dev
Thread
Date
Earlier messages
Later messages
Messages by Thread
Re: [PR] MTOMCAT-290 - Fix for parallel deployment [tomcat-maven-plugin]
via GitHub
Re: [PR] MTOMCAT-290 - Fix for parallel deployment [tomcat-maven-plugin]
via GitHub
(tomcat-maven-plugin) branch trunk updated: Work around for versioned paths
remm
(tomcat-maven-plugin) branch trunk updated: Update to lang3
remm
(tomcat-maven-plugin) branch trunk updated: Add unimplemented but documented mojos
remm
(tomcat-maven-plugin) branch trunk updated: Fix main integration test
remm
(tomcat-maven-plugin) branch trunk updated: Fix version numbers
remm
(tomcat-maven-plugin) branch trunk updated: Check response bodies
remm
(tomcat-maven-plugin) branch trunk updated: Renames
remm
[SECURITY] CVE-2026-34500 Apache Tomcat - OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled
Mark Thomas
[SECURITY] CVE-2026-34486 Apache Tomcat - Fix for CVE-2026-29146 allowed bypass of EncryptInterceptor
Mark Thomas
[SECURITY] CVE-2026-34487 Apache Tomcat - Cloud membership for clustering component exposed the Kubernetes bearer token
Mark Thomas
[SECURITY] CVE-2026-34483 Apache Tomcat - Incomplete escaping of JSON access logs
Mark Thomas
[SECURITY] CVE-2026-32990 Apache Tomcat - The fix for CVE-2025-66614 is incomplete
Mark Thomas
[SECURITY] CVE-2026-29146 Apache Tomcat - EncryptInterceptor vulnerable to padding oracle attack by default
Mark Thomas
[SECURITY] CVE-2026-29145 Apache Tomcat and Tomcat Native - OCSP checks sometimes soft-fail even when soft-fail is disabled
Mark Thomas
[SECURITY] CVE-2026-29129 Apache Tomcat - Configured TLS cipher preference order not preserved
Mark Thomas
[SECURITY] CVE-2026-25854 Apache Tomcat - Occasionally open redirect
Mark Thomas
[SECURITY] CVE-2026-24880 Apache Tomcat - Request smuggling via invalid chunk extension
Mark Thomas
svn commit: r1932933 - in tomcat/site/trunk: docs xdocs
markt
(tomcat-maven-plugin) branch trunk updated: Remove old readme
remm
(tomcat-maven-plugin) branch trunk updated: Avoid problems with missing directory
remm
(tomcat) branch 9.0.x updated: Fix wrong jakarta import..
dsoumis
(tomcat) branch 9.0.x updated: Add a unit test for CVE-2019-0221
dsoumis
(tomcat) branch 10.1.x updated: Add a unit test for CVE-2019-0221
dsoumis
(tomcat) branch 11.0.x updated: Add a unit test for CVE-2019-0221
dsoumis
(tomcat) branch main updated: Add a unit test for CVE-2019-0221
dsoumis
(tomcat-maven-plugin) branch dependabot/maven/org.apache.logging.log4j-log4j-slf4j-impl-2.25.4 deleted (was ed12299)
github-bot
(tomcat-maven-plugin) branch trunk updated (13791f5 -> 59f7b0b)
remm
(tomcat-maven-plugin) 01/01: Merge pull request #115 from apache/dependabot/maven/org.apache.logging.log4j-log4j-slf4j-impl-2.25.4
remm
(tomcat-maven-plugin) branch dependabot/maven/org.codehaus.plexus-plexus-utils-4.0.3 deleted (was 7d13fea)
github-bot
(tomcat-maven-plugin) branch trunk updated (4656590 -> 13791f5)
remm
(tomcat-maven-plugin) 01/01: Merge pull request #113 from apache/dependabot/maven/org.codehaus.plexus-plexus-utils-4.0.3
remm
(tomcat-maven-plugin) branch trunk updated: Set parent classloader
remm
(tomcat-maven-plugin) branch trunk updated: Simplify
remm
(tomcat-maven-plugin) branch trunk updated: Simplify
remm
(tomcat) branch 10.1.x updated: Fix typo in new method name spotted by CoPilot
markt
(tomcat) branch 9.0.x updated: Fix typo in new method name spotted by CoPilot
markt
(tomcat) branch main updated: Fix typo in new method name spotted by CoPilot
markt
(tomcat) branch 11.0.x updated: Fix typo in new method name spotted by CoPilot
markt
(tomcat-maven-plugin) branch trunk updated: Add back missing code to initialize resources
remm
[PR] Add a unit test for CVE-2019-0221 [tomcat]
via GitHub
Re: [PR] Add a unit test for CVE-2019-0221 [tomcat]
via GitHub
(tomcat) branch 9.0.x updated: One more location where EVP_PKEY_free is required spotted by CoPilot
markt
(tomcat) branch main updated: One more location where EVP_PKEY_free is required spotted by CoPilot
markt
(tomcat) branch 10.1.x updated: One more location where EVP_PKEY_free is required spotted by CoPilot
markt
(tomcat) branch 11.0.x updated: One more location where EVP_PKEY_free is required spotted by CoPilot
markt
(tomcat) branch 9.0.x updated: Refactor as suggested by CoPilot
markt
(tomcat) branch 10.1.x updated: Refactor as suggested by CoPilot
markt
(tomcat) branch 11.0.x updated: Refactor as suggested by CoPilot
markt
(tomcat) branch main updated: Refactor as suggested by CoPilot
markt
(tomcat-maven-plugin) branch trunk updated: Add READNE.md (generated ...)
