airajena commented on code in PR #53: URL: https://github.com/apache/fineract-site/pull/53#discussion_r2844709774
########## site-src/content/security.md: ########## @@ -17,84 +23,84 @@ specific language governing permissions and limitations under the License. <!-- -⚠️ DO NOT EDIT security.html DIRECTLY, EDIT src/security/security.md INSTEAD ⚠️ +⚠️ DO NOT EDIT GENERATED OUTPUT DIRECTLY, EDIT site-src/content/security.md INSTEAD ⚠️ --> -This page lists all security vulnerabilities fixed in released versions of Apache Fineract. Each vulnerability is reported via [the ASF process](http://www.apache.org/security/) and given a security impact rating. +This page lists all security vulnerabilities fixed in released versions of Apache Fineract®. Each vulnerability is reported via [the ASF process](http://www.apache.org/security/) and given a security impact rating. -If you have identified a security issue, let us know immediately via email to security AT fineract.apache.org. And be sure to [secure your Fineract server](https://fineract.apache.org/docs/current/#_securing_fineract)! +If you have identified a security issue, let us know immediately via email to security AT fineract.apache.org. And be sure to [secure your Fineract® server](https://fineract.apache.org/docs/current/#_securing_fineract)! -## Fixed in Apache Fineract 1.12.1 +## Fixed in Apache Fineract® 1.12.1 {#fixed-in-apache-fineract-1.12.1} ### [CVE-2025-58137](https://www.cve.org/CVERecord?id=CVE-2025-58137): auth bypass through user-controlled key -Authorization Bypass Through User-Controlled Key vulnerability in Apache Fineract. +Authorization Bypass Through User-Controlled Key vulnerability in Apache Fineract®. Review Comment: sure , will move CVE records into structured data and render with a template loop. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
