Re: QPID Broker-J 8.0.6 XSS vulnerability in path

2024-07-19 Thread Tomas Vavricka
Hi, Thanks for reporting. I created QPID-8675 JIRA to address the issue. https://issues.apache.org/jira/browse/QPID-8675 Regards, Tomas On 2024/07/08 18:02:46 Indraneel Dey wrote: > Hello, > > Our application uses QPID Broker-J and one of our users recently made us > aware of an XSS vulnerabil

Re: [VOTE] Release Apache Qpid protonj2 1.0.0-M21

2024-07-19 Thread Daniil Kirilyuk
+1 Following checks were done: - Verified signatures and checksums - Checked license and notice files in archives - Checked licence headers in the source archive (mvn apache-rat:check) - Built from source (mvn clean install) under JDK 17 - Ran tests under JDK 17 (mvn clean verify) On Thu, 18 Jul

[RESULT][VOTE] Release Apache Qpid protonj2 1.0.0-M21

2024-07-19 Thread Timothy Bish
There were 3 binding +1 votes, and 1 other votes received. The vote has passed. I will add the files to the dist release repo and release the maven staging repo shortly. The website will be updated after the release has had time to sync to the mirrors and maven central. -- Tim Bish --

[ANNOUNCE] Apache Qpid protonj2 1.0.0-M21 released

2024-07-19 Thread Timothy Bish
The Apache Qpid (http://qpid.apache.org) community is pleased to announce the immediate availability of Apache protonj2 1.0.0-M21. This is the latest release of our AMQP Java client supporting the Advanced Message Queuing Protocol 1.0 (AMQP 1.0, ISO/IEC 19464, http://www.amqp.org), based around th