[Bug 65895] getContextPath() might introduce a xss cross site

2022-02-20 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=65895 --- Comment #2 from hawkc...@potix.com --- Thanks for your reply. I have checked that tomcat7-maven-plugin is 7.0.47 which doesn't include bug 57215. -- You are receiving this mail because: You are the assignee for the bug. ---

[Bug 65901] HTTP 401 response for a HEAD request violates HTTP spec by including a body

2022-02-20 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=65901 --- Comment #1 from Stefan Mayr --- Created attachment 38204 --> https://bz.apache.org/bugzilla/attachment.cgi?id=38204&action=edit Attempt to fix bug 65901 Attempt to fix that issue. I'm not sure if it is complete nor if it has any side eff

[Bug 65901] New: HTTP 401 response for a HEAD request violates HTTP spec by including a body

2022-02-20 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=65901 Bug ID: 65901 Summary: HTTP 401 response for a HEAD request violates HTTP spec by including a body Product: Tomcat Connectors Version: 1.2.48 Hardware: PC