This is an automated email from the ASF dual-hosted git repository.
jleroux pushed a change to branch trunk
in repository https://gitbox.apache.org/repos/asf/ofbiz-framework.git.
from e3e12ee Improved: No need to specify externalKeyParam in ofbizUrl
calls (OFBIZ-11711)
new a6e8b05 Improved: Prevent FreeMarker Template Injection (SSTI)
new 11905d8 Improved: Convert deactivateAllContentRoles service from
mini-lang to groovy DSL
The 2 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails. The revisions
listed as "add" were already present in the repository and have only
been added to this reference.
Summary of changes:
.../groovyScripts/content/ContentServices.groovy | 20 +++++++++++++++++++-
.../content/minilang/content/ContentServices.xml | 13 -------------
applications/content/servicedef/services_content.xml | 4 ++--
.../ofbiz/base/util/template/FreeMarkerWorker.java | 11 ++++++++++-
framework/security/config/security.properties | 9 +++++++++
5 files changed, 40 insertions(+), 17 deletions(-)