Newsletters

Select newsletters below and click the button to sign up!

Boston News NY News
DC News Internet Daily
SiliconValley News
InternetNews Business Report




Become a Marketplace Partner



Partner With Us















Internetnews Bloggers

Recent Entries

Archives

September 2009
Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30      

Monthly Archives

Search The Blog

Software's Sublimation by Alex Goldman (bio)

Data's diffusion throughout business and into the cloud



Joomla responds to IBM X-Force security report

joomla-logo.jpgEarlier this week, an IBM X-Force report said that the open source Joomla! content management system led in unpatched vulnerabilities.

Elin Waring, president of the Open Source Matters foundation, which supports the Joomla! project, said that characterization is wrong.

The high rank is due to third party apps developed for Joomla! and not due to vulernabilities in Joomla! itself, she said in a blog post.

"Every six months I explain to the folks at IBM that the Joomla! Project isn't the vendor for third party extensions. They listen, but they don't change," she wrote.

IBM did not immediately return a request for comment, but it sounds as if blaming Joomla! for flaws in extensions would be like blaming Microsoft for the sum total of all flaws in all apps that run on its Windows operating system.

Waring also disputed the number of third party extension vulnerabilities cited by IBM X-Force's report. Some extensions cited by IBM have not been updated since 2005. Others are in pre-release. A few related to actual extensions in current use, she said.

"I think we're seeing solid, steady improvement in adoption of good security practices in the third party development community, and I think that is really contributing to the incredible growth and strength of the Joomla project," Waring concluded.

| Comments (1) | TrackBacks (0) | Share

0 TrackBacks

Listed below are links to blogs that reference this entry: Joomla responds to IBM X-Force security report.

TrackBack URL for this entry: https://swarm.jupitermedia.com/mt-tb.cgi/8836

1 Comments

barot said:

Hi,

I completely agree that when you address flaw's and loop holes in software , M$ is at top.
people usually forget that opensource softwares dosen't cost them anything but giving them an option to start.
Nothing is perfect, We need to make it perfect.

people should appriciate efforts made by open source communities in positive manner.

Leave a comment