> Reporter: mblehkos...@gmail.com Yet another "security researcher" that failed to notice that if you try and upload an attachment with MIME type text/html our Bugzilla instances will always render it as text/plain.
I'd mind less if these folks actually checked if the attack worked and then apologied for wasting our time when they found it didn't. I've disabled this idiot's account. I'll delete the issue shortly. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org