Forum Moderators: phranque

Message Too Old, No Replies

Apache Security Report 2019

         

engine

12:06 pm on Feb 14, 2020 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



Apache Software Foundation released its Security Report for 2019, and it shows how it dealt with 620 threads across all projects.

320 of the reports were over vulnerabilities, and only 19 of those are still open in "triage", and usually processed within 90-days. Some low priority updates are held over until the next pre-planed updates.

https://blogs.apache.org/foundation/mediaresource/fa9b3fe8-0616-40ee-a93e-b96b5dce460f

[blogs.apache.org...]

lucy24

7:24 pm on Feb 14, 2020 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month



<tangent>
Not long ago I was bemused to discover that apache dot org, aka The Horse’s Mouth, does not redirect to https. (I have old bookmarks.) Like most human browsers, mine sends the Upgrade-Insecure-Requests header, so they’ve got no excuse. Seriously, Apache?
</tangent>