On 06/03/2014 09:04, Lukasz Lenart wrote: > This release includes important security fixes: > - S2-020 - ClassLoader manipulation via request parameters > - upgraded Commons FileUpload library to prevent DoS attacks > > * http://struts.apache.org/release/2.3.x/docs/s2-020.html
Please remove my name from the reporters. I just forwarded the e-mail that the security team received. I do not deserve any of the credit for discovering this issue. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@struts.apache.org For additional commands, e-mail: dev-h...@struts.apache.org