This is an automated email from the ASF dual-hosted git repository.
jleroux pushed a change to branch release17.12
in repository https://gitbox.apache.org/repos/asf/ofbiz-framework.git.
from cf936d6 Fixed: The createTaskContent request does not work
new 27e5752 Merge branch 'JacquesLeRoux-POC-for-CSRF-Token-OFBIZ-11306'
into trunk Because of GitHub message on PR56: This branch cannot be rebased due
to conflicts
new 84e102a Revert "Merge branch
'JacquesLeRoux-POC-for-CSRF-Token-OFBIZ-11306' into trunk"
new 793628b Fixed: Prevent Host Header Injection (CVE-2019-12425)
The 3 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails. The revisions
listed as "add" were already present in the repository and have only
been added to this reference.
Summary of changes:
.../src/main/java/org/apache/ofbiz/base/util/UtilMisc.java | 13 +++++++++++++
framework/security/config/security.properties | 6 +++++-
.../org/apache/ofbiz/webapp/control/RequestHandler.java | 10 ++++++++++
3 files changed, 28 insertions(+), 1 deletion(-)