You are viewing the static version of this archive.
For the interactive version, please visit: This page
The Apache ODE team is pleased to announce the release of Apache ODE 1.3.8. It includes 10 bug fixes and improvements. Apache ODE is a WS-BPEL 1.1/2.0 compliant web services orchestration engine. It organizes web services calls following a process description written in the BPEL XML grammar. Anothe...
[this announcement is available online at http://s.apache.org/Opxf ] At The Apache Software Foundation (ASF) Members’ Meeting held this week, the following individuals were elected to the ASF Board of Directors: - Rich Bowen - Shane Curcuru - Bertrand Delacretaz - Isabel Drost-Fromm - Ted D...
[this announcement is available online at https://s.apache.org/IN31 ] It's time to review our weekly activities! The Apache Community has been working on: ASF Board –management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws. - Welcome new ASF...
The Apache Kudu team is happy to announce the release of Kudu 1.7.0. Kudu is an open source storage engine for structured data that supports low-latency random access together with efficient analytical access patterns. It is designed within the context of the Apache Hadoop ecosystem and supports ma...
The Apache Any23 Team is pleased to announce the release of Apache Any23 2.2. *What is Any23?* Anything To Triples (Any23) is a library, a web service and a command line tool that extracts structured data in RDF format from a variety of Web documents. Currently it supports the following input form...
The Apache PDFBox community is pleased to announce the release of Apache PDFBox version 2.0.9. The release is available for download at: http://pdfbox.apache.org/download.cgi See the full release notes below for details about this release. Release Notes -- Apache PDFBox -- Version 2.0.9 Introduc...
Apache HTTP Server 2.4.33 Released March 26, 2018 The Apache Software Foundation and the Apache HTTP Server Project are pleased to announce the release of version 2.4.33 of the Apache HTTP Server ("Apache"). This version of Apache is our latest GA release of the new...
[this announcement is available online at https://s.apache.org/gK4Q ] World's largest Open Source foundation's all-volunteer community makes a difference in the lives of billions of users. [watch "Apache at 19" promo at https://youtu.be/Fqk_rlKiVIs ] Wakefield, MA —26 March 2018— The Apache S...
The Apache Commons Team is pleased to announce the release of Apache Commons Text 1.3. The Apache Commons Text open source software library provides a host of algorithms focused on working with strings and blocks of text. Source and binary distributions are available for download from the Apache C...
The Apache Jackrabbit community is pleased to announce the release of Apache Jackrabbit Oak. The release is available for download at: http://jackrabbit.apache.org/downloads.html See the full release notes below for details about this release: Release Notes -- Apache Jackrabbit Oak -- Vers...
The Apache Struts Team recommends to immediately upgrade your Struts 2 based projects to use the latest released version of Commons FileUpload library, which is currently 1.3.3. This is necessary to prevent your publicly accessible web site from being exposed to possible Remote Code Execution attack...
The Apache Security Struts Team recommends to immediately upgrade your Struts 2 based projects to use the latest released version of the Apache Struts. This is necessary to prevent your publicly accessible web site, which is using the Struts REST plugin and performing XML serialisation, from being e...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 The Apache Ant Team is pleased to announce the releases of Apache Ant 1.9.11 and 1.10.3. Apache Ant is a Java library and command-line tool that helps building software. The Apache Ant team currently maintains two lines of development. The 1.9.x relea...
Dear community, The Apache Groovy team is pleased to announce version 2.4.15 of Apache Groovy. Apache Groovy is a multi-facet programming language for the JVM. Further details can be found at the http://groovy.apache.org website. This release is a maintenance release of the GROOVY_2_4_X branch and...
The Apache Qpid (http://qpid.apache.org) community is pleased to announce the immediate availability of Apache Qpid JMS 0.31.0. This is the latest release of our newer JMS client supporting the Advanced Message Queuing Protocol 1.0 (AMQP 1.0, ISO/IEC 19464, http://www.amqp.org), based around the Ap...
The Apache Kylin team is pleased to announce the immediate availability of the 2.3.1 release. This is a bug fix release after 2.3.0 with 12 bug fixes and enhancements; All of the changes in this release can be found in: https://kylin.apache.org/docs23/release_notes.html You can download the source...
The Apache Accumulo project is pleased to announce the release of Apache Accumulo 1.7.4! This release contains many bug fixes, performance improvements, build quality improvements, and more. This is a maintenance (patch) release. Users of any previous 1.7.x release are strongly encouraged to update ...
[this announcement is available online at https://s.apache.org/rkGn ] Let's bid March farewell with a look back at the many Apache activities over the past week: But first: cake and party favors! - The Apache® Software Foundation Celebrates 19 Years of Open Source Leadership "The Apache Way" htt...
Hello All, Apache ServiceComb (incubating) Team is glad to announce the first release of Apache ServiceComb Incubating Service-Center 1.0.0-m1. Apache ServiceComb (incubating) Service-Center(https://github.com/apache/incubator-servicecomb-service-center) is a Restful based service-registry...
