With two successful votes (4-0):

http://mail-archives.apache.org/mod_mbox/ws-juddi-dev/200907.mbox/%[email protected]%3e

http://mail-archives.apache.org/mod_mbox/ws-juddi-dev/200908.mbox/%[email protected]%3e

we have released jUDDI 2.0 and 2.0.1.

Users are encouraged to upgrade as the releases contain fixes for two potential security issues:

JUDDI-220
"log-injection"
http://issues.apache.org/jira/browse/JUDDI-220
CVE-2009-1197

JUDDI-221
Escape dsname parameter
http://issues.apache.org/jira/browse/JUDDI-221
CVE-2009-1198

Thanks!

The Apache jUDDI Team

Reply via email to