[ https://issues.apache.org/jira/browse/OFBIZ-13265?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17985075#comment-17985075 ]
ASF subversion and git services commented on OFBIZ-13265: --------------------------------------------------------- Commit b2c272f586c499ed7a758d0a57e41c6c3de9ca3f in ofbiz-framework's branch refs/heads/release24.09 from Jacques Le Roux [ https://gitbox.apache.org/repos/asf?p=ofbiz-framework.git;h=b2c272f586 ] Fixed: Update Apache commons-fileupload to last version (CVE-2025-48976) (OFBIZ-13265) https://lists.apache.org/thread/mqbtql9d0gzmxmdvoj0r6yqj51bofp6m So this is an update to Apache Commons FileUpload 1.6.0 > Update Apache commons-fileupload to last version (CVE-2025-48976) > ----------------------------------------------------------------- > > Key: OFBIZ-13265 > URL: https://issues.apache.org/jira/browse/OFBIZ-13265 > Project: OFBiz > Issue Type: Bug > Components: content, framework > Affects Versions: 24.09.01 > Reporter: Jacques Le Roux > Assignee: Jacques Le Roux > Priority: Major > > [https://lists.apache.org/thread/mqbtql9d0gzmxmdvoj0r6yqj51bofp6m] > -So this is an update to Apache Commons FileUpload 2.0.0-M4- (trunk not > concerned) > So this is an update to Apache Commons FileUpload 1.6.0 (24.09 concerned) -- This message was sent by Atlassian Jira (v8.20.10#820010)