This release includes 1 security fix for security teams reviewing exposed deployments.
Published 4mo
Productivity & Wikis
✓ No known CVEs patched
This release patches 1 known CVE
Topics
appointment
appointment-booking
appointment-scheduling
appointments
calendar
calendars
+6 more
calendly-alternative
docker
elixir
phoenix-liveview
postgresql
scheduling
Affected surfaces
auth
rbac
Summary
AI summaryHarden multi‑account OAuth security, correctness, and test quality.
Full changelog
[0.99.34] — 2026-03-27
Bug Fixes
- core: Derive display location from meeting fields in AppointmentBuilder
- core: Remove unreachable pattern in scheduling_handlers with/else
- core: Translate email location labels at render time per recipient locale
- core: Set timezone via connect_params in availability refinement test
- core: Set timezone via connect_params in availability refinement test
- core: Remove double scrollbar on time slots in constrained-height embeds
- core: Reword comment to avoid triggering UseCoreInputs Credo check
- core: Fix timezone dropdown height, width, and popular ordering
- core: Improve Quill overview duration card visibility and avatar alignment
- core: Prevent time slots from stretching when period has few slots
- core: Remove HEEx comments from MJML heredoc strings
- core: Align video OAuth re-auth tests with current integration-matching logic
- core: Close multi-account integration gaps
- core: Address code review findings in multi-account integrations
- core: Harden multi-account OAuth security, correctness, and test quality
- core: Resolve code review findings in multi-account integrations
- core: Harden multi-account integration dedup, rate limiting, and observability
- core: Propagate persist_calendar_mapping errors in create path
- core: Restore first-attempt failure guards and add symlink check
- core: Address code review findings in worker hardening
- core: Harden Oban workers against edge cases and security gaps
- core: Harden dashboard against task timeouts and open redirects
- core: I18n organizer reminder email and sanitize error output in CalDAV sync
Features
- core: Replace TzExtra with curated continent city modules
- core: Multi-account integration support
- core: Multi-account integration support with per-account uniqueness
Security Fixes
- Harden multi‑account OAuth security, correctness, and test quality
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Beta — feedback welcome: [email protected]