The GitHub Actions job "gradle in /. - Update #1347502832" on 
ofbiz-framework.git/release24.09 has failed.
Run started by GitHub user dependabot[bot] (triggered by dependabot[bot]).

Head commit for run:
3965d658f933b7c3c686382b5d296c3ee578b502 / Jacopo Cappellato 
<[email protected]>
Fixed: Prevent arbitrary file read/write in entityImport and entityExportAll

Paths in both methods are now guarded by 
SecurityUtil.checkOfbizFileAllowList(), which restricts paths to the 
directories configured in content.data.ofbiz.file.allowed.paths 
(security.properties).

(cherry picked from commit 15c1956ab824421949b8feb71845295b795c93b8)

Report URL: https://github.com/apache/ofbiz-framework/actions/runs/25333507147

With regards,
GitHub Actions via GitBox

Reply via email to