AEM 6.5.5 RTE /apps/cq/xssprotection/config.xml issue



for the RTE both custom and ootb plugins to work, we have to delete the custom config file(


). But other functionalities are unable to work from apps/sling/xss/config.xml

Accepted Solutions (1)

Accepted Solutions (1)




Hi @gvaem,

It's important that each time you install an AEM upgrade (CFP or SP), to check that your customizations are still valid.

If you have changed  /libs/sling/xss/config.xml to /apps/sling/xss/config.xml a few versions ago, then in the meantime the original file under /libs may have changed while your customized version under /apps did not. It may be completely out of date! 

Here's what you should do: 

  • Identify the changes that were made in the /apps/sling/xss/config.xml file
  • Remove /apps/sling/xss/config.xml
  • Create a new overlay from /libs/sling/xss/config.xml to /apps/sling/xss/config.xml
  • Apply the changes you had made to /apps/sling/xss/config.xml to the new version (if applicable)

Answers (0)