Re: Isolating multiple CXFNonSpringServlet

2019-11-05 Thread Jean-Baptiste Onofré
Hi, Do you really ned the JAXRS servlet ? Starting from CXF NonSpring Servlet, you can mimic the JAXRS servlet. Anyway, it makes sense to expose a new constructor to simplify the extension. Regards JB On 05/11/2019 00:46, Scott Lewis wrote: > Howdy, > > I'm extending this class: >

Re: CXF and Bndtools

2019-11-05 Thread Jean-Baptiste Onofré
Hi Scott, Do you have cxf-jaxrs bundle installed and corresponding packages imported ? Regards JB On 06/11/2019 07:05, Scott Lewis wrote: > I'm trying to use CXF with Bndtools 4.3.   Bndtools has a launcher that > by default sets the start level of all bundles to the same value. > > When I use

CXF and Bndtools

2019-11-05 Thread Scott Lewis
I'm trying to use CXF with Bndtools 4.3.   Bndtools has a launcher that by default sets the start level of all bundles to the same value. When I use this launcher to start an app that uses CXF I get ClassNotFoundExceptions such as these: Exception in thread

Survey about the Relevance of Open Source Research

2019-11-05 Thread Edna Dias Canedo
Dear all, I'm conducting a Survey about the Relevance of Open Source Research as part of my Bachelor’s dissertation in Computer Science at the University Of Brasília (Brazil) and I kindly ask you to participate in it. The study aims at identifying, through a systematic literature mapping, works

[CVE-2019-12419] Apache CXF OpenId Connect token service does not properly validate the clientId

2019-11-05 Thread Colm O hEigeartaigh
[CVEID]:CVE-2019-12419 [PRODUCT]:Apache CXF [VERSION]:Apache CXF versions before 3.3.4 and 3.2.11 [PROBLEMTYPE]:Apache CXF OpenId Connect token service does not properly validate the clientId [REFERENCES]: http://cxf.apache.org/security-advisories.data/CVE-2019-12419.txt.asc [DESCRIPTION]:Apache

[CVE-2019-12406] Apache CXF does not restrict the number of message attachments

2019-11-05 Thread Colm O hEigeartaigh
[CVEID]:CVE-2019-12406 [PRODUCT]:Apache CXF [VERSION]:Apache CXF versions before 3.3.4 and 3.2.11 [PROBLEMTYPE]:Denial of Service [REFERENCES]: http://cxf.apache.org/security-advisories.data/CVE-2019-12406.txt.asc [DESCRIPTION]:Apache CXF does not restrict the number of message attachments present