Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Remove OWASP dependencies checking reference

...

In any cases, always check that your version is up to date, see the . Get tothe "Security Vulnerabilities" section at https://ofbiz.apache.org/download.html. page at bottom of the OFBiz site. If you use the trunk be sure to closely follow JIRA issues and revisions commits regarding security and check

Jira
serverASF JIRA
serverId5aa69414-a9e9-3523-82ec-879b028fb15b
keyOFBIZ-1525
. Then apply security patches as soon as possible, and of course check this page! (wink)

...

Currently we have no known Java vulnerabilities in OFBiz code. There are some vulnerable third parties libraries. Fortunately it's not high vulnerabilities. You can know more by looking at the last report file. We use the OWASP Dependency Check to check third parties libraries OFBiz uses.This page explains how to use it and to share results: About OWASP Dependency Check

JavaScript

For JavaScript: Retire.js see this page: About retire.js

...