[CVE-2021-37608] Arbitrary file upload vulnerability in OFBiz

2021-08-11 Thread jler...@apache.org
Severity: High, possible RCE Vendor: The Apache Software Foundation Versions Affected: OFBiz versions prior to 17.12.08 Description: Apache OFBiz has unsafe deserialization prior to 17.12.08 version Mitigation: Upgrade to at least 17.12.08 or apply patches at https://issues.apache.org/jira/bro

[ANNOUNCE] Apache OFBiz 17.12.08 released

2021-08-11 Thread Jacopo Cappellato
The Apache OFBiz community is pleased to announce the new release "Apache OFBiz 17.12.08". Apache OFBiz® is an open source product for the automation of enterprise processes that includes framework components and business applications. http://ofbiz.apache.org/ "Apache OFBiz 17.12.08" is the eigh

[ANNOUNCE] Apache Pulsar 2.7.3 released

2021-08-11 Thread 丛搏
The Apache Pulsar team is proud to announce Apache Pulsar version 2.7.3. Pulsar is a highly scalable, low latency messaging platform running on commodity hardware. It provides simple pub-sub semantics over topics, guaranteed at-least-once delivery of messages, automatic cursor management for subsc

[ANNOUNCE] Apache Hop (Incubating) 0.99 released

2021-08-11 Thread Bart Maertens
The Hop PMC is pleased to announce the release of Apache Hop 0.99. The Hop Orchestration Platform, or Apache Hop (Incubating), aims to facilitate all aspects of data and metadata orchestration. Hop is an entirely new open source data integration platform that is easy to use, fast and flexible. H