Messages by Thread
-
-
[PR] Keep caller-opted-in resources on the hardening floor [commons-xml]
via GitHub
-
[PR] Harden the SAXTransformerFactory extension surface [commons-xml]
via GitHub
-
[PR] Make the call to the "sun." packages optional when cleaning byte buffers. [commons-io]
via GitHub
-
[PR] docs: declare the SAXTransformerFactory extension surface out of scope [commons-xml]
via GitHub
-
[PR] docs: fix stale XmlFactories.harden(XMLReader) reference in threat model [commons-xml]
via GitHub
-
[PR] docs: document the supported-runtime floor (OpenJDK 8+, Android 33+) [commons-xml]
via GitHub
-
[PR] reject invalid ISBN-10 in convertToISBN13 [commons-validator]
via GitHub
-
[PR] fix: Restore hardened state after reset() [commons-xml]
via GitHub
-
[PR] Remove `XmlFactories.harden(XMLReader)` and `harden(Source)` [commons-xml]
via GitHub
-
[jira] [Resolved] (IO-892) Add maximum traversal depth to FileAlterationObserver
Gary D. Gregory (Jira)
-
Re: [PR] validate direction number degree in SobolSequenceGenerator stream parser [commons-math]
via GitHub
-
[PR] Keep StringUtils left, right, mid, and overlay off surrogate pair boundaries [commons-lang]
via GitHub
-
Re: [PR] Keep StringUtils left, right, mid, and overlay off surrogate pair boundaries [commons-lang]
via GitHub
-
Re: [PR] Keep StringUtils left, right, mid, and overlay off surrogate pair boundaries [commons-lang]
via GitHub
-
Re: [PR] Keep StringUtils left, right, mid, and overlay off surrogate pair boundaries [commons-lang]
via GitHub
-
Re: [PR] Keep StringUtils left, right, mid, and overlay off surrogate pair boundaries [commons-lang]
via GitHub
-
[PR] [COLLECTIONS-123] AbstractSetTest cannot be used with an explicitly typed Set (unless it's based on String) [commons-collections]
via GitHub
-
[jira] [Updated] (COLLECTIONS-898) AbstractSetTest cannot be used with an explicitly typed Set (unless it's based on String)
Thomas Mortagne (Jira)
-
[jira] [Created] (COLLECTIONS-898) AbstractSetTest cannot be used with an explicitly typed Set (unless it's based on String)
Thomas Mortagne (Jira)
-
[PR] fix CharRange.contains(CharRange) for negated argument ranges [commons-lang]
via GitHub
-
[PR] Verify Kraft's inequality is not violated [commons-compress]
via GitHub
-
[PR] Fix typos and syntax in Javadoc examples and comments [commons-lang]
via GitHub
-
[PR] avoid unbounded recursion on empty frames in framed lz4 and snappy decoders [commons-compress]
via GitHub
-
[jira] [Comment Edited] (IO-892) Add maximum traversal depth to FileAlterationObserver
Gary D. Gregory (Jira)
-
[PR] [IO-892] Add maximum traversal depth to FileAlterationObserver. [commons-io]
via GitHub
-
[jira] [Updated] (IO-892) Add maximum traversal depth to FileAlterationObserver
Gary D. Gregory (Jira)
-
[PR] reject out-of-range sql date/time fields in DateTimeConverter.toDate [commons-beanutils]
via GitHub
-
[PR] fix AbstractLinkedList addAll returning true for an empty collection [commons-collections]
via GitHub
-
[PR] [doc] Update ArrayStack.java (typo) [commons-collections]
via GitHub
-
[PR] clear descriptor caches when bean introspectors change [commons-beanutils]
via GitHub
-
[PR] wrap gzip FNAME/FCOMMENT charset errors as CompressorException [commons-compress]
via GitHub
-
[PR] keep stripStart and stripEnd off surrogate pair boundaries [commons-lang]
via GitHub
-
[PR] Add Base45 support. [commons-codec]
via GitHub
-
[jira] [Commented] (DBCP-589) Provide Jakarta namespace ready artifact of DBCP2
Gary D. Gregory (Jira)
-
Re: [PR] Migrated javax.transaction to jakarta.transaction [commons-dbcp]
via GitHub
-
[PR] TFTPRequestPacket now throws TFTPPacketException instead of ArrayIndexOutOfBoundsException [commons-net]
via GitHub
-
[PR] Fix the month/day example in DurationFormatUtils.formatPeriod Javadoc [commons-lang]
via GitHub
-
[PR] Configure PR buttons [commons-xml]
via GitHub
-
[PR] validate CSVFormat invariants when deserializing [commons-csv]
via GitHub
-
[jira] [Resolved] (JEXL-411) Leading zeroes in floating point numbers should be optional
Henri Biestro (Jira)
-
[jira] [Updated] (JEXL-411) Leading zeroes in floating point numbers should be optional
Henri Biestro (Jira)
-
[jira] [Commented] (CONFIGURATION-858) Remove mandatory import-package java.applet which is not available in Java 25+
Gary D. Gregory (Jira)
-
[PR] JEXL-411: Allow optional leading zeroes in floating point literals [commons-jexl]
via GitHub
-
[PR] update the index on remove via IndexedCollection.iterator() [commons-collections]
via GitHub
-
[PR] reject oversized four-byte literal length in snappy decoder [commons-compress]
via GitHub
-
[PR] fix low surrogate false match in containsAny/containsNone/indexOfAny [commons-lang]
via GitHub
-
[PR] reject out-of-range cpUTF8Prefix in CpBands.parseCpUtf8 [commons-compress]
via GitHub
-
[PR] compare the file scheme case-insensitively in isValid [commons-validator]
via GitHub
-
[jira] [Updated] (CONFIGURATION-858) Remove mandatory import-package java.applet which is not available in Java 25+
Guido Schnepp (Jira)
-
[jira] [Created] (CONFIGURATION-858) Remove non-optional import-package java.applet which is not available in Java 25+
Guido Schnepp (Jira)
-
[PR] record element type of first element in LazyDynaList.transform [commons-beanutils]
via GitHub
-
[PR] reject UTF-16 surrogate values in Character converter [commons-cli]
via GitHub
-
[PR] Add AbstractTest.toByteArray [commons-compress]
via GitHub
-
[PR] Throw CompressorException for invalid huffman data [commons-compress]
via GitHub
-
[PR] keep existing sort order in ComparatorChain.setComparator [commons-collections]
via GitHub
-
[PR] keep chop from splitting a trailing surrogate pair [commons-lang]
via GitHub
-
[PR] reject back-reference offset larger than the window in lz77 decoder [commons-compress]
via GitHub
-
[jira] [Updated] (COLLECTIONS-551) Move Iterable related methods from CollectionUtils to IterableUtils
Gary D. Gregory (Jira)
-
[jira] [Updated] (COLLECTIONS-542) AbstractHashedMap should not extend AbstractMap anymore
Gary D. Gregory (Jira)
-
[PR] Remove unnecessary parameter from HuffmanDecoder public constructor [commons-compress]
via GitHub
-
[PR] Add more tests for HuffmanDecoder and performance benchmark tests [commons-compress]
via GitHub
-
[PR] reject negative ZIP64 offsets in positionAtCentralDirectory64 [commons-compress]
via GitHub