1. c170232 Improved the code of ProgramExport and did the sandboxing/sanitising enhancements for the groovy script use. (#984) by Ashish Vijaywargiya · 8 hours ago trunk
  2. 5d2ee2e Abandoned: Dependency verification (OFBIZ-12186) by Jacques Le Roux · 25 hours ago
  3. d4422b0 Improve parameter handling and JSON construction in form renderer and related macros (#982) by Ashish Vijaywargiya · 28 hours ago
  4. a6ad227 Enable rebase button in .asf.yaml of the trunk branch by Jacopo Cappellato · 31 hours ago
  5. 8c5af7e Align securedLoginId cookie processing with JWT-based verification (#981) by Ashish Vijaywargiya · 2 days ago
  6. dd30bb1 Bump dompurify from 3.3.2 to 3.3.3 in /themes/common-theme/webapp/common-theme/js (#980) by dependabot[bot] · 3 days ago
  7. da0febe Improved: Enhance file upload validation with allowlist and path checks by Jacopo Cappellato · 3 days ago
  8. d469a78 Fixed: Enhance URL verification to handle jar URLs by Jacopo Cappellato · 3 days ago
  9. e14e48c Fixed: Enhance sanitization of FreeMarker parameters to check both strings and lists by Jacopo Cappellato · 3 days ago
  10. 8b1f839 Fixed: Validate URLs in widget factories to reject invalid locations by Jacopo Cappellato · 3 days ago
  11. 82e3a64 Fixed: Update viewShipmentLabel request to require authentication by Jacopo Cappellato · 3 days ago
  12. af8ee51 Improved: Enhance data resource validation and permission checks by Jacopo Cappellato · 3 days ago
  13. 05a0676 Implemented: Introduce RestrictedStaticModels to enforce whitelist access to static methods and fields by means of the FreeMarker "Static" shared variable by Jacopo Cappellato · 3 days ago
  14. 6d67f25 Improved: Enhance GroovyUtil with secure AST customizations for eval() expressions to implement an execution sandbox by Jacopo Cappellato · 3 days ago
  15. 185c9a0 Implemented: Remove demo secret keys from security.property and add a gradle task to generate and set the keys by Jacopo Cappellato · 4 days ago
  16. a2b6d50 Improved: Made wording for error during login consistent across supported languages (OFBIZ-13340) (#937) by Lukas-Finster · 9 days ago
  17. 6a44d0d Bump dompurify from 3.3.1 to 3.3.2 in /themes/common-theme/webapp/common-theme/js (#971) by dependabot[bot] · 9 days ago
  18. 5bb12e6 Implemented: Expand SECURITY.md to provide a comprehensive security model and policy for the Apache OFBiz project. by Jacopo Cappellato · 2 weeks ago
  19. 8cf3447 Fixed: Set template directory permissions in docker container images (OFBIZ-13363) (#967) by Daniel Watford · 3 weeks ago
  20. 46a8e3d Fixed: Some widget form targets violate security checks (OFBIZ-) by Jacques Le Roux · 3 weeks ago
  21. cf6b743 No functional change, try to see if that helps on demo by Jacques Le Roux · 3 weeks ago
  22. 7995275 Bump jquery-validation from 1.22.0 to 1.22.1 in /themes/common-theme/webapp/common-theme/js (#966) by dependabot[bot] · 3 weeks ago
  23. 5ec0e99 OFBIZ-13313 (#923) by Gaetan · 3 weeks ago
  24. 2aff62f Improved : Rewrites FlexibleMapAccessorTest (OFBIZ-13345) by Gaetan · 3 weeks ago
  25. 20ad159 Fixed: [SECURITY] Several CVEs in Apache Tomcat (OFBIZ-13365) by Jacques Le Roux · 3 weeks ago
