This release includes 1 security fix for security teams reviewing exposed deployments.
Published 3d
Productivity & Wikis
✓ No known CVEs patched
This release patches 1 known CVE
Topics
address-book
caldav-server
calendar
carddav-server
collaboration
egroupware
+4 more
javascript
php
project-management
webmail
Summary
AI summarySecurity vulnerabilities fixed across Admin, Auth/OpenIDConnect, and ImportExport modules.
Full changelog
- SECURITY: this release fixes multiple security vulnerabilities, everyone is strongly adviced to update to it!
- Admin: fix lost background image, if config from apps like calendar or addressbook is saved
- Adressbook/other apps: fix merge-print with converting to PDF failed after last security release
- Auth/OpenIDConnect: only use unverified email, if explicitly enabled in configuration
- ImportExport: fix stalled installation caused by last security hardening
- ProjectManager: fix SQL error when searching in element list for 2 or more keywords
Security Fixes
- Multiple unspecified security vulnerabilities fixed; all users strongly advised to update.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About egroupware
Software suite including calendars, address books, notepad, project management tools, client relationship management tools (CRM), knowledge management tools, a wiki and a CMS.
Beta — feedback welcome: [email protected]