Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
1.2.6, 1.5.0
-
None
Description
Non-Servlet Session contexts don't get properly destroyed.
We allow @SessionScoped to be created for non-web requests as well (giving them a 'dummy-session'). But we currently do not properly destroy them in this case. The WebContextsService#destroySessionContext currently just cleans up the SessionContext if a HttpSession gets used.
This will create a mem leak for non-servlet sessions