[resteasy-commits] [resteasy/Resteasy] fd66aa: [RESTEASY-1704] CVE-2017-7561 resteasy: Vary heade...

GitHub noreply at github.com
Tue Nov 7 12:02:08 EST 2017


  Branch: refs/heads/3.0
  Home:   https://github.com/resteasy/Resteasy
  Commit: fd66aad3cb1e8553323a9af5b58f1ad5150dc5b9
      https://github.com/resteasy/Resteasy/commit/fd66aad3cb1e8553323a9af5b58f1ad5150dc5b9
  Author: Yeray Borges <yborgess at redhat.com>
  Date:   2017-11-07 (Tue, 07 Nov 2017)

  Changed paths:
    M resteasy-jaxrs/src/main/java/org/jboss/resteasy/plugins/interceptors/CorsFilter.java
    M resteasy-jaxrs/src/main/java/org/jboss/resteasy/spi/CorsHeaders.java

  Log Message:
  -----------
  [RESTEASY-1704] CVE-2017-7561 resteasy: Vary header not added by CORS filter leading to cache poisoning




More information about the resteasy-commits mailing list