You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@ofbiz.apache.org by jl...@apache.org on 2019/09/13 07:41:23 UTC
svn propchange: r1866837 - svn:log
Author: jleroux
Revision: 1866837
Modified property: svn:log
Modified: svn:log at Fri Sep 13 07:41:23 2019
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Fri Sep 13 07:41:23 2019
@@ -5,10 +5,11 @@ r1866834 | jleroux | 2019-09-12 09:49:41
Improved: Improve ObjectInputStream class
(OFBIZ-10837)
+Fixes CVE-2019-0189
+
Allows users to easily override the list of accepted objects by using the
listOfSafeObjectsForInputStream property
CVE-2019-0189
------------------------------------------------------------------------
-