remm
(tomcat) branch 11.0.x updated: Refactoring to reduce code duplication
markt
(tomcat) branch main updated: Refactoring to reduce code duplication
markt
(tomcat) branch 9.0.x updated: Refactoring to reduce code duplication
markt
(tomcat) branch 10.1.x updated: Refactoring to reduce code duplication
markt
(tomcat) branch 9.0.x updated: More refactoring to reduce duplication
markt
(tomcat) branch 10.1.x updated: More refactoring to reduce duplication
markt
(tomcat) branch 11.0.x updated: More refactoring to reduce duplication
markt
(tomcat) branch main updated: More refactoring to reduce duplication
markt
(tomcat) branch 9.0.x updated: Remove space
markt
(tomcat) branch 9.0.x updated: Make Javadoc consistent
markt
(tomcat) branch main updated: Additional reproducibility fixes for JSP generation
markt
(tomcat) branch 11.0.x updated: Additional reproducibility fixes for JSP generation
markt
(tomcat) branch 11.0.x updated: Refactor to reduce code duplication in tests
markt
(tomcat) branch 9.0.x updated: Fix failing test and further align code
markt
(tomcat) branch 10.1.x updated: Fix failing test and further align code
markt
(tomcat) branch 11.0.x updated: Fix failing test and further align code
markt
(tomcat) branch main updated: Fix failing test and further align code
markt
(tomcat) branch main updated: Don't use Java 25 feature
markt
(tomcat) branch 9.0.x updated: Refactor to reduce code duplication in testser.java
markt
(tomcat) branch main updated: Refactor to reduce code duplication in tests
markt
(tomcat) branch 9.0.x updated: Free private keys after use
markt
(tomcat-maven-plugin) branch trunk updated: Fix dependencies
remm
(tomcat-maven-plugin) branch trunk updated: Rename
remm
(tomcat-maven-plugin) branch trunk updated: Rename
remm
(tomcat-maven-plugin) branch trunk updated (3f6d531 -> 2db0225)
remm
(tomcat-maven-plugin) 01/01: Merge pull request #118 from apache/dependabot/maven/org.apache.maven-maven-core-3.8.1
remm
(tomcat-maven-plugin) branch dependabot/maven/org.apache.maven-maven-core-3.8.1 created (now 1b29a71)
github-bot
(tomcat) branch 10.1.x updated: Fix a couple more places where the key needs to be released
markt
(tomcat) branch 11.0.x updated: Fix a couple more places where the key needs to be released
markt
(tomcat) branch 10.1.x updated: Don't use Java 25 feature
markt
(tomcat) branch 11.0.x updated: Don't use Java 25 feature
markt
[PR] Bump org.apache.maven:maven-core from 2.2.1 to 3.8.1 [tomcat-maven-plugin]
via GitHub
Re: [PR] Bump org.apache.maven:maven-core from 2.2.1 to 3.8.1 [tomcat-maven-plugin]
via GitHub
(tomcat-maven-plugin) branch trunk updated: Version updates
remm
(tomcat) branch 10.1.x updated: Additional reproducibility fixes for JSP generation
markt
(tomcat) branch 9.0.x updated: Additional reproducibility fixes for JSP generation
markt
(tomcat) branch 10.1.x updated: Refactor to reduce code duplication in tests
markt
(tomcat) branch 10.1.x updated: Make Javadoc consistent
markt
(tomcat) branch 9.0.x updated: Fix a couple more places where the key needs to be released
markt
(tomcat) branch main updated: Fix a couple more places where the key needs to be released
markt
(tomcat) branch 11.0.x updated: Make Javadoc consistent
markt
(tomcat) branch main updated: Make Javadoc consistent
markt
(tomcat) branch 10.1.x updated: Remove space
markt
(tomcat) branch 11.0.x updated: Remove space
markt
(tomcat) branch main updated: Remove space
markt
(tomcat) branch main updated: Remove space
markt
(tomcat) branch 10.1.x updated: Free private keys after use
markt
(tomcat) branch 11.0.x updated: Free private keys after use
markt
(tomcat) branch main updated: Free private keys after use
markt
(tomcat) branch 11.0.x updated: Remove unnecessary code
markt
(tomcat) branch 9.0.x updated: Reduce duplication. Use correct index in error message.
