Opencast vulnerable to billion laughs attack (XML bomb)

12 views
Skip to first unread message

Lars Kiesow

unread,
Jun 15, 2021, 4:22:12 PM6/15/21
to security...@opencast.org
Hi everyone,
here comes a short notice that the new releases of Opencast 9.6
contains a security fix. Since we moved to using GitHub's security
advisory feature, as usual, more details can be found at:

https://github.com/opencast/opencast/security/advisories/GHSA-9gwx-9cwp-5c2m

The fix will, of course, also be included in Opencast 10 which will be
released later today.

Best regards,
Lars
Reply all
Reply to author
Forward
0 new messages