE-665/InsecureRmiJmxEnvironmentConfiguration.qhelp index 670d961e881..4ce48b010ca 100644 --- a/java/ql/src/experimental/Security/CWE/CWE-665/InsecureRmiJmxEnvironmentConfiguration.qhelp +++ b/java/ql/src/experimental/Security/CWE/CWE-665/InsecureRmiJmxEnvironmentConfiguration.qhelp @@ -63,6 +63,6 @@ For this reason an initialization with a null environment is also v
  • Issue discovered in Tomcat (CVE-2016-8735): OWASP ESAPI.
  • Vulnerable implementation of the RMI "newClient()" function: Vulnerable Function.
  • Oracle release notes fixing the issue: Rlease Notes.
  • -
  • Documentation for CREDENTIALS_FILTER_PATTERN
  • +
  • Java API Specification: RMIConnectorServer.CREDENTIALS_FILTER_PATTERN