Hello All, Apache ServiceComb (incubating) Team is glad to announce the first release of Apache ServiceComb Incubating Saga 0.1.0. Apache ServiceComb (incubating) Saga (https://github.com/apache/incubator-servicecomb-saga) is an eventual data consistency technology, which provides a mechan...
The Apache Qpid community is pleased to announce the immediate availability of Apache Qpid C++ 1.38.0. Apache Qpid (https://qpid.apache.org) is a cross-platform messaging solution that implements the Advanced Message Queuing Protocol (AMQP, https://www.amqp.org). It provides message brokers written...
Hello All, Apache ServiceComb (incubating) Team is glad to announce the first release of Apache ServiceComb Incubating Java-Chassis 1.0.0-m1. Apache ServiceComb (incubating) Java Chassis(https://github.com/apache/incubator-servicecomb-java-chassis) is a Software Development Kit (SDK) for r...
The Apache Qpid (http://qpid.apache.org) community is pleased to announce the immediate availability of Apache Qpid Proton 0.22.0. Apache Qpid Proton is a messaging library for the Advanced Message Queuing Protocol 1.0 (AMQP 1.0, ISO/IEC 19464, http://www.amqp.org). It can be used in a wide range o...
The Apache Jackrabbit community is pleased to announce the release of Apache Jackrabbit Oak. The release is available for download at: http://jackrabbit.apache.org/downloads.html See the full release notes below for details about this release: Release Notes -- Apache Jackrabbit Oak -- Vers...
CVE-2018-1315: 'COPY FROM FTP' statement in HPL/SQL can write to arbitrary location if the FTP server is compromised Severity: Moderate Vendor: The Apache Software Foundation Versions Affected: Hive 2.1.0 to 2.3.2 Description: When 'COPY FROM FTP' statement is run using HPL/SQL extension to Hive...
CVE-2018-1282: JDBC driver is susceptible to SQL injection attack if the input parameters are not properly cleaned Severity: Important Vendor: The Apache Software Foundation Versions Affected: This vulnerability affects all versions of Hive JDBC driver from 0.7.1 Description: This vulnerability ...
CVE-2018-1284: Hive UDF series UDFXPathXXXX allow users to pass carefully crafted XML to access arbitrary files Severity: Important Vendor: The Apache Software Foundation Versions Affected: This vulnerability affects all versions from 0.6.0 Description: Malicious user might use any xpath UDFs (x...
The Apache FreeMarker community is pleased to announce the release of Apache FreeMarker 2.3.28. Apache FreeMarker is a template engine: a Java library to generate text output (HTML web pages, e-mails, configuration files, source code, etc.) based on templates and changing data. FreeMarker 2.x produ...
The Lucene PMC is pleased to announce that the Solr Reference Guide for Solr 7.3 is now available. This 1,295 page PDF is the definitive guide to using Apache Solr, the search server built on Apache Lucene. The PDF Guide can be downloaded from: https://www.apache.org/dyn/closer.cgi/lucene/solr/ref...
The Apache Qpid (http://qpid.apache.org) community is pleased to announce the immediate availability of Apache Qpid Broker-J 7.0.3. This release addresses defects and enhancements in Qpid Broker-J The release is available now from our website: https://qpid.apache.org/download.html Release not...
The Apache Qpid (https://qpid.apache.org) community is pleased to announce the immediate availability of Apache Qpid for Java 6.1.6. This release addresses defects and enhancements in Qpid Broker-J (previously known as Qpid Broker for Java). The release is available now from our website: https...
[this announcement is available online at https://s.apache.org/P9Hp ] Here comes April with quite a few Apache activities: ASF Board –management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws. - Next Board Meeting: 18 April. Board calendar an...
Apache Geode <http://geode.apache.org/> is a data management platform that provides a database-like consistency model, reliable transaction processing and a shared-nothing architecture to maintain very low latency performance with high concurrency processing. Geode 1.5.0 contains a number of improv...
Announcing that the Apache Oltu committers have voted to retire the project due to inactivity. Oltu was an OAuth protocol implementation in Java. It also covers others "OAuth family" related implementations such as JWT, JWS and OpenID Connect. Retiring a project is not as simple as turning everythi...
CVE-2018-1308: XXE attack through Apache Solr's DIH's dataConfig request parameter Severity: Major Vendor: The Apache Software Foundation Versions Affected: Solr 1.2 to 6.6.2 Solr 7.0.0 to 7.2.1 Description: The details of this vulnerability were reported to the Apache Security mailing list. T...
Hello The Apache NiFi team would like to announce the release of Apache NiFi 1.6.0. Apache NiFi is an easy to use, powerful, and reliable system to process and distribute data. Apache NiFi was made for dataflow. It supports highly configurable directed graphs of data routing, transformation, and...
Dear community, The Apache Groovy team is pleased to announce version 2.5.0-rc-1 of Apache Groovy. Apache Groovy is a multi-faceted programming language for the JVM. Further details can be found at the http://groovy.apache.org website. This is a pre-release of a new version of Groovy. We greatly a...
