Skip to content

Commit 9ba5e3d

Browse files
committed
Security updates 1.6.12 and 1.5.12
1 parent 2ab29af commit 9ba5e3d

File tree

2 files changed

+28
-10
lines changed

2 files changed

+28
-10
lines changed

_data/releases.json

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,25 +1,25 @@
11
{
22
"stable": {
33
"name": "Stable version",
4-
"version": "1.6.11",
4+
"version": "1.6.12",
55
"sources": [
66
{
77
"package": "Dependent",
8-
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.11/roundcubemail-1.6.11.tar.gz",
8+
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.12/roundcubemail-1.6.12.tar.gz",
99
"size": "3.7 MB",
10-
"checksum": "199e2713f55da2e91af0e2382b2abf7dab6e1bf1f773317c8a4e64dadc0fae8f"
10+
"checksum": "265afb0851cdcee94a26f6042c32b7ec599bb3b079bbd5dd5335f05cd6ffa722"
1111
},
1212
{
1313
"package": "Complete",
14-
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.11/roundcubemail-1.6.11-complete.tar.gz",
14+
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.12/roundcubemail-1.6.12-complete.tar.gz",
1515
"size": "5.6 MB",
16-
"checksum": "a230e432065555bfa27bea3fcf4ac672f2359ef28ad84f5945ea3ccf702e7466"
16+
"checksum": "180b485dfde1898b2f1ac8046b34063898d263d7605fc64c41e230e3418f2a30"
1717
},
1818
{
1919
"package": "Framework",
20-
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.11/roundcube-framework-1.6.11.tar.gz",
20+
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.6.12/roundcube-framework-1.6.12.tar.gz",
2121
"size": "1.1 MB",
22-
"checksum": "a2a1fe1c7e6ed5895b6d98393e038b33b0ddf9b7d80eed4fb36192b2c20e8694"
22+
"checksum": "926c61d570843c5b30e4c0c7779f45e2a58f7f0668294d3ff6d1a597080ee904"
2323
}
2424
]
2525
},
@@ -33,10 +33,10 @@
3333
"name": "LTS versions",
3434
"sources": [
3535
{
36-
"package": "1.5.11 - Complete",
37-
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.5.11/roundcubemail-1.5.11-complete.tar.gz",
36+
"package": "1.5.12 - Complete",
37+
"url": "https://github.com/roundcube/roundcubemail/releases/download/1.5.12/roundcubemail-1.5.12-complete.tar.gz",
3838
"size": "7.2 MB",
39-
"checksum": "1545b859235befd39387f9a9266faf0c7286b5c4df00f7637601845484a4fcfc"
39+
"checksum": "f2c850f537fba8c9b9674f957a7fd54bd1f00a4edc256c1b52806df8ed0581a3"
4040
}
4141
]
4242
},
Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
---
2+
layout: article
3+
title: Security updates 1.6.12 and 1.5.12 released
4+
tags: releases updates security
5+
---
6+
7+
We just published security updates to the 1.6 and 1.5 LTS versions of Roundcube Webmail.
8+
They both contain fixes for recently reported two security vulnerabilities.
9+
10+
## Security fixes
11+
12+
- Fix Cross-Site-Scripting vulnerability via SVG's animate tag reported by Valentin T., CrowdStrike.
13+
- Fix Information Disclosure vulnerability in the HTML style sanitizer reported by somerandomdev.
14+
15+
See the full changelogs in the release notes on the Github download pages for the updated versions
16+
[1.6.12](https://github.com/roundcube/roundcubemail/releases/tag/1.6.12) and [1.5.12](https://github.com/roundcube/roundcubemail/releases/tag/1.5.12).
17+
18+
We strongly recommend to update all productive installations of Roundcube 1.6.x and 1.5.x with this new versions.

0 commit comments

Comments
 (0)