CVE-2022-47501: Apache OFBiz: Arbitrary file reading vulnerability

2023-04-10 Thread Jacques Le Roux
Severity: important Description: Arbitrary file reading vulnerability in Apache Software Foundation Apache OFBiz.This issue affects Apache OFBiz: before 18.12.07. Required Configurations: Using the Solr plugin Solution: Upgrade to release 18.12.07 Credit: Skay (finder) References: https

[ANNOUNCE] Apache OFBiz 18.12.07 released

2023-04-10 Thread Jacopo Cappellato
The Apache OFBiz community is pleased to announce the new release "Apache OFBiz 18.12.07". Apache OFBiz® is an open source product for the automation of enterprise processes that includes framework components and business applications. http://ofbiz.apache.org/ "Apache OFBiz 18.12.07" is the seve

[VOTE] [RESULT] Apache OFBiz 18.12.07

2023-04-10 Thread Jacopo Cappellato
The vote is successful with 8 positive votes, of which 7 binding votes, and no negative votes. Thank you! Jacopo On Mon, Apr 3, 2023 at 9:47 AM Jacopo Cappellato < jacopo.cappell...@gmail.com> wrote: > This is the vote thread to publish "Apache OFBiz 18.12.07", seventh > and probably final relea

Re: [VOTE] Apache OFBiz 18.12.07

2023-04-10 Thread Jacopo Cappellato
+1 Jacopo On Mon, Apr 3, 2023 at 9:47 AM Jacopo Cappellato < jacopo.cappell...@gmail.com> wrote: > This is the vote thread to publish "Apache OFBiz 18.12.07", seventh > and probably final release from the release18.12 branch. > > The release files can be downloaded from here: > https://dist.apac