You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to play-framew...@googlegroups.com
A security vulnerability has been found in Play Framework versions 1.0 through 1.4.0, excluding 1.2.7.x. It affects any applications that use the session as part of 500 error handling.
This vulnerability has been fixed in Play 1.4.1, 1.3.2, 1.2.6.2 and 1.2.5.6. 1.2.7.2 is not impacted by this vulnerability.
The Play team recommends that all Play 1 users upgrade to a fixed version immediately.
For details on this vulnerability, including the workarounds, please see the vulnerability advisory on the Play website: