I am experiencing a session data crossover issue (immediately after logging on to the application, user A views the session data of user B). I have investigated the issue up to a particular point - by also adding some pertinent logging to the application - and it appears that, while the session is correctly populated with the user data and the servlet/POJO level, *after forwarding to the JSP, the JSP grabs a wrong session....* ??
Please note that this is an application that run for four (4) years now in production, and the problem starting occurring without any change is the session management code of the app... Could it be a caching issue? It happen non-deterministically to *some* users...
The relevant code snippets are as follows:
[ May 25, 2007: Message edited by: Bear Bibeault ]
You have omitted important information from your servlet. Does the ControllerServlet maintain state ie does it have any instance variables? If so, those variables are getting shared between requests and must be removed.