Am 30.06.2018 um 04:00 schrieb Roberto C. Sánchez: [...] > Comments and suggestions are most welcome.
I would suggest to fix the open CVE via patches for now. Being EOL does not necessarily mean that we cannot backport fixes from the 8.5 branch but at some point upgrading from 8.x to 8.5 might be the only viable option. At the moment I recommend to refrain from marking Tomcat 8 EOL. Regards, Markus
signature.asc
Description: OpenPGP digital signature