Advisory from Netsparker - Openfire - v4.4.0

Hello,

While testing the Netsparker web application security scanner we identified a vulnerability in Openfire v4.4.0.

Can you please advise whom shall we contact to disclose the vulnerability details so it can be fixed?

Please email me: daniel (at) netsparker (dot) com

Looking forward to hearing from you.

Regards,

Daniel Bishtawi

You can first check if you still find vulnerabilities in 4.4.1 version. Then you can report your findings to security [ at ] igniterealtime.org