Joget DX 8 Stable Released
The stable release for Joget DX 8 is now available, with a focus on UX and Governance.
Table of Contents |
---|
...
In a userview, it is possible to send unvalidated data to a web browser when dynamically switching user locales, which can result in the browser executing malicious code.
High
Joget DX 8.0.11 and below
Upgrade to Joget DX 8.0.12 and above
...
A critical vulnerability has been found in the Spring Framework. According to the vulnerability report CVE-2022-22965:
...
A fix is available in the latest Joget versions:
...
Critical vulnerability in Apache Log4j. According to the report CVE-2021-44228:
...
However, this vulnerability only affects Apache Log4j versions from 2.0-beta9 to 2.14.1, so they are NOT affected by this vulnerability.
To upgrade to the latest log4j 2 version, upgrade to the following Joget versions:
...