Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

2019

  • CVE-2019-12406: Apache CXF does not restrict the number of message attachments

2018

  • CVE-2018-8039: Apache CXF TLS hostname verification does not work correctly with com.sun.net.ssl.
  • CVE-2018-8038: Apache CXF Fediz is vulnerable to DTD based XML attacks

...