0001-set-UTF-8-as-default-character-encoding.patch
0002-do-not-load-AJP13-connector-by-default.patch
0003-disable-APR-library-loading.patch
0004-split-deploy-webapps-target-from-deploy-target.patch
0005-change-default-DBCP-factory-class.patch
0006-add-JARs-below-var-to-class-loader.patch
0007-add-OSGi-headers-to-servlet-api.patch
0008-add-OSGI-headers-to-jsp-api.patch
0010-Use-java.security.policy-file-in-catalina.sh.patch
CVE-2014-0075.patch
CVE-2014-0096.patch
CVE-2014-0099.patch
CVE-2014-0119-1.patch
CVE-2014-0119-2.patch
CVE-2014-0119-3.patch
CVE-2014-0227.patch
CVE-2014-0230.patch
CVE-2014-7810-1.patch
CVE-2014-7810-2.patch
CVE-2015-5174.patch
CVE-2015-5345-1.patch
CVE-2015-5345-2.patch
CVE-2015-5351-1.patch
CVE-2015-5351-2.patch
CVE-2016-0706.patch
CVE-2016-0714-1.patch
CVE-2016-0714-2.patch
CVE-2016-0762.patch
CVE-2016-0763.patch
