THIS IS A TEST INSTANCE. ALL YOUR CHANGES WILL BE LOST!!!!
...
Now you might wonder how to yourself keep your own OFBiz instance safe from vulnerabilities and maybe how to contribute your experience to other OFBiz users. Having worked on the OFBiz security for few years, these are the tools I (Jacques Le Roux) personnaly recommend. For each I will explain it's explained in specific pages how they work and how to share your results.
- For Java: OWASP Dependency Check Since it reports a lot of false positives or issues not really needing our attention, this page explains how to use it and to share results.
- For JavaScript: Retire.js see this page
- For HTML headers: https://cyh.herokuapp.com/cyh. Those are less important but I will try to clear the situation soon!
...