on spring and security

I have a dream that one day the Spring Framework will add “secure by default” to its list of fundamental design principles.

Source (dead link – http://shh.thathost.com/secadv/spring-form-xss/)