[resteasy-commits] [resteasy/Resteasy] fd66aa: [RESTEASY-1704] CVE-2017-7561 resteasy: Vary heade...
GitHub
noreply at github.com
Tue Nov 7 12:02:08 EST 2017
Branch: refs/heads/3.0
Home: https://github.com/resteasy/Resteasy
Commit: fd66aad3cb1e8553323a9af5b58f1ad5150dc5b9
https://github.com/resteasy/Resteasy/commit/fd66aad3cb1e8553323a9af5b58f1ad5150dc5b9
Author: Yeray Borges <yborgess at redhat.com>
Date: 2017-11-07 (Tue, 07 Nov 2017)
Changed paths:
M resteasy-jaxrs/src/main/java/org/jboss/resteasy/plugins/interceptors/CorsFilter.java
M resteasy-jaxrs/src/main/java/org/jboss/resteasy/spi/CorsHeaders.java
Log Message:
-----------
[RESTEASY-1704] CVE-2017-7561 resteasy: Vary header not added by CORS filter leading to cache poisoning
More information about the resteasy-commits
mailing list