Show More
@@ -0,0 +1,45 b'' | |||
|
1 | |RCE| 5.3.0 |RNS| | |
|
2 | ----------------- | |
|
3 | ||
|
4 | Release Date | |
|
5 | ^^^^^^^^^^^^ | |
|
6 | ||
|
7 | - 2024-09-17 | |
|
8 | ||
|
9 | ||
|
10 | New Features | |
|
11 | ^^^^^^^^^^^^ | |
|
12 | ||
|
13 | - System-info: expose rhodecode config for better visibility of set settings for RhodeCode system. | |
|
14 | ||
|
15 | ||
|
16 | General | |
|
17 | ^^^^^^^ | |
|
18 | ||
|
19 | ||
|
20 | ||
|
21 | Security | |
|
22 | ^^^^^^^^ | |
|
23 | ||
|
24 | - Permissions: fixed security problem with apply-to-children from a repo group functionality breaking | |
|
25 | permissions for private repositories exposing them despite repo being private. | |
|
26 | - Git-lfs: fixed security problem with allowing off-chain attacks to replace OID data without validating hash for already present oids. | |
|
27 | This allowed to replace an LFS OID content with malicious request tailored to open RhodeCode server. | |
|
28 | ||
|
29 | ||
|
30 | Performance | |
|
31 | ^^^^^^^^^^^ | |
|
32 | ||
|
33 | ||
|
34 | ||
|
35 | ||
|
36 | Fixes | |
|
37 | ^^^^^ | |
|
38 | ||
|
39 | - Fixed problems with incorrect user agent errors | |
|
40 | ||
|
41 | ||
|
42 | Upgrade notes | |
|
43 | ^^^^^^^^^^^^^ | |
|
44 | ||
|
45 | - RhodeCode 5.3.0 is unscheduled security release to address some build issues with 5.X images |
General Comments 0
You need to be logged in to leave comments.
Login now