Apache Roller 5.0.3 available & upgrade recommended for all Roller sites

Dave <[email protected]>
Newsgroups gmane.comp.java.roller.user
Message-ID <CAF1aazAoadqSDN5jpNz4XQhe3x2SR=xWfQFWSENoJySY6rsdRw@mail.gmail.com>
New release: Apache Roller 5.0.3 is now available on Apache mirrors
world-wide and you can find it here:

   http://roller.apache.org/downloads/downloads.html

This release fixes a security vulnerability in Roller, listed below:
   CVE-2014-0030 Apache Roller XML-RPC susceptible to XML Entended Entity
attacks

Because of the above security vulnerability, we recommend that all sites
running
Apache Roller upgrade to this new release as soon as possible.

Thanks,
The Apache Roller team
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.