markt
(tomcat) branch 10.1.x updated: Reduce duplication. Use correct index in error message.
markt
(tomcat) branch 11.0.x updated: Reduce duplication. Use correct index in error message.
markt
(tomcat) branch main updated: Reduce duplication. Use correct index in error message.
markt
(tomcat) branch 9.0.x updated: Unexpected i2d_X509 length
markt
(tomcat) branch 10.1.x updated: Unexpected i2d_X509 length
markt
(tomcat) branch 11.0.x updated: Unexpected i2d_X509 length
markt
(tomcat) branch main updated: Unexpected i2d_X509 length
markt
(tomcat) branch 9.0.x updated: Fix changelog
remm
(tomcat) branch 10.1.x updated: Fix changelog
remm
(tomcat) branch 9.0.x updated: More query escaping refactoring
markt
(tomcat) branch 10.1.x updated: More query escaping refactoring
markt
(tomcat) branch 11.0.x updated: More query escaping refactoring
markt
(tomcat) branch main updated: More query escaping refactoring
markt
(tomcat) branch 9.0.x updated: Add unit tests for ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) branch 10.1.x updated: Add unit tests for ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) branch 11.0.x updated (02e7a89698 -> 48343a64f2)
dsoumis
(tomcat) 03/03: Add more tests and minor fixes for FilterValve, ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) 02/03: Add docs for FilterValve
dsoumis
(tomcat) 01/03: Add unit tests for FilterValve, ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) branch main updated (4971ee2606 -> e68cc20e68)
dsoumis
(tomcat) 02/03: Add docs for FilterValve
dsoumis
(tomcat) 03/03: Add more tests and minor fixes for FilterValve, ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) 01/03: Add unit tests for FilterValve, ProxyErrorReportValve and SemaphoreValve
dsoumis
(tomcat) branch 9.0.x updated: Update the URL to the CDDL 1.0 license
markt
(tomcat) branch 10.1.x updated: Update the URL to the CDDL 1.0 license
markt
(tomcat) branch 11.0.x updated: Update the URL to the CDDL 1.0 license
markt
(tomcat) branch 11.0.x updated: Replace outdated CDDL license URL with canonical HTTPS URL
dsoumis
(tomcat) branch main updated: Update the URL to the CDDL 1.0 license
markt
Re: (tomcat) branch main updated: Update the URL to the CDDL 1.0 license
Dimitris Soumis
Re: (tomcat) branch main updated: Update the URL to the CDDL 1.0 license
Mark Thomas
(tomcat) branch 9.0.x updated: Align escaping ExtendedAccessLogValve with the other implementations
markt
(tomcat) branch 10.1.x updated: Align escaping ExtendedAccessLogValve with the other implementations
markt
(tomcat) branch 11.0.x updated: Align escaping ExtendedAccessLogValve with the other implementations
markt
(tomcat) branch main updated: Align escaping ExtendedAccessLogValve with the other implementations
markt
[Bug 69998] New: Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
[Bug 69998] Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
[Bug 69998] Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
[Bug 69998] Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
[Bug 69998] Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
[Bug 69998] Changelog incorrectly states that HTTP request header names are stored in original case for Tomcat 9.x and 10.1.x
bugzilla
(tomcat) branch 9.0.x updated: Remove the FIXME. The cluster correctly handles single node failure.
markt
(tomcat) branch 10.1.x updated: Remove the FIXME. The cluster correctly handles single node failure.
markt
(tomcat) branch 11.0.x updated: Remove the FIXME. The cluster correctly handles single node failure.
markt
(tomcat) branch main updated: Remove the FIXME. The cluster correctly handles single node failure.
markt
(tomcat) branch 9.0.x updated: Align trailer header name filtering across HTTP versions
markt
(tomcat) branch 11.0.x updated: Align trailer header name filtering across HTTP versions
markt
(tomcat) branch main updated: Align trailer header name filtering across HTTP versions
markt
(tomcat) branch 10.1.x updated: Align trailer header name filtering across HTTP versions
markt
Fwd: OpenSSL Release Announcement and Tomcat Native
Mark Thomas
Re: Fwd: OpenSSL Release Announcement and Tomcat Native
Christopher Schultz
(tomcat) branch main updated: Refactor clean-up of header buffer. Align reset with headers complete.
