Apache OpenMeetings 1.0.0 responds to the following insecure HTTP methods: PUT, DELETE, HEAD, and PATCH. References https://nvd.nist.gov/vuln/detail/CVE-2017-7685 http://markmail.org/message/uxk4bpq35svnyjhb http://www.securityfocus.com/bid/99592 https://github.com/advisories/GHSA-2c3p-9j5f-33g3