Releases: OpenIdentityPlatform/OpenIDM
Releases · OpenIdentityPlatform/OpenIDM
7.0.1
What's Changed
- Update target JDK to 17 and move to JakartaEE 10 (Pax Web 11) by @maximthomas in #114
- Add support LTS JDK 25 by @vharseko in #119
- Update base docker image Java version to 25 LTS by @maximthomas in #122
- Remove OrientDB's snappy dependency to get rid of native access warning by @maximthomas in #121
- CVE-2024-38999 requirejs v2.3.6 was discovered to contain a prototype pollution by @maximthomas in #118
- Update org.openidentityplatform.openicf to 2.0.1 by @vharseko in #125
- Update README.md: add backers and sponsors by @vharseko in #116
- ISSUE_TEMPLATE: add "Vote to raise the priority" by @vharseko in #117
Full Changelog: 6.3.0...7.0.1
6.3.0
What's Changed
- CVE-2019-11358 CVE-2020-11023 Update jQuery to 3.7.1 by @maximthomas in #106
- CVE-2025-27533 Apache ActiveMQ: Unchecked buffer length can cause excessive memory allocation by @dependabot[bot] in #107
- CVE-2025-48734 CVE-2020-15250 Apache Commons Improper Access Control vulnerability by @vharseko in #108
- CVE-2025-48976 Apache Commons FileUpload: FileUpload DoS via part headers by @dependabot[bot] in #109
- CVE-2025-48924 Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs by @vharseko in #111
- Update Pax Web to 7.4.6 (prepare for Jakarta migration) by @maximthomas in #110
- Add root group permission to the Docker /opt/openidm directory by @maximthomas in #112
- Bump org.openidentityplatform.openicf 1.8.0 by @vharseko in #113
- Fix OpenAM and OpenDJ documentation links by @maximthomas in #101
- Deploy: migrating from Legacy OSSRH to Central Portal by @vharseko in #104
Full Changelog: 6.2.5...6.3.0
6.2.5
What's Changed
- CVE-2025-27497 Fix Denial of Service (Dos) using alias loop by @vharseko in #96
- CVE-2019-17554 CVE-2019-17555 CVE-2020-1925 Bump Apache Olingo by @vharseko in #98
- Add support Java SE 24 by @vharseko in #97
- FIX NPE org.activiti.osgi.Extender.getBundleContext() is null by @vharseko in #99
- Bump org.apache.felix.webconsole 4.5.4->4.8.12 by @vharseko in #100
- Documentation update by @maximthomas in #94
- Docs: Generate and publish javadoc by @maximthomas in #95
Full Changelog: 6.2.4...6.2.5
6.2.4
What's Changed
- CVE-2023-22102 allows an attacker to compromise MySQL Connectors by @maximthomas in #89
- Bump org.openidentityplatform.openicf to 1.7.2 by @maximthomas in #93
- Fix build issues with Puppeteer and transient dependency by @maximthomas in #91
- Update documentation formatting and cross references by @maximthomas in #90
- Fix documentation issues and update links by @maximthomas in #92
Full Changelog: 6.2.3...6.2.4
6.2.3
What's Changed
- Fix missing workflow sample chess image by @maximthomas in #84
- move sample chess image to local by @maximthomas in #86
Full Changelog: 6.2.2...6.2.3
6.2.2
What's Changed
- update download links in documentation by @maximthomas in #78
- fix documentation issues by @maximthomas in #79
- [#81] Fix missing codemirror.css file by @maximthomas in #82
- Fix doc push error by @maximthomas in #83
Full Changelog: 6.2.1...6.2.2
6.2.1
What's Changed
- CVE-2024-47554 Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader by @dependabot in #75
- Bump org.openidentityplatform.openicf 1.7.1 by @vharseko in #73
- Add JDK 23 build support by @vharseko in #76
- ADD maven-compiler-plugin release for cross compile compatibility by @vharseko in #77
- Docs in asciidoc & deploy antora docs after build by @maximthomas in #72
- Add missing attachments & publish pdf to wiki by @maximthomas in #74
Full Changelog: 6.2.0...6.2.1
6.2.0
What's Changed
- [#66] Activiti crashes (ClassNotFoundException: javax.script.ScriptEnineFactory not found) on default org.codehaus.groovy:groove-all:META-INF/services/javax.script.ScriptEngineFactory with comments inside it by @vharseko in #68
- ADD JDK 22 support by @vharseko in #69
- Switch docker to last LTS JRE 21 by @vharseko in #70
- Bump OpenICF 1.7.0 by @vharseko in #71
Full Changelog: 6.1.2...6.2.0
6.1.2
What's Changed
- [#63] FIX ActivitiServiceImpl NPE on scriptRegistry by @vharseko in #64
- Fix provisioner component load by @maximthomas in #65
- Deploy docs to https://doc.openidentityplatform.org/openidm by @maximthomas in #59
Full Changelog: 6.1.1...6.1.2
6.1.1
What's Changed
- add missing docs by @maximthomas in #52
- build and publish docs to wiki by @maximthomas in #53
- fix docs publish to wiki by @maximthomas in #54
- bump maven-antrun-plugin version to 1.8 by @maximthomas in #55
- Update README.md by @vharseko in #56
- [#57] Fix form2js issue by @maximthomas in #58
Full Changelog: 6.1.0...6.1.1