You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@ofbiz.apache.org by jl...@apache.org on 2016/04/08 22:36:46 UTC

svn propchange: r1736085 - svn:log

Author: jleroux
Revision: 1736085
Modified property: svn:log

Modified: svn:log at Fri Apr  8 20:36:46 2016
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Fri Apr  8 20:36:46 2016
@@ -8,5 +8,6 @@ Fixes "Comment out RMI related code beca
 
 We decided to comment out as less as possible because once, in the start and both properties; the rmi part is off and the related test services are off there is no RMI related danger left (test services are not a danger but would fail during tests run). 
 It's then easier for users who need RMI in their projects to have only to uncomment those and not digg everywhere.
+
+[CVE-2016-2170] The infamous Java serialization vulnerability
 ------------------------------------------------------------------------
-