Re: Cross site scripting safe

2011-12-14 Thread Konstantin Kolinko
2011/12/14 Saeedahmed Subedar : > Not sure if this is the right mailing list to ask this, but.. Wrong. This question should be on the users@ list. > > Is the latest Tomcat 7 cross-site scripting safe? Or nevertheless, is some > amount of css filtering code required at the application level? Tom

DO NOT REPLY [Bug 52327] New: DataSourceProxy is not thread-safe

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52327 Bug #: 52327 Summary: DataSourceProxy is not thread-safe Product: Tomcat Modules Version: unspecified Platform: PC OS/Version: Windows XP Status: NEW Sever

RE: Cross site scripting safe

2011-12-14 Thread Saeedahmed Subedar
Thanks. Regards, SaeedAhmed Subedar, BSLI 91-022-39961356 -Original Message- From: Konstantin Kolinko [mailto:knst.koli...@gmail.com] Sent: Wednesday, December 14, 2011 2:06 PM To: Tomcat Developers List Subject: Re: Cross site scripting safe 2011/12/14 Saeedahmed Subedar : > Not sure

DO NOT REPLY [Bug 52328] New: Massive garbage production observed when using the response writer

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52328 Bug #: 52328 Summary: Massive garbage production observed when using the response writer Product: Tomcat 7 Version: 7.0.23 Platform: PC Status: NEW

DO NOT REPLY [Bug 52329] New: URI has a fragment component

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52329 Bug #: 52329 Summary: URI has a fragment component Product: Tomcat 7 Version: 7.0.23 Platform: PC OS/Version: Windows XP Status: NEW Severity: minor

DO NOT REPLY [Bug 52328] Massive garbage production observed when using the response writer

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52328 Andreas Kohn changed: What|Removed |Added CC||andreas.k...@gmail.com OS/V

DO NOT REPLY [Bug 52327] DataSourceProxy is not thread-safe

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52327 Rob Moore changed: What|Removed |Added CC||rob.moore+apa...@gmail.com -- Configu

DO NOT REPLY [Bug 51893] JMX notification/Exception for empty/exhausted connection pool

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=51893 Rob Moore changed: What|Removed |Added CC||rob.moore+apa...@gmail.com -- Configu

DO NOT REPLY [Bug 52271] ArrayIndexOutOfBoundsException in CompositeELResolver.add

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52271 Michael Heinen changed: What|Removed |Added CC||mhn4...@googlemail.com OS

DO NOT REPLY [Bug 52328] Massive garbage production observed when using the response writer

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52328 --- Comment #1 from Nikolay Diakov 2011-12-14 15:24:50 UTC --- Some more information why we did what we did to work around this, and possibly hint how this can be resolved inside Tomcat: the documentation at http://docs.oracle.com/javase/

[GUMP@vmgump]: Project tomcat-trunk-test (in module tomcat-trunk) failed

2011-12-14 Thread Bill Barker
To whom it may engage... This is an automated request, but not an unsolicited one. For more information please visit http://gump.apache.org/nagged.html, and/or contact the folk at gene...@gump.apache.org. Project tomcat-trunk-test has an issue affecting its community integration. This i

Re: To developers I have some questions

2011-12-14 Thread markt
Ayame1031 wrote: > >My name is Ayame. I am a Computer Science major at Tsuda College in >Tokyo. We >are doing a project about Global Collaboration. > >I am sorry to bother you, but I was wondering if you could answer a few >of >my questions about tomcat. This would be a huge help to me and my >c

next release

2011-12-14 Thread Romain Manni-Bucau
Hi, i'm participating to Apache OpenEJB project and we would like to release this mounth. However we are interested by (at least) one fix in tomcat 7.0.24. Any planned date for this release? Thanks - Romain

DO NOT REPLY [Bug 52334] New: recover_time is not properly used

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52334 Bug #: 52334 Summary: recover_time is not properly used Product: Tomcat Connectors Version: 1.2.32 Platform: PC OS/Version: Linux Status: NEW Severity: maj

DO NOT REPLY [Bug 52334] recover_time is not properly used

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52334 --- Comment #1 from Aaron Ogburn 2011-12-14 21:50:20 UTC --- A workaround could be to set the worker.maintain interval to the desired recover_time asw well. -- Configure bugmail: https://issues.apache.org/bugzilla/userprefs.cgi?tab=email

DO NOT REPLY [Bug 52334] recover_time is not properly used

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52334 Aaron Ogburn changed: What|Removed |Added CC||aogb...@redhat.com -- Configure bu

DO NOT REPLY [Bug 52329] URI has a fragment component

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52329 Mark Thomas changed: What|Removed |Added Status|NEW |RESOLVED Resolution|

Re: next release

2011-12-14 Thread Ognjen Blagojevic
Romain, On 14.12.2011 22:38, Romain Manni-Bucau wrote: However we are interested by (at least) one fix in tomcat 7.0.24. Any planned date for this release? Yes, see: http://www.mail-archive.com/dev@tomcat.apache.org/msg58230.html -Ognjen

DO NOT REPLY [Bug 52335] New: Tomcat escapes all the \% in Template Text as %.

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52335 Bug #: 52335 Summary: Tomcat escapes all the \% in Template Text as %. Product: Tomcat 5 Version: 5.5.34 Platform: PC OS/Version: Windows XP Status: NEW Se

DO NOT REPLY [Bug 52335] Tomcat escapes all the \% in Template Text as %.

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52335 Suzuki Yuichiro changed: What|Removed |Added CC||suzuki.yuichiro@jp.fujitsu.

DO NOT REPLY [Bug 52335] Tomcat escapes all the \% in Template Text as %.

2011-12-14 Thread bugzilla
https://issues.apache.org/bugzilla/show_bug.cgi?id=52335 Wu shizhen changed: What|Removed |Added CC||w...@cn.fujitsu.com -- Configure bug

[GUMP@vmgump]: Project tomcat-tc7.0.x-test (in module tomcat-7.0.x) failed

2011-12-14 Thread Bill Barker
To whom it may engage... This is an automated request, but not an unsolicited one. For more information please visit http://gump.apache.org/nagged.html, and/or contact the folk at gene...@gump.apache.org. Project tomcat-tc7.0.x-test has an issue affecting its community integration. This