  26. cd6e013 Improvements: Adding the additional message after the text box so that it's easy to understand the place where the default directory and file will be created or used the existing ones. by Ashish Vijaywargiya · 4 weeks ago
  27. 95880c5 Improved: by Ashish Vijaywargiya · 4 weeks ago
  28. 3f4121d Fixed: A test case in ecommerce suite was failing because of incomplete sample data. Also updating the conditional check. by Ashish Vijaywargiya · 4 weeks ago
  29. af64241 Fixed: incomplete invoice generation when receiving several items from the 'Receive Inventory Against Purchase Order' (OFBIZ-13358) (#959) by Anahita Goljahani · 5 weeks ago
  30. 65d2e08 Implemented: Move ofbizdocker user from current VM to a new one that uses Ubuntu 24.04 LTS (OFBIZ-13351) by Jacques Le Roux · 5 weeks ago
  31. c892a51 Documented: Corrected phrasing in README.adoc for Windows installation path (OFBIZ-13360) (#961) by Srushti Shivanand Pattanshetti · 5 weeks ago
  32. 8ba5174 Improved: style helveticus locale selection page, add filter (OFBIZ-13354) (#954) by Florian Motteau · 5 weeks ago
  33. 594ad28 Improved: On the Receive Against PO screen, add a link that allows users to navigate to the order details screen (#952) by Anahita Goljahani · 5 weeks ago
  34. c7621aa Improved: replace "cross the error" with clearer wording in README (OFBIZ-13356) by srushtisp09 · 5 weeks ago
  35. 2937472 Fixed: Transform the ‘Generate Shipment Manifest Report’ menu item into a button and remove the ‘Shipment Action Bar’ menu from the ‘Receive Inventory Against Purchase Order’ screen (OFBIZ-13357) (#957) by Anahita Goljahani · 6 weeks ago
  36. f26369d Improved: Comment out the SOAP and HTTP engines (OFBIZ-12212) by Jacques Le Roux · 6 weeks ago
  37. 4508993 Fixed: Change position of the Receive Against PO menu item and remove redundant link (OFBIZ-13353) (#951) by Anahita Goljahani · 6 weeks ago
  38. 58781d6 Improved: Avoid adding functions on jQuery object, remove use of internal jQuery UI function (OFBIZ-13346) (#946) by Florian Motteau · 6 weeks ago
  39. e3d73ac Improved: FlexibleStringExpander tests rewrite (OFBIZ-13336) by Gaetan · 6 weeks ago
  40. 4df45b5 Fix formatting and punctuation in user manual (#950) by Himanshu Verma · 6 weeks ago
  41. 66917d4 Fixed: Prevent receiving items from 'Receive Inventory Against Purchase Order' screen when shipment is in 'Received' status (OFBIZ-13343) (#943) by Anahita Goljahani · 7 weeks ago
  42. 5061436 Bump jquery-validation from 1.21.0 to 1.22.0 in /themes/common-theme/webapp/common-theme/js (#947) by dependabot[bot] · 7 weeks ago
  43. ecf2990 Improved: Update jQuery and jquery-migrate to version 4 (OFBIZ-13347) by Jacques Le Roux · 7 weeks ago
  44. d0a050b Improved: Update jQuery and jquery-migrate to version 4 (OFBIZ-13347) by Jacques Le Roux · 7 weeks ago
  45. a6436df Fixed: CommonEmptyHeader wrong value (OFBIZ-13342) by Jacques Le Roux · 7 weeks ago
  46. 1211284 Fixed: Enables larger Zip for Gradle Tasks (OFBIZ-13344) (#944) by david-maksimovic-ecomify · 7 weeks ago
  47. eac34b7 Fixed: Endless loop in SecuredUpload::inflate (OFBIZ-13341) by Jacques Le Roux · 8 weeks ago
  48. 07f69be Fixed: UI Labels on the edit calendar exception day screen are referring to exception week instead of day (OFBIZ-13257) by Nameet Jain · 8 weeks ago
