Skip to content

freescout

v1.8.227 Security

This release includes 8 security fixes for security teams reviewing exposed deployments.

Published 22d Communication & Email
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 8 known CVEs

Topics

customer-support help-desk helpdesk helpdesk-ticketing helpscout laravel
+8 more
osticket-alternative php shared-mailboxes support ticketing ticketing-system zendesk zendesk-alternative

Affected surfaces

auth rbac deps

Summary

AI summary

Patched security issues including conversation permissions and multiple dependency vulnerabilities.

Full changelog

Fixed

  • Fixed permissions check when merging conversations (Security: GHSA-v8vc-cmf9-gg2c)
  • Patched security issues in dependency libraries: GHSA-vm85-hxw5-5432, GHSA-hq7v-mx3g-29hw, GHSA-34xg-wgjx-8xph, GHSA-cwxw-98qj-8qjx, GHSA-wpwq-4j6v-78m3, GHSA-h5x3-xfc9-m39h, GHSA-5vg9-5847-vvmq

Security Fixes

  • GHSA-v8vc-cmf9-gg2c — Fixed permissions check when merging conversations
  • dep: GHSA-vm85-hxw5-5432
  • dep: GHSA-hq7v-mx3g-29hw
  • dep: GHSA-34xg-wgjx-8xph
  • dep: GHSA-cwxw-98qj-8qjx
  • dep: GHSA-wpwq-4j6v-78m3
  • dep: GHSA-h5x3-xfc9-m39h
  • dep: GHSA-5vg9-5847-vvmq

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track freescout

Get notified when new releases ship.

Sign up free

About freescout

FreeScout — Free self-hosted help desk & shared mailbox (Zendesk / Help Scout alternative)

All releases →

Related context

Related tools

Earlier breaking changes

  • v1.8.221 Links to attachments uploaded before 2020-03-06 will become unavailable.
  • v1.8.220 Replies to previously received email notifications will not be sent to customers.

Beta — feedback welcome: [email protected]