Security Advisories Dear reader,
The following security fix/es was/were made: OTRS Security Advisory 2021-08 ID: OSA-2021-08 Date: 2021-03-22 Title: FAQ articles are shown to users without permission Severity: 3.5 LOW Product: OTRS 7.0.24, and FAQ 6.0.29 Fixed in: OTRS 7.0.25 FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N References: CVE-2021-21438 OTRS Security Advisory 2021-07 ID: OSA-2021-07 Date: 2021-03-22 Title: Config Items are shown to users without permission Severity: 3.5 LOW Product: ITSMConfigurationManagement 7.0.24 and OTRSCIsInCustomerFrontend 7.0.15 Fixed in: ITSMConfigurationManagement 7.0.25 and OTRSCIsInCustomerFrontend 7.0.16 FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N References: CVE-2021-21437 OTRS Security Advisory 2021-06 ID: OSA-2021-06 Date: 2021-03-22 Title: ReDoS vulnerability in thirdparty library (jquery-validate) Severity: 5.3 MEDIUM Product: OTRS 8.0.x, OTRS 7.0.x, OTRS 6.0.x Fixed in: OTRS 8.0.12, OTRS 7.0.25 FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L References: CVE-2021-21252 To read the entire Security Advisory/Advisories, please follow this link: https://otrs.com/overview-release-notes-security-advisories/security-advisories/ <https://pg183.infusion-links.com/api/v1/click/4694369516519424/4571472390520832> Kind regards, Your OTRS release team Subscribe to the OTRS Newsletter. Read about OTRS service management solutions, product features, and interesting tips from our experts every month. Simply select your desired language. German <https://pg183.infusion-links.com/api/v1/click/5282244708663296/4571472390520832> English <https://pg183.infusion-links.com/api/v1/click/5685928416378880/4571472390520832> Spanish <https://pg183.infusion-links.com/api/v1/click/4629017965232128/4571472390520832> Portuguese <https://pg183.infusion-links.com/api/v1/click/4676667339046912/4571472390520832> <https://www.facebook.com/OTRSGroup/> <https://twitter.com/otrsgroup> <https://www.linkedin.com/company/154779> <https://www.youtube.com/channel/UCHdOAyuwwkkk5ko_vy0X8_g> <https://www.instagram.com/otrs_group/> Visit www.otrs.com <https://pg183.infusion-links.com/api/v1/click/5564183835443200/4571472390520832> or contact us. <https://pg183.infusion-links.com/api/v1/click/4590304136658944/4571472390520832> OTRS AG Zimmersmühlenweg 11 61440 Oberursel Germany +49 6172 681988 0
smime.p7s
Description: S/MIME cryptographic signature
-- _______________________________________________ announce mailing list -- [email protected] To unsubscribe send an email to [email protected] To manage your subscription or browse the message archive visit: https://lists.otrs.org/postorius/lists/announce.lists.otrs.org/
