Skip to content

8.1.1 Patch Release - Disable DTD when parsing XML #451

Merged
mikejritter merged 2 commits into
ucb_8.1from
release/cspace_ucb_8.1.2
Jun 4, 2026
Merged

8.1.1 Patch Release - Disable DTD when parsing XML #451
mikejritter merged 2 commits into
ucb_8.1from
release/cspace_ucb_8.1.2

Conversation

@spirosdi
Copy link
Copy Markdown

@spirosdi spirosdi commented Jun 4, 2026

This is a cherry is a cherry pick of d223cb8 that handles the XML External Entity (XXE) vulnerability . For further details please check original PR: collectionspace#540

It also bumps version to 8.1.2

@spirosdi spirosdi requested a review from mikejritter June 4, 2026 13:19
@mikejritter mikejritter merged commit 369fdd9 into ucb_8.1 Jun 4, 2026
@mikejritter mikejritter deleted the release/cspace_ucb_8.1.2 branch June 4, 2026 16:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants