This release adds 1 notable feature for engineering teams evaluating rollout.
Published 2mo
File Storage & Sync
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
aes-256-gcm
docker
encryption
end-to-end-encryption
file-sharing
privacy
+5 more
react
s3-storage
self-hosted
typescript
zero-knowledge
Affected surfaces
auth
Summary
AI summaryContent Security Policy now dynamically allows the origin of CUSTOM_LOGO in img-src for external HTTP(S) logo URLs.
Full changelog
Content Security Policy Update for Custom Logo Support
🔄 Changed
- server: Content Security Policy now dynamically allows the origin of
CUSTOM_LOGOinimg-srcwhen an external HTTP(S) logo URL is configured, while keeping the default image policy strict.
🐳 Docker
- Image:
skyfay/skysend:v2.5.4 - Also tagged as:
latest,v2 - Platforms: linux/amd64, linux/arm64
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]