Need to add the ability for the SecurityWrapper Filter to be configured.
Also the SecurityWrapper is not clearing the currentRequest and
currentResponse ThreadLocal's which can result in Session Hijacking/Loss
and Request Merging
Original issue reported on code.google.com by chrisisbeef on 5 Dec 2009 at 1:49
Original issue reported on code.google.com by
chrisisbeef
on 5 Dec 2009 at 1:49