[ 
https://issues.apache.org/jira/browse/OFBIZ-13265?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17985075#comment-17985075
 ] 

ASF subversion and git services commented on OFBIZ-13265:
---------------------------------------------------------

Commit b2c272f586c499ed7a758d0a57e41c6c3de9ca3f in ofbiz-framework's branch 
refs/heads/release24.09 from Jacques Le Roux
[ https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=b2c272f586 ]

Fixed: Update Apache commons-fileupload to last version (CVE-2025-48976) 
(OFBIZ-13265)

https://lists.apache.org/thread/mqbtql9d0gzmxmdvoj0r6yqj51bofp6m

So this is an update to Apache Commons FileUpload 1.6.0


> Update Apache commons-fileupload to last version (CVE-2025-48976)
> -----------------------------------------------------------------
>
>                 Key: OFBIZ-13265
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-13265
>             Project: OFBiz
>          Issue Type: Bug
>          Components: content, framework
>    Affects Versions: 24.09.01
>            Reporter: Jacques Le Roux
>            Assignee: Jacques Le Roux
>            Priority: Major
>
> [https://lists.apache.org/thread/mqbtql9d0gzmxmdvoj0r6yqj51bofp6m]
> -So this is an update to Apache Commons FileUpload 2.0.0-M4- (trunk not 
> concerned)
> So this is an update to Apache Commons FileUpload 1.6.0 (24.09 concerned)



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to