This is an automated email from the ASF dual-hosted git repository. jleroux pushed a commit to branch master in repository https://gitbox.apache.org/repos/asf/ofbiz-site.git
The following commit(s) were added to refs/heads/master by this push: new 944073f Fixed: [SECURITY: CVE-2023-51467] Replaced direct null checks on username, password, and token with UtilValidate.isEmpty() method calls for consistency.(OFBIZ-12873) 944073f is described below commit 944073ffd6918456a6b364bcbe4b27af765d5acf Author: Jacques Le Roux <jacques.le.r...@les7arts.com> AuthorDate: Sun Jan 7 09:03:49 2024 +0100 Fixed: [SECURITY: CVE-2023-51467] Replaced direct null checks on username, password, and token with UtilValidate.isEmpty() method calls for consistency.(OFBIZ-12873) In "List of Known Vulnerabilities" 1st line replaces CVE-2023-50968 by CVE-2023-51467 and separates links to d8b097f and 1dcfa07180 commit by a space to a correct access Also a large bunch of formatting, mostly for "Donations" link. Done by ./php2html.sh, I just changed security page --- 404.html | 2 +- about-ofbiz.html | 2 +- business-users.html | 2 +- developers.html | 2 +- download.html | 2 +- faqs.html | 2 +- getting-involved.html | 2 +- index.html | 2 +- mailing-lists.html | 2 +- ofbiz-demos.html | 2 +- release-notes-12.04.06.html | 2 +- release-notes-13.07.01.html | 2 +- release-notes-13.07.02.html | 2 +- release-notes-13.07.03.html | 2 +- release-notes-16.11.01.html | 2 +- release-notes-16.11.02.html | 2 +- release-notes-16.11.03.html | 2 +- release-notes-16.11.04.html | 2 +- release-notes-16.11.05.html | 2 +- release-notes-16.11.06.html | 2 +- release-notes-16.11.07.html | 2 +- release-notes-17.12.01.html | 2 +- release-notes-17.12.03.html | 2 +- release-notes-17.12.04.html | 2 +- release-notes-17.12.05.html | 2 +- release-notes-17.12.06.html | 2 +- release-notes-17.12.07.html | 2 +- release-notes-17.12.08.html | 2 +- release-notes-17.12.09.html | 2 +- release-notes-18.12.01.html | 2 +- release-notes-18.12.02.html | 2 +- release-notes-18.12.03.html | 2 +- release-notes-18.12.04.html | 2 +- release-notes-18.12.05.html | 2 +- release-notes-18.12.06.html | 2 +- release-notes-18.12.07.html | 2 +- release-notes-18.12.08.html | 2 +- release-notes-18.12.09.html | 2 +- release-notes-18.12.10.html | 2 +- release-notes-18.12.11.html | 2 +- security.html | 10 +++++----- service-providers.html | 2 +- source-repositories.html | 2 +- template/page/security.tpl.php | 2 +- user-stories.html | 2 +- 45 files changed, 49 insertions(+), 49 deletions(-) diff --git a/404.html b/404.html index 7657f31..8950c64 100644 --- a/404.html +++ b/404.html @@ -192,7 +192,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/about-ofbiz.html b/about-ofbiz.html index 0f2c824..9ebb1a7 100644 --- a/about-ofbiz.html +++ b/about-ofbiz.html @@ -227,7 +227,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/business-users.html b/business-users.html index 97c4187..a24b1f5 100644 --- a/business-users.html +++ b/business-users.html @@ -377,7 +377,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/developers.html b/developers.html index 52647b2..0ad8ee7 100644 --- a/developers.html +++ b/developers.html @@ -345,7 +345,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/download.html b/download.html index 7dacbd9..762e9dd 100644 --- a/download.html +++ b/download.html @@ -377,7 +377,7 @@ available <a href="security.html">here</a></p> <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/faqs.html b/faqs.html index e98b936..05e1483 100644 --- a/faqs.html +++ b/faqs.html @@ -234,7 +234,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/getting-involved.html b/getting-involved.html index 7092b2b..7e1cfdf 100644 --- a/getting-involved.html +++ b/getting-involved.html @@ -285,7 +285,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/index.html b/index.html index 4fc0ef0..533dc8d 100644 --- a/index.html +++ b/index.html @@ -387,7 +387,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/mailing-lists.html b/mailing-lists.html index 949a675..d4d35e7 100644 --- a/mailing-lists.html +++ b/mailing-lists.html @@ -279,7 +279,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/ofbiz-demos.html b/ofbiz-demos.html index 1be9a1e..5f25742 100644 --- a/ofbiz-demos.html +++ b/ofbiz-demos.html @@ -253,7 +253,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-12.04.06.html b/release-notes-12.04.06.html index e17998b..920a93b 100644 --- a/release-notes-12.04.06.html +++ b/release-notes-12.04.06.html @@ -394,7 +394,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-13.07.01.html b/release-notes-13.07.01.html index 9be32ff..750ecfb 100644 --- a/release-notes-13.07.01.html +++ b/release-notes-13.07.01.html @@ -270,7 +270,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-13.07.02.html b/release-notes-13.07.02.html index c29c003..e0aeeca 100644 --- a/release-notes-13.07.02.html +++ b/release-notes-13.07.02.html @@ -339,7 +339,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-13.07.03.html b/release-notes-13.07.03.html index 685c81b..b43c8df 100644 --- a/release-notes-13.07.03.html +++ b/release-notes-13.07.03.html @@ -302,7 +302,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.01.html b/release-notes-16.11.01.html index 8231c6e..a9781f8 100644 --- a/release-notes-16.11.01.html +++ b/release-notes-16.11.01.html @@ -2097,7 +2097,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.02.html b/release-notes-16.11.02.html index 6624cff..7956249 100644 --- a/release-notes-16.11.02.html +++ b/release-notes-16.11.02.html @@ -248,7 +248,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.03.html b/release-notes-16.11.03.html index 2803f21..b1e4f6d 100644 --- a/release-notes-16.11.03.html +++ b/release-notes-16.11.03.html @@ -212,7 +212,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.04.html b/release-notes-16.11.04.html index 25ea8ac..09cbefb 100644 --- a/release-notes-16.11.04.html +++ b/release-notes-16.11.04.html @@ -274,7 +274,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.05.html b/release-notes-16.11.05.html index 51d3303..49bd605 100644 --- a/release-notes-16.11.05.html +++ b/release-notes-16.11.05.html @@ -266,7 +266,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.06.html b/release-notes-16.11.06.html index 25e3ed4..c06cf34 100644 --- a/release-notes-16.11.06.html +++ b/release-notes-16.11.06.html @@ -430,7 +430,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-16.11.07.html b/release-notes-16.11.07.html index 6476dc3..bbe096f 100644 --- a/release-notes-16.11.07.html +++ b/release-notes-16.11.07.html @@ -242,7 +242,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.01.html b/release-notes-17.12.01.html index bf71ba1..b51bd12 100644 --- a/release-notes-17.12.01.html +++ b/release-notes-17.12.01.html @@ -2054,7 +2054,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.03.html b/release-notes-17.12.03.html index ae1e588..13ba418 100644 --- a/release-notes-17.12.03.html +++ b/release-notes-17.12.03.html @@ -238,7 +238,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.04.html b/release-notes-17.12.04.html index ac3766c..1f1f407 100644 --- a/release-notes-17.12.04.html +++ b/release-notes-17.12.04.html @@ -282,7 +282,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.05.html b/release-notes-17.12.05.html index 88abcbf..442ead7 100644 --- a/release-notes-17.12.05.html +++ b/release-notes-17.12.05.html @@ -316,7 +316,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.06.html b/release-notes-17.12.06.html index eeaa683..c5a5448 100644 --- a/release-notes-17.12.06.html +++ b/release-notes-17.12.06.html @@ -234,7 +234,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.07.html b/release-notes-17.12.07.html index 206a8e7..3b4abe9 100644 --- a/release-notes-17.12.07.html +++ b/release-notes-17.12.07.html @@ -221,7 +221,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.08.html b/release-notes-17.12.08.html index 4308622..c5daf31 100644 --- a/release-notes-17.12.08.html +++ b/release-notes-17.12.08.html @@ -191,7 +191,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-17.12.09.html b/release-notes-17.12.09.html index 7eb615c..43d7df6 100644 --- a/release-notes-17.12.09.html +++ b/release-notes-17.12.09.html @@ -191,7 +191,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.01.html b/release-notes-18.12.01.html index e2fae03..bb3bf5d 100644 --- a/release-notes-18.12.01.html +++ b/release-notes-18.12.01.html @@ -1398,7 +1398,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.02.html b/release-notes-18.12.02.html index 1282203..7af7d36 100644 --- a/release-notes-18.12.02.html +++ b/release-notes-18.12.02.html @@ -207,7 +207,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.03.html b/release-notes-18.12.03.html index 5ef8055..5e6ae63 100644 --- a/release-notes-18.12.03.html +++ b/release-notes-18.12.03.html @@ -202,7 +202,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.04.html b/release-notes-18.12.04.html index da24e2c..ec5620c 100644 --- a/release-notes-18.12.04.html +++ b/release-notes-18.12.04.html @@ -206,7 +206,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.05.html b/release-notes-18.12.05.html index 68a2738..7385ea8 100644 --- a/release-notes-18.12.05.html +++ b/release-notes-18.12.05.html @@ -218,7 +218,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.06.html b/release-notes-18.12.06.html index 7dee16e..e548337 100644 --- a/release-notes-18.12.06.html +++ b/release-notes-18.12.06.html @@ -299,7 +299,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.07.html b/release-notes-18.12.07.html index 3638b81..b9b23e9 100644 --- a/release-notes-18.12.07.html +++ b/release-notes-18.12.07.html @@ -200,7 +200,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.08.html b/release-notes-18.12.08.html index 7167b00..6d31da3 100644 --- a/release-notes-18.12.08.html +++ b/release-notes-18.12.08.html @@ -200,7 +200,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.09.html b/release-notes-18.12.09.html index 5979037..b5a1234 100644 --- a/release-notes-18.12.09.html +++ b/release-notes-18.12.09.html @@ -219,7 +219,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.10.html b/release-notes-18.12.10.html index 01a3447..794eff8 100644 --- a/release-notes-18.12.10.html +++ b/release-notes-18.12.10.html @@ -207,7 +207,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/release-notes-18.12.11.html b/release-notes-18.12.11.html index 9c7fc8c..4adbe51 100644 --- a/release-notes-18.12.11.html +++ b/release-notes-18.12.11.html @@ -200,7 +200,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/security.html b/security.html index bb9f65d..9392e49 100644 --- a/security.html +++ b/security.html @@ -82,7 +82,7 @@ </li> <li><a href="#" class="firstLevel">Community</a> <ul> - <li><a href="getting-involved.html">Getting Involved</a></li> + <li><a href="getting-involved.html">Getting Involved</a></li> <li><a href="mailing-lists.html">Mailing Lists</a></li> <li><a href="source-repositories.html">Source Repository</a></li> <li><a href="download.html">Downloads</a></li> @@ -138,18 +138,18 @@ <strong> <a href="https://s.apache.org/dsj2p"> Rather create bugs reports in our issue tracker (Jira) for that.</a><span style="color:red"> Please don't create Jira issues for unauth (aka pre-auth) reports, thanks in advance.</span></strong></p> <p>One of the reason we no longer create CVEs for post-auth attacks done using demo credentials is because - <a href="https://nightlies.apache.org/ofbiz/trunk/readme/html5/README.html#security"> we highly suggest to OFBiz users to not use credentials demo in production</a> + <a href="https://nightlies.apache.org/ofbiz/trunk/readme/html5/README.html#security" target="external"> we highly suggest to OFBiz users to not use credentials demo in production</a> and we expect OFBiz users to do so. <a href="https://cwiki.apache.org/confluence/display/OFBIZ/Keeping+OFBiz+secure" target="external"> We also warn our users on the "Keeping OFBiz secure wiki page".</a> And finally, mostly we reject post-auth vulnerabilities because we have a solid CSRF defense.</p> <h3>List of Known Vulnerabilities</h3> <ul class="iconsList"> - <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-51467" target="external">CVE-2023-50968</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://github.com/apache/ofbiz-framework/commit/d8b097f" target="external">d8b097f</a>,<a href="https://github.com/apache/ofbiz-framework/commit/1dcfa07180" target="external">1dcfa07180</a> </li> + <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-51467" target="external">CVE-2023-51467</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://github.com/apache/ofbiz-framework/commit/d8b097f" target="external">d8b097f</a>, <a href="https://github.com/apache/ofbiz-framework/commit/1dcfa07180" target="external">1dcfa07180</a> </li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-50968" target="external">CVE-2023-50968</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=82c1737688" target="external">82c1737688</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-49070" target="external">CVE-2023-49070</a>; affected release 18.12.09; fixed in 18.12.10 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=c59336f604" target="external">c59336f604</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-46819" target="external">CVE-2023-46819</a>; affected release 18.12.08; fixed in 18.12.09 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-plugins.git;h=998bf510a" target="external">998bf510a</a></li> - <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-47501" target="external">CVE-2022-47501</a>; affected