Skip to content

Releases: linuxserver/docker-bookstack

v0.26.4-ls57

26 Aug 19:17

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

Update instructions

The release enhances the security of BookStack in a few different areas:

  • Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
  • Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
  • Updated the provided, and added an additional, .htaccess file to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.

v0.26.4-ls56

19 Aug 19:17

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

Update instructions

The release enhances the security of BookStack in a few different areas:

  • Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
  • Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
  • Updated the provided, and added an additional, .htaccess file to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.

v0.26.4-ls55

06 Aug 21:47

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

Update instructions

The release enhances the security of BookStack in a few different areas:

  • Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
  • Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
  • Updated the provided, and added an additional, .htaccess file to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.

v0.26.3-ls55

05 Aug 17:54

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

This release improves the escape logic for scripts that have been placed in page content. Thanks to @billford for raising this issue. (#1531)

v0.26.3-ls54

29 Jul 19:13

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

This release improves the escape logic for scripts that have been placed in page content. Thanks to @billford for raising this issue. (#1531)

v0.26.3-ls53

26 Jul 22:22

Choose a tag to compare

LinuxServer Changes:

Use old version of tidyhtml pending upstream fixes.
bookstack Changes:

Security Release

This release improves the escape logic for scripts that have been placed in page content. Thanks to @billford for raising this issue. (#1531)

v0.26.3-ls52

22 Jul 19:31

Choose a tag to compare

LinuxServer Changes:

Rebasing to alpine 3.10.
bookstack Changes:

Security Release

This release improves the escape logic for scripts that have been placed in page content. Thanks to @billford for raising this issue. (#1531)

v0.26.3-ls51

10 Jul 19:51

Choose a tag to compare

LinuxServer Changes:

Rebasing to alpine 3.10.
bookstack Changes:

Security Release

This release improves the escape logic for scripts that have been placed in page content. Thanks to @billford for raising this issue. (#1531)

v0.26.2-ls51

08 Jul 19:23

Choose a tag to compare

LinuxServer Changes:

Rebasing to alpine 3.10.
bookstack Changes:

This release contains the following fixes and changes:

  • Updated Russian translations. Thanks to @kostefun. (#1446, #1445, #1444, #1443)
  • Updated Dutch translations. Thanks to @NootoNooto. (#1437)
  • Updated page navigation to exclude empty heading items. (#1429)
  • Updated custom-homepage views to display more consistently. (#1423)
  • Updated image uploads to resize at double the previous resolution. (#1108)
  • Fixed issue where chapter description would not show on book export. (#1465)
  • Fixed page navigation to work on when used on mobile screen sizes. (#1454)
  • Fixed issue casing a redirect to the 404 page upon login. (#1452)
  • Fixed missing search bar on mobile search page. (#1450)
  • Fixed issue where a page could be deleted when previously set as the homepage option. (#1447)
  • Fixed issue causing horizontal scrollbar to show on some mobile views. (#1441)
  • Fixed text shown on 'Info' mobile tab being overly faded-out. (#1441)
  • Fixed issue where some UI elements would shown over the page editor when in mobile full-screen mode. (#1424)
  • Fixed issue where pasting table content would insert as an image instead of a table or text. (#987)
  • Fixed issue where book description would not show if it contained multi-byte characters. (#816)

v0.26.2-ls50

07 Jul 21:17

Choose a tag to compare

LinuxServer Changes:

Rebasing to alpine 3.10.
bookstack Changes:

This release contains the following fixes and changes:

  • Updated Russian translations. Thanks to @kostefun. (#1446, #1445, #1444, #1443)
  • Updated Dutch translations. Thanks to @NootoNooto. (#1437)
  • Updated page navigation to exclude empty heading items. (#1429)
  • Updated custom-homepage views to display more consistently. (#1423)
  • Updated image uploads to resize at double the previous resolution. (#1108)
  • Fixed issue where chapter description would not show on book export. (#1465)
  • Fixed page navigation to work on when used on mobile screen sizes. (#1454)
  • Fixed issue casing a redirect to the 404 page upon login. (#1452)
  • Fixed missing search bar on mobile search page. (#1450)
  • Fixed issue where a page could be deleted when previously set as the homepage option. (#1447)
  • Fixed issue causing horizontal scrollbar to show on some mobile views. (#1441)
  • Fixed text shown on 'Info' mobile tab being overly faded-out. (#1441)
  • Fixed issue where some UI elements would shown over the page editor when in mobile full-screen mode. (#1424)
  • Fixed issue where pasting table content would insert as an image instead of a table or text. (#987)
  • Fixed issue where book description would not show if it contained multi-byte characters. (#816)