[jira] [Updated] (CXF-8688) Accomodate some RFC 3986 checks to filter out invalid URIs

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8688?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andriy Redko updated CXF-8688: -- Description: The Java's URI is not compliant with RFC 3986 and as such, some invalid URIs sneak in, fail

[jira] [Updated] (CXF-8688) Accomodate some RFC 3986 checks to filter out invalid URIs

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8688?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andriy Redko updated CXF-8688: -- Description: The Java's URI is not compliant with RFC 3986 and as such, some invalid URIs sneak in, fail

[jira] [Updated] (CXF-8688) Accomodate some RFC 3986 checks to filter out invalid URIs

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8688?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andriy Redko updated CXF-8688: -- Description: The Java's URI is not compliant with RFC 3986 (https://www.ietf.org/rfc/rfc3986.txt) and as

[jira] [Updated] (CXF-8688) Accomodate some RFC 3986 checks to filter out invalid URIs

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8688?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andriy Redko updated CXF-8688: -- Summary: Accomodate some RFC 3986 checks to filter out invalid URIs (was: Accomodate some URI RFC 3986 c

[jira] [Created] (CXF-8688) Accomodate some URI RFC 3986 checks to filter out invalid URIs

2022-04-07 Thread Andriy Redko (Jira)
Andriy Redko created CXF-8688: - Summary: Accomodate some URI RFC 3986 checks to filter out invalid URIs Key: CXF-8688 URL: https://issues.apache.org/jira/browse/CXF-8688 Project: CXF Issue Type:

[jira] [Commented] (CXF-8687) Version 3.4.6 contains vulnerable spring version

2022-04-07 Thread Gary D. Gregory (Jira)
[ https://issues.apache.org/jira/browse/CXF-8687?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17519130#comment-17519130 ] Gary D. Gregory commented on CXF-8687: -- Hi [~reta]  I only need to track 3.4.x ;) >

[jira] [Comment Edited] (CXF-8687) Version 3.4.6 contains vulnerable spring version

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8687?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17519129#comment-17519129 ] Andriy Redko edited comment on CXF-8687 at 4/7/22 7:49 PM: --- [~ggr

[jira] [Commented] (CXF-8687) Version 3.4.6 contains vulnerable spring version

2022-04-07 Thread Andriy Redko (Jira)
[ https://issues.apache.org/jira/browse/CXF-8687?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17519129#comment-17519129 ] Andriy Redko commented on CXF-8687: --- [~ggregory] for 3.5.1 - it is different Spring Frame

[jira] [Commented] (CXF-8687) Version 3.4.6 contains vulnerable spring version

2022-04-07 Thread Gary D. Gregory (Jira)
[ https://issues.apache.org/jira/browse/CXF-8687?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17519120#comment-17519120 ] Gary D. Gregory commented on CXF-8687: -- Hi All: I cannot edit "Affects Version/s:", it

[jira] [Resolved] (CXF-8668) Set SniHostCheck to false for SSLNettyClientTest

2022-04-07 Thread Jim Ma (Jira)
[ https://issues.apache.org/jira/browse/CXF-8668?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Jim Ma resolved CXF-8668. - Resolution: Fixed > Set SniHostCheck to false for SSLNettyClientTest >

[jira] [Resolved] (CXF-8686) JWT role claim incorrectly parsed if not tokenized as string

2022-04-07 Thread Colm O hEigeartaigh (Jira)
[ https://issues.apache.org/jira/browse/CXF-8686?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Colm O hEigeartaigh resolved CXF-8686. -- Resolution: Fixed > JWT role claim incorrectly parsed if not tokenized as string > --

[jira] [Updated] (CXF-8686) JWT role claim incorrectly parsed if not tokenized as string

2022-04-07 Thread Colm O hEigeartaigh (Jira)
[ https://issues.apache.org/jira/browse/CXF-8686?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Colm O hEigeartaigh updated CXF-8686: - Fix Version/s: 3.5.2 (was: 3.5.3) > JWT role claim incorrectly parse

[jira] [Assigned] (CXF-8686) JWT role claim incorrectly parsed if not tokenized as string

2022-04-07 Thread Colm O hEigeartaigh (Jira)
[ https://issues.apache.org/jira/browse/CXF-8686?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Colm O hEigeartaigh reassigned CXF-8686: Assignee: Colm O hEigeartaigh > JWT role claim incorrectly parsed if not tokenized a