[ANNOUNCE] Apache Traffic Server v8.0.2 is Released!

2019-01-30 Thread Bryan Call
Apache Traffic Server v8.0.2 Released The Apache Software Foundation and the Apache Traffic Server (ATS) project are pleased to announce the release of Apache Traffic Server v8.0.2! ATS is a high performance, scalable HTTP Intermediary and proxy cache. It is used by several large internet servi

[ANNOUNCE] Apache JSPWiki 2.11.0.M1 released

2019-01-30 Thread Juan Pablo Santos Rodríguez
The Apache JSPWiki team is pleased to announce the release of JSPWiki 2.11.0.M1. This is the first release towards the 2.11 series of Apache JSPWiki, a feature-rich and extensible WikiWiki engine built around the standard JEE components. M# releases are as production-ready as any other JSPWiki rel

[CVE-2018-20242] Apache JSPWiki Cross-site scripting vulnerability on Apache JSPWiki

2019-01-30 Thread Juan Pablo Santos Rodríguez
Severity: Medium Vendor: The Apache Software Foundation Versions Affected: Apache JSPWiki up to 2.10.5 Description: A carefully crafted URL could trigger an XSS vulnerability on Apache JSPWiki, which could lead to session hijacking. Mitigation: Apache JSPWiki users should upgrade to 2.11.0.M1