This release includes 8 security fixes for security teams reviewing exposed deployments.
Published 22d
Communication & Email
✓ No known CVEs patched
This release patches 8 known CVEs
Topics
customer-support
help-desk
helpdesk
helpdesk-ticketing
helpscout
laravel
+8 more
osticket-alternative
php
shared-mailboxes
support
ticketing
ticketing-system
zendesk
zendesk-alternative
Affected surfaces
auth
rbac
deps
Summary
AI summaryPatched security issues including conversation permissions and multiple dependency vulnerabilities.
Full changelog
Fixed
- Fixed permissions check when merging conversations (Security: GHSA-v8vc-cmf9-gg2c)
- Patched security issues in dependency libraries: GHSA-vm85-hxw5-5432, GHSA-hq7v-mx3g-29hw, GHSA-34xg-wgjx-8xph, GHSA-cwxw-98qj-8qjx, GHSA-wpwq-4j6v-78m3, GHSA-h5x3-xfc9-m39h, GHSA-5vg9-5847-vvmq
Security Fixes
- GHSA-v8vc-cmf9-gg2c — Fixed permissions check when merging conversations
- dep: GHSA-vm85-hxw5-5432
- dep: GHSA-hq7v-mx3g-29hw
- dep: GHSA-34xg-wgjx-8xph
- dep: GHSA-cwxw-98qj-8qjx
- dep: GHSA-wpwq-4j6v-78m3
- dep: GHSA-h5x3-xfc9-m39h
- dep: GHSA-5vg9-5847-vvmq
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About freescout
FreeScout — Free self-hosted help desk & shared mailbox (Zendesk / Help Scout alternative)
Beta — feedback welcome: [email protected]