Skip to content
Failed

Changes

Summary

  1. [GovWayCore] (commit: 3f1825e) (details)
  2. [Documentazione] (commit: 9c5db10) (details)
  3. [Testsuite] (commit: 37b8e14) (details)
  4. [GovWayCore] (commit: 2abf1f8) (details)
  5. [Testsuite] (commit: c87cfd7) (details)
Commit 3f1825e28cb85f5c5ad30d23ed8e6a685f8e90d8 by Andrea Poli
[GovWayCore]
Sono state risolte le seguenti vulnerabilità relative ai jar di terza parte:
- CVE-2024-32007, CVE-2024-41172:
        aggiornata libreria 'org.apache.cxf:*' alla versione 3.6.4
        aggiornata libreria 'org.ow2.asm:asm' alla versione 9.7
        aggiornata libreria 'com.fasterxml.woodstox:woodstox-core' alla versione 6.6.2
(commit: 3f1825e)
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-jaxrs-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-jaxrs-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-features-logging-3.6.3/LICENSE
The file was modifiedtools/rs/monitor/server/testsuite/build.xml (diff)
The file was modifiedmvn/dependencies/cxf/pom.xml (diff)
The file was modifiedpom.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-core-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-core-3.6.3-gov4j-1/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-security-jose-3.6.3-gov4j-1/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-openapi-v3-3.6.3/LICENSE
The file was modifiedlib/openspcoop2.userlibraries (diff)
The file was modifiedChangeLog (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/bug.rst (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-simple-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-core-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-transports-http-jetty-3.6.3/LICENSE
The file was modifiedtools/web_interfaces/loader/ant/openspcoop2-govwayLoader-war.xml (diff)
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-32007.rst
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-common-openapi-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-security-jose-jaxrs-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-security-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-bindings-soap-3.6.4/LICENSE
The file was modifiedprotocolli/trasparente/testsuite/karate/build.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-tools-common-3.6.3/LICENSE
The file was modifiedtools/rs/config/server/testsuite/build.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-features-logging-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-simple-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-ws-policy-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-databinding-jaxb-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-openapi-v3-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-security-jose-3.6.4-gov4j-1/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-security-jose-jaxrs-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-bindings-soap-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-frontend-jaxws-3.6.3/LICENSE
The file was modifiedcore/ant/openspcoop2-ear.xml (diff)
The file was modifiedtools/command_line_interfaces/govway_vault/testsuite/build.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-rs-client-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-frontend-jaxws-3.6.4/LICENSE
The file was modifiedexample/pdd/server/testService/build.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-jaxws-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-security-saml-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-ws-policy-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-ws-security-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-swagger-ui-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-wsdl-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-common-openapi-3.6.4/LICENSE
The file was modifiedprotocolli/modipa/testsuite/build.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-tools-validator-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-transports-http-3.6.4/LICENSE
The file was modifiedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/index.rst (diff)
The file was modifiedprotocolli/spcoop/example/registroServizi/wsdl/build.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-swagger-ui-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-databinding-jaxb-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-transports-http-jetty-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-wsdl-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-common-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-databinding-jaxb-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-transports-http-3.6.3/LICENSE
The file was addedthird-party-licenses/cxf/cxf-core-3.6.4-gov4j-1/LICENSE
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-41172.rst
The file was addedthird-party-licenses/cxf/cxf-rt-rs-json-basic-3.6.4/LICENSE
The file was modifiedtools/web_interfaces/monitor/ant/openspcoop2-govwayMonitor-war.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-rs-client-3.6.3/LICENSE
The file was modifiedmvn/dependencies/owasp/falsePositives/CVE-2022-40705.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-jaxws-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-security-3.6.3/LICENSE
