This is an automated email from the ASF dual-hosted git repository.
jleroux pushed a commit to branch trunk
in repository https://gitbox.apache.org/repos/asf/ofbiz-plugins.git
The following commit(s) were added to refs/heads/trunk by this push:
new 4867a348a Improved: Disable the Birt component in all branches
(including trunk) because of CVE-2022-25371 (OFBIZ-12824)
4867a348a is described below
commit 4867a348a8715027996b023dcec9df599ff8628d
Author: Jacques Le Roux <[email protected]>
AuthorDate: Sun Mar 1 11:38:23 2026 +0100
Improved: Disable the Birt component in all branches (including trunk)
because of CVE-2022-25371 (OFBIZ-12824)
Improves birt.adoc by adding a reference to wiki where a link explains how
to maybe handle it, if really needed.
---
birt/src/docs/asciidoc/birt.adoc | 2 ++
1 file changed, 2 insertions(+)
diff --git a/birt/src/docs/asciidoc/birt.adoc b/birt/src/docs/asciidoc/birt.adoc
index b5851b5fb..4655bdff6 100644
--- a/birt/src/docs/asciidoc/birt.adoc
+++ b/birt/src/docs/asciidoc/birt.adoc
@@ -37,6 +37,8 @@
image:https://img.shields.io/badge/License-Apache%202.0-blue.svg[link="http://ww
The birt plugin is one of the OFBiz plugins.
== OFBiz Flexible Reports
+https://cwiki.apache.org/confluence/pages/viewpage.action?pageId=24183946#UsingBIRTwithOFBiz-TheBirtcomponentisdisabledbydefaultinallbranches(includingtrunk)since18.12.06becauseofCVE-2022-25371,pleasecheck![The
Birt component is disabled by default in all branches (including trunk) since
18.12.06 because of CVE-2022-25371, please check !]
+
One of the functionalities of the birt plugin are the "OFBiz Flexible Reports"
There is an announce with some history in the OFBiz blog: