The Apache OFBiz community is pleased to announce the new release "Apache OFBiz 13.07.03".



Apache OFBiz™ is an open source product for the automation of enterprise processes that includes framework components and business applications.




http://ofbiz.apache.org/




Apache OFBiz 13.07.03" is a bug fix release for the 13.07 series; all users of "Apache OFBiz 13.07.02" and "Apache OFBiz 13.07.01" are encouraged to upgrade to this latest release because the new release contains several improvements and bug fixes, including fixes for the following vulnerabilities:



CVE-2015-3268 - Information disclosure vulnerability

CVE-2016-2170 - Java deserialization vulnerability



Release notes are available here: Release Notes - 13.07.03



The release file can be downloaded following the instructions in the OFBiz download page:



http://ofbiz.apache.org/download.html


http://ofbiz.apache.org/download.html#vulnerabilities



The OFBiz Team.