Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Lowered severity of DS-3520

...

  • DSpace API security fixes:
    • [HIGH LOW SEVERITY]  Apache Commons Collections vulnerability (COLLECTIONS-580) (DS-3520 - requires a JIRA account to access)
      • Reported by Alan Orth
    • [HIGH SEVERITY]  BasicWorkflow system is vulnerable to unauthorized manipulations (was: DS-3431) (DS-3647 - requires a JIRA account to access)
      • Reported by Pascal-Nicolas Becker

In addition, this release fixes minor bugs in the 4.x releases. For more information, see the Changes in 4.x page.

...