Re: Is Struts 2.3.15.2 affected by the security vulnerability S2-018?

2013-12-17 Thread Lukasz Lenart
2013/12/17 Miguel Almeida : > Great to hear that. BTW, you've been missed on IRC's #struts, drop by > some time! Too many communications channels ;-) When entire company will switch to using IRC I'll be there all the time :-) Regards -- Łukasz + 48 606 323 122 http://www.lenart.org.pl/ ---

Re: Debug level for com.opensymphony is too talkative, when using Netbeans 7.3

2013-12-17 Thread Lukasz Lenart
I think even WARN should be sufficient, can you register an issue for that? Thanks in advance -- Łukasz + 48 606 323 122 http://www.lenart.org.pl/ 2013/12/17 Chris : > Please Use INFO level > > > Hello, > I don't know why, but for some asf trunk examples, using this configuration > could produ

Debug level for com.opensymphony is too talkative, when using Netbeans 7.3

2013-12-17 Thread Chris
Please Use INFO level Hello, I don't know why, but for some asf trunk examples, using this configuration could product some trouble in view server output. No less than 340 000 lines : "Netbeans 7.3   -  Tomcat 7x  -  Struts 2.3.16  - DEBUG level in log4j.xml for com.opensymphony " The The

Re: /struts2examples/themes and Struts2-3-16

2013-12-17 Thread Chris
I guess I know, now. It's the 4's team : Netbeans 7 - Tomcat 7 - Struts2.3.16 - DEBUG level in log4j.xml for com.opensymphony The Themes example is not the only one , with which I found thousand of lines in view server output. On my own old PC , more than 10 mn for 340 000 lines   The pr

Re: Is Struts 2.3.15.2 affected by the security vulnerability S2-018?

2013-12-17 Thread Miguel Almeida
On Tue, 2013-12-17 at 11:40 +0100, Lukasz Lenart wrote: > 2013/12/17 Miguel Almeida : > > Lukasz, > > > > Just to be sure, does that mean that if you use 2.3.15.3 and you set the > > flag to enable the action: prefix it means you'll get the old behaviour > > (and vulnerability) back? > > As I can

Re: Is Struts 2.3.15.2 affected by the security vulnerability S2-018?

2013-12-17 Thread Lukasz Lenart
2013/12/17 Miguel Almeida : > Lukasz, > > Just to be sure, does that mean that if you use 2.3.15.3 and you set the > flag to enable the action: prefix it means you'll get the old behaviour > (and vulnerability) back? As I cannot answer your question directly on public forum, I will say that there

Re: Is Struts 2.3.15.2 affected by the security vulnerability S2-018?

2013-12-17 Thread Miguel Almeida
Lukasz, Just to be sure, does that mean that if you use 2.3.15.3 and you set the flag to enable the action: prefix it means you'll get the old behaviour (and vulnerability) back? Miguel On Mon, 2013-12-16 at 08:27 +0100, Lukasz Lenart wrote: > 2.3.15.2 and 2.3.15.3 address the same issue, but