You are viewing a plain text version of this content. The canonical link for it is here.
Posted to notifications@ofbiz.apache.org by "Jacques Le Roux (JIRA)" <ji...@apache.org> on 2018/12/19 11:54:00 UTC

[jira] [Updated] (OFBIZ-10509) Disable DTDs for XML-RPC requests

     [ https://issues.apache.org/jira/browse/OFBIZ-10509?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jacques Le Roux updated OFBIZ-10509:
------------------------------------
      Environment: Just updated the "Fix Version/s" field
    Fix Version/s:     (was: Release Branch 17.12)
                       (was: Upcoming Branch)
                       (was: Release Branch 16.11)
                   16.11.05
                   17.12.01

> Disable DTDs for XML-RPC requests
> ---------------------------------
>
>                 Key: OFBIZ-10509
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-10509
>             Project: OFBiz
>          Issue Type: Improvement
>    Affects Versions: Release Branch 16.11, Upcoming Branch, Release Branch 17.12
>         Environment: Just updated the "Fix Version/s" field
>            Reporter: Taher Alkhateeb
>            Assignee: Taher Alkhateeb
>            Priority: Major
>             Fix For: 17.12.01, 16.11.05
>
>
> Disable all DTDs in XML-RPC by overriding the parsing code and enforcing stricter settings on the XMLReader



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)