Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

2019

  • CVE-2019-12419: Apache CXF OpenId Connect token service does not properly validate the clientId
  • CVE-2019-12406: Apache CXF does not restrict the number of message attachments

...