  49. fc69e4c Fixed: Form fields are not properly populated with values from the context due to a regression introduced by commit 69697d1 (OFBiz-13331) (#936) by Anahita Goljahani · 8 weeks ago
  50. 18f8e96 No functional dummy change to test plugins update on demo by Jacques Le Roux · 8 weeks ago
  51. 31075bd Fixed: Disable 'New Shipment For Ship Group' buttons for purchase orders that are not approved (OFBIZ-13337) (#935) by Anahita Goljahani · 9 weeks ago
  52. 7664714 Fixed: Fix groovy tests source setup (OFBIZ-13334) by Jacques Le Roux · 9 weeks ago
  53. 88577c5 Fixed: Fix groovy tests source setup (OFBIZ-13334) by Jacques Le Roux · 9 weeks ago
  54. 28c8967 Fixed: Purchase Order approval fails when payment auto create config is disabled (OFBiz-13335) by Nicolas Malin · 9 weeks ago
  55. e39358b Fixed: Add log information to spot correctly error during webapp loading by Nicolas Malin · 9 weeks ago
  56. ffdda02 Improved: Rewrites the test class UtilCacheTest (OFBIZ-13311) by Gaetan · 9 weeks ago
  57. 31a249c Set default request/response character encoding to UTF-8 for Tomcat 9 (OFBIZ-13333) by Deepak Dixit · 9 weeks ago
  58. 1d97261 Fixed: Force Complete Purchase Order logic to support items split into multiple ship groups (OFBIZ-13327) (#934) by Anahita Goljahani · 2 months ago
  59. 06413cb Improved: updates to 2026 year by Jacques Le Roux · 2 months ago
  60. 1100016 Fixed: various bugs in receive against purchase orders (OFBIZ-13327) (#932) by Anahita Goljahani · 3 months ago
  61. 69697d1 Fixed: Form under ModelGrid don't use values in parameters and block others (OFBiz-13331) by Nicolas Malin · 3 months ago
  62. 0b94ecd Improved: Lookup don't work on area just updated (OFBIZ-13332) by Nicolas Malin · 3 months ago
  63. 27cd968 Improved: Manage marital status type history for person (OFBIZ-13329) by Nicolas Malin · 3 months ago
  64. 109c496 Improved: Manage marital status type history for person (OFBIZ-13329) by Nicolas Malin · 3 months ago
  65. 68d1ee2 Fixed: Compound's single form are loaded as ModelGrid in memory (OFBIZ-13330) by Nicolas Malin · 3 months ago
  66. 615a87a Improved: Update to Apache Tika 3.0.0 (OFBIZ-13155) by Jacques Le Roux · 3 months ago
  67. 03971bd Fixed: docker-entrypoint.sh does not properly handle variable OFBIZ_DISABLE_COMPONENTS (OFBIZ-13314) by Jacques Le Roux · 3 months ago
  68. a46dabd Improved: Add service 'addInvoiceNote' (OFBIZ-13326) by Nicolas Malin · 3 months ago
  69. 0f1a26c Bump jquery-migrate from 3.5.2 to 3.6.0 in /themes/common-theme/webapp/common-theme/js (#931) by dependabot[bot] · 3 months ago
  70. 2aefd35 Bump dompurify from 3.3.0 to 3.3.1 in /themes/common-theme/webapp/common-theme/js (#929) by dependabot[bot] · 3 months ago
  71. 0fc80ee Fixed: Invalid characters encountered (OFBIZ-13325) by Jacques Le Roux · 3 months ago
  72. ef90449 Fixed: docker-entrypoint.sh does not properly handle variable OFBIZ_DISABLE_COMPONENTS (OFBIZ-13314) by Jacques Le Roux · 3 months ago
  73. cb4b33e Improved : Refactor some `for loops` to streams for readability purpose. by Gil Portenseigne · 3 months ago
  74. fdddf90 Improved: Set uniqueItemName as unique on ScreenWidget (OFBIZ-13315) by Nicolas Malin · 3 months ago
