posted 10 years ago
I wish to know whether there is any security issue when returning a New Object from a Method.
K.S.KARTHIKEYAN
Karthikeyan Sakthivel
Greenhorn
Posts: 3
posted 10 years ago
Actually I was asked to pass the parameter instead of creating an new objects inside the method.
K.S.KARTHIKEYAN
posted 10 years ago
No, I don't see the point of that change. There is some potential if you keep a reference to the object you create and return or if you just return a member variable ...
because now somebody else has access to something I consider private. They can change it without my knowing. I think FindBugz flags this as a warning.
