CVE-2023-44313: Apache ServiceComb Service-Center: attacker can perform SSRF through the frontend API

2024-02-01 Thread liubao
Reply-To: d...@servicecomb.apache.org Subject: CVE-2023-44313: Apache ServiceComb Service-Center: attacker can perform SSRF through the frontend API Affected versions: - Apache ServiceComb Service-Center through 2.1.0 Description: Server-Side Request Forgery (SSRF) vulnerability in Apache

[ANNOUNCE] Release Apache Traffic Control 8.0.0

2024-02-01 Thread R S
The Apache Traffic Control team is proud to announce the release of Apache Traffic Control 8.0.0, which contains various new features and bug fixes. Apache Traffic Control allows you to build a large scale content delivery network using open source. Built around Apache Traffic Server as the

CVE-2023-44312: Apache ServiceComb Service-Center: attacker can query all environment variables of the service-center server

2024-02-01 Thread liubao
Reply-To: d...@servicecomb.apache.org Subject: CVE-2023-44312: Apache ServiceComb Service-Center: attacker can query all environment variables of the service-center server Affected versions: - Apache ServiceComb Service-Center through 2.1.0 Description: Exposure of Sensitive Information to

[ANNOUNCE] MyFaces Core v4.0.2 Release

2024-02-01 Thread Volodymyr Siedlecki
The Apache MyFaces team is pleased to announce the release of MyFaces Core 4.0.2. MyFaces Core is a Jakarta Faces implementation specified by Jakarta Faces 4.0 Specification (1). The Faces specification is for building component-based user interfaces for web applications. MyFaces Core 4.0.2

[ANNOUNCE] Apache Camel 4.0.4 (LTS) Release

2024-02-01 Thread Gregor Zurowski
The Camel PMC is pleased to announce the release of Apache Camel 4.0.4. Apache Camel is an open source integration framework that empowers you to quickly and easily integrate various systems consuming or producing data. This is a patch release with 23 improvements and fixes. For more details