The GitHub Actions job "npm_and_yarn in 
/themes/common-theme/webapp/common-theme/js - Update #1347491513" on 
ofbiz-framework.git/trunk has succeeded.
Run started by GitHub user dependabot[bot] (triggered by dependabot[bot]).

Head commit for run:
15c1956ab824421949b8feb71845295b795c93b8 / Jacopo Cappellato 
<[email protected]>
Fixed: Prevent arbitrary file read/write in entityImport and entityExportAll

Paths in both methods are now guarded by 
SecurityUtil.checkOfbizFileAllowList(), which restricts paths to the 
directories configured in content.data.ofbiz.file.allowed.paths 
(security.properties).

Report URL: https://github.com/apache/ofbiz-framework/actions/runs/25333066297

With regards,
GitHub Actions via GitBox

Reply via email to