Severity: critical
Affected versions:
- Apache OFBiz before 181212
Description:
Possible path traversal in Apache OFBiz allowing authentication bypass
Users are recommended to upgrade to version 181212, that fixes the issue
Credit:
YunPeng - 郭 运鹏 <puata123 () outlook com> (finder)
References:
ofbizapacheorg/downl ...