I'm happy to announce the release of Apache Subversion 1.10.0-rc2. Please choose the mirror closest to you by visiting: https://subversion.apache.org/download.cgi#pre-releases The SHA1 checksums are: 8d79006f0ae53536d7c1d28bbf86f677042f3e9b subversion-1.10.0-rc2.tar.bz2 44d224ad63f3bd...
The Apache Tomcat team announces the immediate availability of Apache Tomcat 9.0.7. Apache Tomcat 9 is an open source software implementation of the Java Servlet, JavaServer Pages, Java Unified Expression Language, Java WebSocket and JASPIC technologies. Apache Tomcat 9.0.7 is a bugfix and feature...
The Apache Jackrabbit community is pleased to announce the release of Apache Jackrabbit 2.17.2. The release is available for download at: http://jackrabbit.apache.org/downloads.html See the full release notes below for details about this release: Release Notes -- Apache Jackrabbit -- Versio...
The Apache Tomcat team announces the immediate availability of Apache Tomcat 8.5.30. Tomcat 8.x users should be using 8.5.x releases in preference to 8.0.x releases. Apache Tomcat 8 is an open source software implementation of the Java Servlet, JavaServer Pages, Java Unified Expression Language, J...
The Apache BookKeeper team is proud to announce Apache BookKeeper version 4.6.2. Apache BookKeeper is a scalable, fault-tolerant, and low-latency storage service optimized for real-time workloads. It has been used for a fundamental service to build reliable services. It is also the log segment stor...
[this post is available online at https://s.apache.org/QyEK ] by Charles Givre Let me start out by saying that I am not a developer. I do have a technical background, but I hadn't coded in Java for at least 10 years before I got involved in the Apache Drill project. One has to wonder how, as a non...
[this announcement is available online at https://s.apache.org/mTfl ] Hello, Friday. Let's look back on our Apache activities over the past week: Success at Apache –a monthly blog series that focuses on the processes behind why the ASF "just works". - Am I there yet? A n00b's perspective by Cha...
I'm happy to announce the release of Apache Subversion 1.10.0. Please choose the mirror closest to you by visiting: https://subversion.apache.org/download.cgi#recommended-release This is a stable feature release of the Apache Subversion open source version control system. The SHA1 checksums a...
Apache Jena is a framework for developing Semantic Web and Linked Data applications in Java. It provides implementation of W3C standards for RDF and SPARQL. The Apache Jena development community is pleased to announce the release of Apache Jena 3.7.0! == Key features of the release ** Allow SPAR...
[this announcement is available online at https://s.apache.org/ICsR ] Open Source version control system ranked among leaders in $970MM+ market Wakefield, MA —16 April 2018— The Apache Software Foundation (ASF), the all-volunteer developers, stewards, and incubators of more than 350 Open Sourc...
The Apache Tomcat team announces the immediate availability of Apache Tomcat 8.0.51. Please note that Apache Tomcat 8.x users should normally be using 8.5.x releases in preference to 8.0.x releases. The Apache Tomcat team announced that support for Apache Tomcat 8.0.x will end on 30 June 2018. Apa...
The Apache Tomcat team announces the immediate availability of Apache Tomcat 7.0.86. Apache Tomcat is an open source software implementation of the Java Servlet, JavaServer Pages, Java Expression Language and Java WebSocket technologies. This release contains a number of bug fixes and improvements...
Apache Traffic Server v7.1.3 Released The Apache Software Foundation and the Apache Traffic Server (ATS) project are pleased to announce the release of Apache Traffic Server v7.1.3! ATS is a high performance, scalable HTTP Intermediary and proxy cache. It is used by several large internet services,...
[this announcement is available online at https://s.apache.org/FLXS ] Open Source workflow scheduler for Apache Hadoop used to build complex Big Data transformations. Wakefield, MA —18 April 2018— The Apache Software Foundation (ASF), the all-volunteer developers, stewards, and incubators of m...
The Apache Fineract team is pleased to announce its second release: 'Apache Fineract 1.1.0' Apache Fineract is an open source system for core banking as a platform. Fineract provides a reliable, robust, and affordable solution for entrepreneurs, financial institutions, and service providers to offe...
CVE-2018-1325 - Wicket jQuery UI: XSS while displaying value in WYSIWYG editor Severity: High Vendor: wicket-jquery-ui Versions Affected: <= 6.29.0, <= 7.10.1, <= 8.0.0-M9.1 Description: JS code created in WYSIWYG editor will be executed on display CVE-2018-1325 The issue was fixed in 6.29.1, 7...
The Apache OpenMeetings project is pleased to announce the release of Apache OpenMeetings 4.0.3. The release is available for download from http://openmeetings.apache.org/downloads.html Apache OpenMeetings provides video conferencing, instant messaging, white board, collaborative document editing a...
The Apache Jackrabbit community is pleased to announce the release of Apache Jackrabbit 2.14.5. The release is available for download at: http://jackrabbit.apache.org/downloads.html See the full release notes below for details about this release: Release Notes -- Apache Jackrabbit -- Versi...
[this announcement is available online at https://s.apache.org/9fMp ] Happy Friday! Activities from the Apache community over the past week include: ASF Board –management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws. - Next Board Meeting: 1...