blob: 8221337cd4bce45436fa6187fa629e03c7c82e60 [file] [log] [blame]
<?php //Variable declarations for region templates
$head_title = '<title>The Apache OFBiz&reg; Project - Release Notes 17.12.03</title>';
?>
<!-- page content -->
<section id="content" class="fullWidth">
<header class="headerPage">
<div class="container clearfix">
<div class="row">
<h1 class="span8">Release Notes 17.12.03</h1>
<div class="span4" id="navTrail"> <a href="index.html" class="homeLink">home</a><span>/</span><a href="download.html">Download</a><span>/</span><span class="current">Release Notes 17.12.03</span> </div>
</div>
</div>
</header>
<section id="content" class="features" >
<div class="slice clearfix">
<div class="container">
<div class="row">
<div>
<p>Apache OFBiz&reg; 17.12.03, released in 2020-04-27, is the third release of the 17.12 series, that has been stabilized since December 2017.</p>
<h2>Sub-task
</h2>
<ul>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11195'>OFBIZ-11195</a>] - XML Entity Injection in webtools/control/entityImport
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11197'>OFBIZ-11197</a>] - Arbitrary Code Execution
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11470'>OFBIZ-11470</a>] - Ensure that the SameSite attribute is set to &#39;strict&#39; for all cookies. (CVE-2019-0235)
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11477'>OFBIZ-11477</a>] - Improve Web Content Caching
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11583'>OFBIZ-11583</a>] - Prevent Host Header Injection (CVE-2019-12425)
</li>
</ul>
<h2>Bug
</h2>
<ul>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11534'>OFBIZ-11534</a>] - Error in uploading very large files, ie &gt;2MB
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11597'>OFBIZ-11597</a>] - Error removing an uploaded party content
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11601'>OFBIZ-11601</a>] - Build failed due to gradle-svntools-plugin dependency
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-10800'>OFBIZ-10800</a>] - Unable to remove items from onePageCheckout screen of ecommerce
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11246'>OFBIZ-11246</a>] - The createTaskContent request does not work
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11400'>OFBIZ-11400</a>] - Product Images not rendering on One Page Checkout
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11441'>OFBIZ-11441</a>] - createMissingCategoryAndProductAltUrls service misses a transaction
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11448'>OFBIZ-11448</a>] - Potential Nullpointer in ErrorPage.ftl
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11451'>OFBIZ-11451</a>] - ofbiz-plugins repo does not have our license
</li>
</ul>
<h2>Improvement
</h2>
<ul>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11437'>OFBIZ-11437</a>] - Add 2020 version of Incoterms
</li>
<li>[<a href='https://issues.apache.org/jira/browse/OFBIZ-11475'>OFBIZ-11475</a>] - AjaxAutocompleteOptions should be able to decode return values
</li>
</ul>
</div>
</div>
</div>
</div>
</section>
</section>