On 26/03/2019 11:47, George Angeletos wrote: > Hello, > > Is an upgrade required for those who are not using the HTTP/2 protocol?
No. CVE-2019-0199 only affects servers where HTTP/2 is enabled. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org