Branch: refs/heads/3.0.19.SPx
Home:
https://github.com/resteasy/Resteasy
Commit: e9a34f2513e75dcaba95e1f2bc6f21668f439855
https://github.com/resteasy/Resteasy/commit/e9a34f2513e75dcaba95e1f2bc6f2...
Author: Yeray Borges <yborgess(a)redhat.com>
Date: 2017-11-07 (Tue, 07 Nov 2017)
Changed paths:
M
jaxrs/resteasy-jaxrs/src/main/java/org/jboss/resteasy/plugins/interceptors/CorsFilter.java
M jaxrs/resteasy-jaxrs/src/main/java/org/jboss/resteasy/spi/CorsHeaders.java
Log Message:
-----------
[RESTEASY-1704] CVE-2017-7561 resteasy: Vary header not added by CORS filter leading to
cache poisoning