  75. 6a078d5 Fixed: service 'copyInvoice' Failed on invoice not in process (OFBIZ-13323) by Nicolas Malin · 3 months ago
  76. 03d8160 Fixed: getClass() is called on instance of Class (OFBIZ-13321) #927 by Dmitry Kryukov · 3 months ago
  77. 9139c41 Improved: [optimization] There are several locations where in the loop we can exit early (OFBIZ-13319) #925 by Dmitry Kryukov · 4 months ago
  78. 034ed24 Fixed: String comparison (OFBIZ-13320) #926 by Dmitry Kryukov · 4 months ago
  79. 45f6a3e Improved: Incorrect comparison of Bigdecimals in ShoppingCart (OFBIZ-13318) by Jacques Le Roux · 4 months ago
  80. 3db9563 Fixed: Tried to execute unauthorized script (OFBIZ-13317) by Jacques Le Roux · 4 months ago
  81. 646b593 Fixed: BalanceSheet generates an error (OFBIZ-13070) (#924) by pavololbert · 4 months ago
  82. 11c3cb3 Improved: Better secure "openSourceFile" request-map (OFBIZ-13316) by Jacques Le Roux · 4 months ago
  83. 0d55ba9 Improved: Better secure "openSourceFile" request-map (OFBIZ-13316) by Jacques Le Roux · 4 months ago
  84. 5a3a95f Improved: Enhance ModelFormTest to successfully validate test tokens using the internal mechanism even when the system is configured with an external authorization server (security.token.issuer). by Jacopo Cappellato · 4 months ago
  85. f82f2f5 Improved: Better secure "openSourceFile" request-map (OFBIZ-13316) by Jacques Le Roux · 4 months ago
  86. 5c66eaa Improved: Refactor readHtmlDocument in UelFunctions to obtain an instance of org.w3c.dom.Document using the standard javax.xml.parsers.* APIs instead of org.cyberneko.html. by Jacopo Cappellato · 4 months ago
  87. c81c469 Fixed: docker-entrypoint.sh does not properly handle variable OFBIZ_DISABLE_COMPONENTS (OFBIZ-13314) by Javier Ochoa · 4 months ago
  88. 8e492c2 Improved: getFields() in AcroFields has been deprecated (OFBIZ-13312) by Jacques Le Roux · 4 months ago
  89. 2841c16 Implemented: JWT validation for tokens issued by an external authentication server. by Jacopo Cappellato · 4 months ago
  90. ae3b657 Fixed: Improve ViewHandler interface (OFBIZ-13179) by Nicolas Malin · 4 months ago
  91. bec8add Improved: Replace iText by librePDF (OFBIZ-13300) by Nicolas Malin · 4 months ago
  92. b3ff76a Fixed: "null DispatchContext" issue under high load and concurrency (OFBIZ-13153) by Nicolas Malin · 4 months ago
  93. ea76621 Fixed: [SECURITY] Several CVEs in Apache Tomcat (OFBIZ-13310) by Jacques Le Roux · 5 months ago
  94. 82ed9a8 Fixed: OFBiz entity import screen is broken (OFBIZ-13308) by Jacques Le Roux · 5 months ago
  95. 157e1cd Skip creating empty plugins directory and handle missing directory gracefully by Deepak Dixit · 5 months ago
  96. 1f0578c Hide Server Version Information on Error Pages (OFBIZ-13309) by Deepak Dixit · 5 months ago
  97. 3bb162a Fixed: OFBiz entity import screen is broken (OFBIZ-13308) by Jacques Le Roux · 5 months ago
  98. f9c25f9 Removed unused import by Deepak Dixit · 5 months ago
  99. 014c488 Moved createFuturePeriod service definition and implementation from framework to applications/accounting component (OFBIZ-13307) by Deepak Dixit · 5 months ago
  100. d6993ec Fixed: Regression when willing to enter decimals (OFBIZ-13297) by Jacques Le Roux · 5 months ago