markt
(tomcat) branch 9.0.x updated: Refactor clean-up of header buffer. Align reset with headers complete.
markt
(tomcat) branch 10.1.x updated: Refactor clean-up of header buffer. Align reset with headers complete.
markt
(tomcat) branch 11.0.x updated: Refactor clean-up of header buffer. Align reset with headers complete.
markt
(tomcat-maven-plugin) branch dependabot/maven/org.codehaus.plexus-plexus-classworlds-2.10.0 deleted (was 0241209)
github-bot
(tomcat-maven-plugin) branch trunk updated (93f35b0 -> bd3ae09)
remm
(tomcat-maven-plugin) 01/01: Merge pull request #117 from apache/dependabot/maven/org.codehaus.plexus-plexus-classworlds-2.10.0
remm
(tomcat-maven-plugin) branch dependabot/maven/tomcat9Version-11.0.21 deleted (was 600b478)
github-bot
[PR] Bump org.codehaus.plexus:plexus-classworlds from 2.9.0 to 2.10.0 [tomcat-maven-plugin]
via GitHub
Re: [PR] Bump org.codehaus.plexus:plexus-classworlds from 2.9.0 to 2.10.0 [tomcat-maven-plugin]
via GitHub
(tomcat-maven-plugin) branch dependabot/maven/org.codehaus.plexus-plexus-classworlds-2.10.0 created (now 0241209)
github-bot
(tomcat-maven-plugin) branch dependabot/maven/tomcat9Version-11.0.21 created (now 600b478)
github-bot
[PR] Bump tomcat9Version from 9.0.115 to 11.0.21 [tomcat-maven-plugin]
via GitHub
Re: [PR] Bump tomcat9Version from 9.0.115 to 11.0.21 [tomcat-maven-plugin]
via GitHub
Re: [PR] Bump tomcat9Version from 9.0.115 to 11.0.21 [tomcat-maven-plugin]
via GitHub
(tomcat) branch main updated: Use constants
markt
(tomcat) branch 9.0.x updated: Use constants
markt
(tomcat) branch 10.1.x updated: Use constants
markt
(tomcat) branch 11.0.x updated: Use constants
markt
(tomcat) branch 9.0.x updated: Fix some minor memory leaks on certificate load
markt
(tomcat) branch main updated: Add since tags
markt
(tomcat) branch 11.0.x updated: Fix some minor memory leaks on certificate load
markt
(tomcat) branch 11.0.x updated: Use correct message parameter.
markt
(tomcat) branch main updated: Use correct message parameter.
markt
(tomcat) branch 9.0.x updated: Remove unnecessary code spotted by GitHub CoPilot
markt
(tomcat) branch 10.1.x updated: Use correct message parameter.
markt
(tomcat) branch 9.0.x updated: Use correct message parameter.
markt
(tomcat) branch 10.1.x updated: Remove unnecessary code spotted by GitHub CoPilot
markt
(tomcat) branch main updated: Remove unnecessary code spotted by GitHub CoPilot
markt
(tomcat) branch 11.0.x updated: Remove unnecessary code spotted by GitHub CoPilot
markt
(tomcat) branch 10.1.x updated: Fix some minor memory leaks on certificate load
markt
(tomcat) branch main updated: Fix some minor memory leaks on certificate load
markt
(tomcat) branch 9.0.x updated: Add some test coverage for collapseLeadingSlashes()
markt
(tomcat) branch 10.1.x updated: Add some test coverage for collapseLeadingSlashes()
markt
(tomcat) branch 11.0.x updated: Add some test coverage for collapseLeadingSlashes()
markt
(tomcat) branch main updated: Add some test coverage for collapseLeadingSlashes()
markt
(tomcat) branch 11.0.x updated: Align URI normalization between RequestUtil and CoyoteAdapter
markt
(tomcat) branch 9.0.x updated: Align URI normalization between RequestUtil and CoyoteAdapter
markt
(tomcat) branch 10.1.x updated: Align URI normalization between RequestUtil and CoyoteAdapter
markt
(tomcat) branch main updated: Align URI normalization between RequestUtil and CoyoteAdapter
markt
(tomcat) branch 9.0.x updated: Make dependent ordering predictable
remm
(tomcat) branch 10.1.x updated: Make dependent ordering predictable
remm
(tomcat) branch 11.0.x updated: Make dependent ordering predictable
remm
(tomcat) branch main updated: Make dependent ordering predictable
remm
(tomcat) branch 9.0.x updated: Failed precondition should make WebDAV DELETE fail
remm
(tomcat) branch 10.1.x updated: Failed precondition should make WebDAV DELETE fail
remm
(tomcat) branch 11.0.x updated: Failed precondition should make WebDAV DELETE fail
remm
Earlier messages
Later messages