Show More
@@ -0,0 +1,45 b'' | |||||
|
1 | |RCE| 5.3.0 |RNS| | |||
|
2 | ----------------- | |||
|
3 | ||||
|
4 | Release Date | |||
|
5 | ^^^^^^^^^^^^ | |||
|
6 | ||||
|
7 | - 2024-09-17 | |||
|
8 | ||||
|
9 | ||||
|
10 | New Features | |||
|
11 | ^^^^^^^^^^^^ | |||
|
12 | ||||
|
13 | - System-info: expose rhodecode config for better visibility of set settings for RhodeCode system. | |||
|
14 | ||||
|
15 | ||||
|
16 | General | |||
|
17 | ^^^^^^^ | |||
|
18 | ||||
|
19 | ||||
|
20 | ||||
|
21 | Security | |||
|
22 | ^^^^^^^^ | |||
|
23 | ||||
|
24 | - Permissions: fixed security problem with apply-to-children from a repo group functionality breaking | |||
|
25 | permissions for private repositories exposing them despite repo being private. | |||
|
26 | - Git-lfs: fixed security problem with allowing off-chain attacks to replace OID data without validating hash for already present oids. | |||
|
27 | This allowed to replace an LFS OID content with malicious request tailored to open RhodeCode server. | |||
|
28 | ||||
|
29 | ||||
|
30 | Performance | |||
|
31 | ^^^^^^^^^^^ | |||
|
32 | ||||
|
33 | ||||
|
34 | ||||
|
35 | ||||
|
36 | Fixes | |||
|
37 | ^^^^^ | |||
|
38 | ||||
|
39 | - Fixed problems with incorrect user agent errors | |||
|
40 | ||||
|
41 | ||||
|
42 | Upgrade notes | |||
|
43 | ^^^^^^^^^^^^^ | |||
|
44 | ||||
|
45 | - RhodeCode 5.3.0 is unscheduled security release to address some build issues with 5.X images |
General Comments 0
You need to be logged in to leave comments.
Login now