thanks mark,
Nithin P ---- On Tue, 03 Oct 2023 15:05:31 +0530 Mark Thomas <ma...@apache.org> wrote --- On 03/10/2023 06:16, Nithin P wrote: > Hi, > > I'm using Apache Ofbiz v18.12.06 While I'm trying to upload an image for > vulnerability scanning it shows CVE-2020-1938. I have tried to update to the > latest version having the same issue, Does Anyone know where the tomcat conf > files are stored in the Apache OFBiz application or how to disable ajp 8009 > protocol in Apache OFBiz thanks in advance. Those are all questions best asked to the Apache Ofbiz project. The Tomcat community has no visibility of how Ofbiz is using and/or configuring Tomcat. If Ofbiz is using server.xml (you can search for that file) you could try removing the AJP Connector element from that file. If Ofbiz is using embedded Tomcat then you'll definitely need to ask the Ofbiz folks. Mark --------------------------------------------------------------------- To unsubscribe, e-mail: mailto:users-unsubscr...@tomcat.apache.org For additional commands, e-mail: mailto:users-h...@tomcat.apache.org This message contains confidential information and is intended only for the individual named. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. You cannot use or forward any attachments in the email. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete this e-mail from your system. Finally, the opinions disclosed by the sender do not have to reflect those of the company, therefore the company refuses to take any liability for the damage caused by the content of this email. Yobitel Communications Limited, #11, Kingsley Mews, Ley Street, Ilford, London - IG1 4BT, United Kingdom. www.yobitel.com