release 18.12.07; fixed in 18.12.08 with commit <a href="https://github.com/apache/ofbiz-plugins/commit/41ff12cf8" target="external">41ff12cf8</a></li> + <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-25371" target="external">CVE-2022-25371</a>; affected release 18.12.07; fixed in 18.12.08 with commit <a href="https://github.com/apache/ofbiz-plugins/commit/41ff12cf8" target="external">41ff12cf8</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-47501" target="external">CVE-2022-47501</a>; affected releases before 18.12.07; fixed in 18.12.07 with commit <a href="https://github.com/apache/ofbiz-plugins/commit/582add7d3" target="external">582add7d3</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-25813" target="external">CVE-2022-25813</a>; affected releases before 18.12.06; fixed in 18.12.06 with commits <a href="https://github.com/apache/ofbiz-framework/commit/843b1c7e71" target="external">843b1c7e71</a>, <a href="https://github.com/apache/ofbiz-framework/commit/3797e60375" target="external">3797e60375</a>, <a href="https://github.com/apache/ofbiz-framework/commit/b24dcff344" [...] <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29063" target="external">CVE-2022-29063</a>; affected releases before 18.12.06; fixed in 18.12.06 with commit <a href="https://github.com/apache/ofbiz-plugins/commit/061252a80" target="external">061252a80</a></li> @@ -248,7 +248,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/service-providers.html b/service-providers.html index edf45b1..94a51a1 100644 --- a/service-providers.html +++ b/service-providers.html @@ -359,7 +359,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/source-repositories.html b/source-repositories.html index 869fd02..9573d46 100644 --- a/source-repositories.html +++ b/source-repositories.html @@ -274,7 +274,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li> diff --git a/template/page/security.tpl.php b/template/page/security.tpl.php index 1c3f66f..cc45756 100644 --- a/template/page/security.tpl.php +++ b/template/page/security.tpl.php @@ -34,7 +34,7 @@ <h3>List of Known Vulnerabilities</h3> <ul class="iconsList"> - <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-51467" target="external">CVE-2023-50968</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://github.com/apache/ofbiz-framework/commit/d8b097f" target="external">d8b097f</a>,<a href="https://github.com/apache/ofbiz-framework/commit/1dcfa07180" target="external">1dcfa07180</a> </li> + <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-51467" target="external">CVE-2023-51467</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://github.com/apache/ofbiz-framework/commit/d8b097f" target="external">d8b097f</a>, <a href="https://github.com/apache/ofbiz-framework/commit/1dcfa07180" target="external">1dcfa07180</a> </li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-50968" target="external">CVE-2023-50968</a>; affected release before 18.12.10; fixed in 18.12.11 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=82c1737688" target="external">82c1737688</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-49070" target="external">CVE-2023-49070</a>; affected release 18.12.09; fixed in 18.12.10 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=c59336f604" target="external">c59336f604</a></li> <li><i class="icon-pin"></i> <a href="//cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-46819" target="external">CVE-2023-46819</a>; affected release 18.12.08; fixed in 18.12.09 with commit <a href="https://gitbox.apache.org/repos/asf?p=ofbiz-plugins.git;h=998bf510a" target="external">998bf510a</a></li> diff --git a/user-stories.html b/user-stories.html index 84ed253..b8a7b7c 100644 --- a/user-stories.html +++ b/user-stories.html @@ -236,7 +236,7 @@ <li><a href="https://privacy.apache.org/policies/privacy-policy-public.html" target="external">Privacy Policy</a></li> <li><a href="https://www.apache.org/events/current-event" target="external">Events</a></li> <li><a href="https://www.apache.org/foundation/sponsorship.html" target="external">Sponsorship</a> - and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> + and <a href="https://www.apache.org/foundation/contributing.html" target="external">Donations</a> </li> <li><a href="https://www.apache.org/foundation/thanks.html" target="external">Thanks</a></li> <li><a href="https://ofbiz.apache.org/security.html">Security</a></li>