[CVE-2020-9496] Apache OFBiz unsafe deserialization of XMLRPC arguments

2020-11-16 Thread Scott Gray
Hi everyone, I was recently made aware of an attack on an OFBiz deployment using the vulnerability described below. The attackers were able to exploit the xmlrpc endpoint to initiate a full export of the database. Fortunately this deployment had an extremely large database and the attempt set

Re: ecommerce - custom categories menu item in header

2020-11-16 Thread Jason RJ
Hi Mike, Take a look at ecommerce/template/catalog/SideDeepCategory.ftl there's a macro there that has everything you need. We adapted that to build our menus for us, the wrappers are attached to the context in the related groovy files. Hope that helps. Jason On 16/11/2020 11:34, mike

ecommerce - custom categories menu item in header

2020-11-16 Thread mike Butler
I am customising the main decorator for ecommerce and have a Header.ftl which includes dropdown menus and I am working on a dropdown menu for categories. What I have tried so far: For the categories menu I have included ProductCategories.groovy as an action in the main-decorator (as used in

Re: Shorten the order fulfillment processs

2020-11-16 Thread Jacques Le Roux
Hi Georg, You can get the same locally by using gradlew loadAll ofbiz then  getting to https://localhost:8443/ordermgr/control/orderentry and following the order entry wizard (tunnel of screens) HTH Jacques Le 16/11/2020 à 08:03, Georg Potthast a écrit : Hi Jacques, I wanted to look