CVE-2019-10085 Apache Allura XSS vulnerability

2019-06-19 Thread Dave Brondsema
CVE-2019-10085 Apache Allura XSS vulnerability in ticket user dropdown selector Severity: Important Versions Affected: 1.10.0 and earlier Description: A vulnerability exists for stored XSS on the user dropdown selector when creating or editing tickets. The XSS executes when a user engages with

[ANNOUNCE] Apache Allura 1.11.0 released

2019-06-19 Thread Dave Brondsema
The Apache Allura team is pleased to announce the release of Apache Allura 1.11.0 Allura is an open source implementation of a software forge, a web site that manages source code repositories, bug reports, discussions, wiki pages, blogs, and more for any number of individual projects. The