Application vulnerabilities

I am testing this application at my workplace. However, before I can really move forward, my boss has asked me to investigate any vulnerabilities that the application may have. I am new to security, so I don’t really know how to do this. Any ideas? Are there any known security holes? How would I even test for this?

I don’t know any xmpp server vulnerabilities test. There is a list of some reported and fixed vulnerabilities here http://community.igniterealtime.org/docs/DOC-1842 This is not a complete list. Known and not fixed vulnerabilities are usually not posted publicly on this site. But you can search the Internet for “Openfire Security Vulnerability” and maybe will come up with something new.