Win a copy of JDBC Workbook this week in the JDBC and Relational Databases forum
or A Day in Code in the A Day in Code forum!
  • Post Reply Bookmark Topic Watch Topic
  • New Topic
programming forums Java Mobile Certification Databases Caching Books Engineering Micro Controllers OS Languages Paradigms IDEs Build Tools Frameworks Application Servers Open Source This Site Careers Other all forums
this forum made possible by our volunteer staff, including ...
Marshals:
  • Campbell Ritchie
  • Paul Clapham
  • Jeanne Boyarsky
  • Junilu Lacar
  • Henry Wong
Sheriffs:
  • Ron McLeod
  • Devaka Cooray
  • Tim Cooke
Saloon Keepers:
  • Tim Moores
  • Stephan van Hulst
  • Frits Walraven
  • Tim Holloway
  • Carey Brown
Bartenders:
  • Piet Souris
  • salvin francis
  • fred rosenberger

I find a security bug in the Jforum 2.19 and 2.4.1, who can I report this to?

 
Greenhorn
Posts: 3
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
Hi, everyone. I found a security bug in the 2.1.9, which  also exists in androwson 2.4.1 but not exists in this site. Who should I report this bug to? I look at the site jforum.net, but did't find any valid e-mail. thank you.
 
Rancher
Posts: 43016
76
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
Please send me a "Purple Mooseage" (a.k.a. a private message) with the details and preferably your email - I'm one of the committers of JForum2.
 
kun song
Greenhorn
Posts: 3
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
ok. I realised that this is not a good manner to communicate, and I came to modify the post, but maybe there is not function of thread modification. see the 'purple mooseage'.
 
kun song
Greenhorn
Posts: 3
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
I have made a touch with the commiter, and this thread should be modified or deleted. Please the moderator help to deal with this thread. Thank you. I can't find means to contact you.
 
Ulf Dittmer
Rancher
Posts: 43016
76
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
I have just checked in a fix for this, so it's available to anyone building JForum from source, and it will be part of the next regular release.

I think this topic can remain, if for no other reason than to remind people that the 2.1.9 version is not safe, and that they should switch to 2.4.1 at the least.
 
You don't like waffles? Well, do you like this tiny ad?
Devious Experiments for a Truly Passive Greenhouse!
https://www.kickstarter.com/projects/paulwheaton/greenhouse-1
    Bookmark Topic Watch Topic
  • New Topic