Jacques Le Roux created OFBIZ-11949:
---------------------------------------
Summary: Local File Inclusion vulnerability
Key: OFBIZ-11949
URL: https://issues.apache.org/jira/browse/OFBIZ-11949
Project: OFBiz
Issue Type: Sub-task
Components: content
Affects Versions: 17.12.04, Trunk, 18.12.01
Reporter: Jacques Le Roux
Harshit Shukla [email protected] this LFI vulnerability to the
OFBiz security team, and we thank him for that.
I'll later quote here his email message when the vulnerability will be fixed.
It's a post-auth vulnerability so we did not ask for a CVE.
--
This message was sent by Atlassian Jira
(v8.3.4#803005)