The file was modifiedtools/web_interfaces/control_station/ant/openspcoop2-govwayConsole-war.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-ws-security-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-validator-3.6.4/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-databinding-jaxb-3.6.4/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-json-basic-3.6.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-security-saml-3.6.3/LICENSE
Commit 9c5db106e62edd4f27188a97cc6d4ef92d6766d4 by Andrea Poli
[Documentazione]
Revisione relase notes 3.1.15
(commit: 9c5db10)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/sicurezzaMessaggio.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/bug.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/monitoraggio.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/tracciamento.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/connettori.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/byok.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/modipa.rst (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/installer.rst (diff)
Commit 37b8e14546562c44e3c4bb82883c3aeb62371e46 by Andrea Poli
[Testsuite]
Corretti test segnalati su ambiente CI Jenkins da SpotBugs
(commit: 37b8e14)
The file was modifiedtools/rs/config/server/src/org/openspcoop2/core/config/rs/server/api/impl/erogazioni/configurazione/ErogazioniConfigurazioneApiServiceImpl.java (diff)
The file was modifiedcore/src/org/openspcoop2/security/keystore/cache/GestoreKeystoreCache.java (diff)
The file was modifiedtools/rs/config/server/src/org/openspcoop2/core/config/rs/server/config/ServerProperties.java (diff)
The file was modifiedtools/rs/config/server/src/org/openspcoop2/core/config/rs/server/api/impl/fruizioni/configurazione/FruizioniConfigurazioneApiServiceImpl.java (diff)
The file was modifiedtools/web_interfaces/control_station/src/org/openspcoop2/web/ctrlstat/servlet/sa/ServiziApplicativiVerificaCertificati.java (diff)
The file was modifiedtools/web_interfaces/control_station/src/org/openspcoop2/web/ctrlstat/servlet/config/ConfigurazioneHelper.java (diff)
The file was modifiedtools/web_interfaces/control_station/src/org/openspcoop2/web/ctrlstat/servlet/aps/AccordiServizioParteSpecificaWSDLChange.java (diff)
The file was modifiedtools/rs/monitor/server/src/org/openspcoop2/core/monitor/rs/server/config/ServerProperties.java (diff)
The file was modifiedcore/src/org/openspcoop2/security/message/saml/SAMLUtilities.java (diff)
The file was modifiedtools/web_interfaces/control_station/src/org/openspcoop2/web/ctrlstat/servlet/sa/ServiziApplicativiHelper.java (diff)
Commit 2abf1f8e419434b30a9874019a46fd6af137f82a by Andrea Poli
[GovWayCore]
Definendo una trasformazione in cui nella configurazione dell'area di applicabilità veniva impostato "Content-Type: application/json",
la trasformazione non veniva applicata se nella richiesta o nella risposta era presente un header "Content-Type" con un valore contenente altre informazioni oltre al tipo base,
ad esempio: "application/json; charset=utf-8".
(commit: 2abf1f8)
The file was modifiedcore/src/org/openspcoop2/pdd/mdb/InoltroBuste.java (diff)
The file was modifiedprotocolli/modipa/src/org/openspcoop2/protocol/modipa/builder/ModIImbustamento.java (diff)
The file was modifiedtools/utils/src/org/openspcoop2/utils/transport/http/ContentTypeUtilities.java (diff)
The file was modifiedcore/src/org/openspcoop2/pdd/core/trasformazioni/GestoreTrasformazioni.java (diff)
The file was modifiedChangeLog (diff)
The file was modifiedprotocolli/modipa/src/org/openspcoop2/protocol/modipa/validator/ModIValidazioneSintattica.java (diff)
The file was modifiedcore/src/org/openspcoop2/pdd/core/ValidatoreMessaggiApplicativiRest.java (diff)
The file was modifiedcore/src/org/openspcoop2/message/utils/ServletTestService.java (diff)
The file was modifiedcore/src/org/openspcoop2/pdd/mdb/ConsegnaContenutiApplicativi.java (diff)
The file was modifiedprotocolli/trasparente/testsuite/karate/src/configurazioni-govway/trasparenteTestBundle.zip (diff)
The file was modifiedresources/doc/src/releaseNotes/3.3.15/bug.rst (diff)
The file was modifiedresources/doc/src/manuali/validation-process/dynamicAnalysis/index.rst (diff)
The file was modifiedprotocolli/modipa/src/org/openspcoop2/protocol/modipa/utils/ModIPropertiesUtils.java (diff)
The file was modifiedtools/utils/src/org/openspcoop2/utils/rest/AbstractApiValidator.java (diff)
The file was modifiedprotocolli/trasparente/testsuite/karate/src/org/openspcoop2/core/protocolli/trasparente/testsuite/trasformazione/info_integrazione/RestTest.java (diff)
Commit c87cfd71b02214a7ae45c9f88111a8d647b00ab8 by Andrea Poli
[Testsuite]
Corretti test segnalati su ambiente CI Jenkins
(commit: c87cfd7)
The file was modifiedcore/src/org/openspcoop2/core/controllo_traffico/utils/PolicyUtilities.java (diff)
The file was modifiedcore/src/org/openspcoop2/pdd/core/dynamic/AttachmentsReader.java (diff)
The file was modifiedcore/src/org/openspcoop2/pdd/core/SavedMessage.java (diff)
The file was modifiedcore/src/org/openspcoop2/core/constants/Costanti.java (diff)
The file was modifiedcore/src/org/openspcoop2/core/controllo_traffico/beans/IDUnivocoGroupByPolicyMapId.java (diff)
The file was modifiedcore/src/org/openspcoop2/core/controllo_traffico/beans/IDUnivocoGroupByPolicy.java (diff)