Last modified by Erik Bakker on 2022/06/16 13:46

From version 17.1
edited by Erik Bakker
on 2022/06/16 13:46
Change comment: There is no comment for this version
To version 10.1
edited by Erik Bakker
on 2022/06/16 13:31
Change comment: There is no comment for this version

Summary

Details

Page properties
Title
... ... @@ -1,1 +1,1 @@
1 -eMagiz Mendix Connector - 4.2.0
1 +eMagiz Runtime - 5.0.4
Content
... ... @@ -1,19 +1,12 @@
1 -Update which brings automatic connector-infra configuration downloading, improved exception handling, and dependency updates.
1 +Fourth maintenance release in the eMagiz 5.0.x line. This release fixes Log4J security vulnerabilities CVE-2021-44228 and CVE-2021-45046.
2 2  
3 +Find out more in our [release blog]
3 3  
4 -===== Major changes =====
5 5  
6 -* On project startup the connector-infra configuration is downloaded, installed, and started automatically.
7 - ** When it is not possible to retrieve the active release, the previous connector-infra will be used.
8 - ** The Configuration Overview snippet is not necessary anymore and therefore removed from the module.
6 +===== Bug Fixes =====
9 9  
10 -===== Minor changes =====
8 +* Updated OPS4J Pax Logging version 1.10.1 to version 1.11.11. Internally this uses Apache Log4j 2, which is updated from version 2.8.2 to 2.16.0 in this release. This fixed the following two security vulnerabilities:
9 + ** https://nvd.nist.gov/vuln/detail/CVE-2021-44228 (CVSS score 10.0 - Critical)
10 + ** https://nvd.nist.gov/vuln/detail/CVE-2021-45046 (CVSS score 3.7 - Low)
11 11  
12 -* Improved exception handling for synchronous entry integrations.
13 - ** Standard eMagiz bus exceptions are recognized and converted into Mendix exceptions.
14 -* Updated dependencies in 'userlib'. To prevent errors, run the cleanup tool ('resources/emagiz-cleanup-tool.jar') to remove all old dependencies.
15 - ** Updated Spring Framework from version 4.3.20 to version 5.2.3
16 - ** Updated Netty from version 4.1.34 to version 4.1.50
17 - ** Updated Proton-J from version 0.31.0 to version 0.33.5
18 - ** Updated Spring Retry from version 1.2.2 to version 1.2.5
19 - ** Updated Joda Time from version 2.10.1 to version 2.10.5
12 +