SEC-1356: Modify AbstractRememberMeService to check the cookie path as well as the name when extracting it from the incoming request.
This makes things consistent with the cookie setting methods. If someone wants to share a cookie between multiple applications then they should modify the cookie extraction and setting methods to use a less-specific path.
@ -109,6 +109,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@@ -109,6 +109,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@ -120,8 +121,10 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@@ -120,8 +121,10 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@ -129,6 +132,11 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@@ -129,6 +132,11 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@ -295,7 +303,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@@ -295,7 +303,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@ -312,7 +320,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,
@@ -312,7 +320,7 @@ public abstract class AbstractRememberMeServices implements RememberMeServices,