You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@tomcat.apache.org by ma...@apache.org on 2016/02/22 12:45:04 UTC

svn propchange: r1717209 - svn:log

Author: markt
Revision: 1717209
Modified property: svn:log

Modified: svn:log at Mon Feb 22 11:45:04 2016
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Mon Feb 22 11:45:04 2016
@@ -3,3 +3,4 @@ With mapperContextRootRedirectEnabled st
 - Ensure the Mapper does not add the '/' handling the redirect
 - Handle the redirect in the DefaultServlet
 - Add a redirect to FORM auth if auth is occurring at the context root else the login page could be submitted to the wrong web application
+This is part 2 of 2 of the fix for CVE-2015-5345


---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@tomcat.apache.org
For additional commands, e-mail: dev-help@tomcat.apache.org