Documentation Home

Broadleaf Enterprise 4.2.16-GA

Released on October 12, 2023

This is the 16th patch release for the Broadleaf Enterprise 4.2.x module.

An at-a-glance view of the issues that were closed in this release

Major Bug(1)

  • Fixed the Insecure Direct Object Reference (IDOR) vulnerability that was reported. Added additional checks for the sandboxes' relation to admin user during promote operation.

Enhancements(1)

  • Merged bug fixes and enhancements included in 4.0.21-GA

Total Resolved Issues: 2