This is an automated email from the ASF dual-hosted git repository. jleroux pushed a change to branch release18.12 in repository https://gitbox.apache.org/repos/asf/ofbiz-framework.git.
from 6da27fd Fixed: Secure the uploads (OFBIZ-12080) new 34d68d5 Improved: Reflected XSS in content component (OFBIZ-11840) new 247b871 Fixed: Stored XSS in webappPath parameter from content/control/EditWebSite (OFBIZ-12584) The 2 revisions listed above as "new" are entirely new to this repository and will be described in separate emails. The revisions listed as "add" were already present in the repository and have only been added to this reference. Summary of changes: .../org/apache/ofbiz/content/data/DataEvents.java | 16 ++++++++++---- framework/security/config/security.properties | 13 ++++++++--- .../ofbiz/service/engine/EntityAutoEngine.java | 25 +++++++++++++++++++++- 3 files changed, 46 insertions(+), 8 deletions(-)