Releases: linuxserver/docker-bookstack
v0.26.4-ls57
LinuxServer Changes:
Use old version of tidyhtml pending upstream fixes.
bookstack Changes:
Security Release
The release enhances the security of BookStack in a few different areas:
- Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
- Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
- Updated the provided, and added an additional,
.htaccessfile to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.
v0.26.4-ls56
LinuxServer Changes:
Use old version of tidyhtml pending upstream fixes.
bookstack Changes:
Security Release
The release enhances the security of BookStack in a few different areas:
- Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
- Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
- Updated the provided, and added an additional,
.htaccessfile to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.
v0.26.4-ls55
LinuxServer Changes:
Use old version of tidyhtml pending upstream fixes.
bookstack Changes:
Security Release
The release enhances the security of BookStack in a few different areas:
- Updated user profile behaviour so that users cannot change their email address unless they have permission to manage users. This is to prevent a user acting as an imposter, changing their email to one they don't own. Thanks to @Irrational-NX for raising.
- Improved the script escaping logic that was enhanced in the previous release, by also checking for iframes using javascript or data urls. Thanks again to @billford for raising this issue. (#1531)
- Updated the provided, and added an additional,
.htaccessfile to prevent apache indexes from listing image directories. Thanks to @davidtessier for raising.
v0.26.3-ls55
v0.26.3-ls54
v0.26.3-ls53
v0.26.3-ls52
v0.26.3-ls51
v0.26.2-ls51
LinuxServer Changes:
Rebasing to alpine 3.10.
bookstack Changes:
This release contains the following fixes and changes:
- Updated Russian translations. Thanks to @kostefun. (#1446, #1445, #1444, #1443)
- Updated Dutch translations. Thanks to @NootoNooto. (#1437)
- Updated page navigation to exclude empty heading items. (#1429)
- Updated custom-homepage views to display more consistently. (#1423)
- Updated image uploads to resize at double the previous resolution. (#1108)
- Fixed issue where chapter description would not show on book export. (#1465)
- Fixed page navigation to work on when used on mobile screen sizes. (#1454)
- Fixed issue casing a redirect to the 404 page upon login. (#1452)
- Fixed missing search bar on mobile search page. (#1450)
- Fixed issue where a page could be deleted when previously set as the homepage option. (#1447)
- Fixed issue causing horizontal scrollbar to show on some mobile views. (#1441)
- Fixed text shown on 'Info' mobile tab being overly faded-out. (#1441)
- Fixed issue where some UI elements would shown over the page editor when in mobile full-screen mode. (#1424)
- Fixed issue where pasting table content would insert as an image instead of a table or text. (#987)
- Fixed issue where book description would not show if it contained multi-byte characters. (#816)
v0.26.2-ls50
LinuxServer Changes:
Rebasing to alpine 3.10.
bookstack Changes:
This release contains the following fixes and changes:
- Updated Russian translations. Thanks to @kostefun. (#1446, #1445, #1444, #1443)
- Updated Dutch translations. Thanks to @NootoNooto. (#1437)
- Updated page navigation to exclude empty heading items. (#1429)
- Updated custom-homepage views to display more consistently. (#1423)
- Updated image uploads to resize at double the previous resolution. (#1108)
- Fixed issue where chapter description would not show on book export. (#1465)
- Fixed page navigation to work on when used on mobile screen sizes. (#1454)
- Fixed issue casing a redirect to the 404 page upon login. (#1452)
- Fixed missing search bar on mobile search page. (#1450)
- Fixed issue where a page could be deleted when previously set as the homepage option. (#1447)
- Fixed issue causing horizontal scrollbar to show on some mobile views. (#1441)
- Fixed text shown on 'Info' mobile tab being overly faded-out. (#1441)
- Fixed issue where some UI elements would shown over the page editor when in mobile full-screen mode. (#1424)
- Fixed issue where pasting table content would insert as an image instead of a table or text. (#987)
- Fixed issue where book description would not show if it contained multi-byte characters. (#816)