This release includes 1 security fix for security teams reviewing exposed deployments.
Published 2d
Productivity & Wikis
✓ No known CVEs patched
This release patches 1 known CVE
Topics
address-book
caldav-server
calendar
carddav-server
collaboration
egroupware
+4 more
javascript
php
project-management
webmail
Affected surfaces
auth
Summary
AI summarySecurity vulnerabilities fixed and support for version 23.1 ends on August 15 2026.
Full changelog
- SECURITY: this release fixes multiple security vulnerabilities, everyone is strongly adviced to update to it!
- Adressbook/other apps: fix merge-print with converting to PDF failed after last security release
- Auth/OpenIDConnect: only use unverified email, if explicitly enabled in configuration
- IMPORTANT: security coverage for 23.1 will end August 15th 2026, update to 26.x to receive further security updates!
Security Fixes
- Multiple unspecified security vulnerabilities fixed; users must update immediately.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About egroupware
Software suite including calendars, address books, notepad, project management tools, client relationship management tools (CRM), knowledge management tools, a wiki and a CMS.
Beta — feedback welcome: [email protected]