-
Notifications
You must be signed in to change notification settings - Fork 159
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Fixed: Execution of queries without authentication (OFBIZ-12857)
The problem lies with the Solr Plugin for OFBiz. It allows the execution of queries without authentication. This fixes it and, because it's more general, also fixes the CVE-2022-47501 ("Arbitrary file reading vulnerability in Solr") that has been handled by OFBIZ-12792. Conflicts handled by hand
- Loading branch information
1 parent
06dd961
commit 998bf51
Showing
1 changed file
with
15 additions
and
5 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters