Re: FindBugs project announced as 'dead', blaims code rot and lack of maintainers

2016-11-06 Thread Timo
Looks like Bill Pugh was woken up: https://twitter.com/wpugh/status/795350364291813376 2016-11-06 19:00 GMT+01:00 Gary Gregory : > The whole post is interesting. Sounds like a fork is inevitable. So much > work though... > > Gary > > On Nov 6, 2016 9:32 AM, "Stian

Re: Deserialization vulnerability in Apache Commons Collection

2015-11-10 Thread Timo
a look at the ASF blog: https://blogs.apache.org/foundation/entry/apache_commons_statement_to_widespread Timo 2015-11-10 9:05 GMT+01:00 Kapoor, Deepesh <deepesh_kap...@spe.sony.com>: > Hi Team, > > This is regarding "commons-collections Java library". In our applicatio

Re: [COLLECTIONS] Bad press on twitter following serialization issue

2015-11-09 Thread Timo
e "final type is checked a lot of code" "sample payloads which combines classes" should be "sample payloads which combine classes" Timo 2015-11-09 9:36 GMT+01:00 Benedikt Ritter <brit...@apache.org>: > Hello Bernd, > > very nice. I found two typos: >

[LANG] Release notes for 3.4 disappeared

2015-05-08 Thread Timo
Hello everyone, I just noticed that the release notes for 3.4 [1] are a 404. Can someone with access take a look, please? Thanks Timo [1] http://commons.apache.org/proper/commons-lang/release-notes/RELEASE-NOTES-3.4.txt