Lauri Ojansivu
|
7ff1649d89
|
Updated security.md
Docker / build (push) Has been cancelled
Docker Image CI / build (push) Has been cancelled
Release Charts / release (push) Has been cancelled
Test suite / Meteor tests (push) Has been cancelled
Test suite / Coverage report (push) Has been cancelled
|
2025-11-14 07:47:31 +02:00 |
|
Lauri Ojansivu
|
a39ae31b45
|
Merge pull request #6012 from wekan/dependabot/github_actions/docker/metadata-action-5.9.0
Docker / build (push) Waiting to run
Docker Image CI / build (push) Waiting to run
Release Charts / release (push) Waiting to run
Test suite / Meteor tests (push) Waiting to run
Test suite / Coverage report (push) Blocked by required conditions
|
2025-11-13 17:19:00 +02:00 |
|
dependabot[bot]
|
6302a48221
|
Bump docker/metadata-action from 5.8.0 to 5.9.0
Bumps [docker/metadata-action](https://github.com/docker/metadata-action) from 5.8.0 to 5.9.0.
- [Release notes](https://github.com/docker/metadata-action/releases)
- [Commits](c1e51972af...318604b99e)
---
updated-dependencies:
- dependency-name: docker/metadata-action
dependency-version: 5.9.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2025-11-10 20:02:19 +00:00 |
|
Lauri Ojansivu
|
c277bee9d2
|
Merge pull request #6009 from brlin-tw/patch-issue-6008
Docker / build (push) Has been cancelled
Docker Image CI / build (push) Has been cancelled
Release Charts / release (push) Has been cancelled
Test suite / Meteor tests (push) Has been cancelled
Test suite / Coverage report (push) Has been cancelled
Fix Broken Strikethroughs in Markdown to HTML conversion.
|
2025-11-10 04:58:29 +02:00 |
|
Buo-ren Lin (OSSII)
|
c5f5ce126d
|
Fix Broken Strikethroughs in Markdown to HTML conversion.
Allow the s tag to be rendered.
Fixes #6008.
Signed-off-by: Buo-ren Lin (OSSII) <buoren.lin@ossii.com.tw>
|
2025-11-10 10:49:26 +08:00 |
|
Lauri Ojansivu
|
0004ae716b
|
v8.17
Docker / build (push) Has been cancelled
Docker Image CI / build (push) Has been cancelled
Release Charts / release (push) Has been cancelled
Test suite / Meteor tests (push) Has been cancelled
Test suite / Coverage report (push) Has been cancelled
|
2025-11-06 04:00:04 +02:00 |
|
Lauri Ojansivu
|
7f53dfac3c
|
Updated ChangeLog.
|
2025-11-06 03:33:46 +02:00 |
|
Lauri Ojansivu
|
18003900c2
|
Fix Worker Permissions does not allow for cards to be moved. - v8.15.
Thanks to xet7 !
Fixes #5990
|
2025-11-06 03:31:14 +02:00 |
|
Lauri Ojansivu
|
fe104791b5
|
Updated ChangeLog.
|
2025-11-06 03:08:51 +02:00 |
|
Lauri Ojansivu
|
6244657ca5
|
Fix Workspaces at All Boards to have correct count of remaining etc, while starred also at Starred/Favorites.
Thanks to xet7 !
|
2025-11-06 03:06:16 +02:00 |
|
Lauri Ojansivu
|
46866dac85
|
Updated ChangeLog.
|
2025-11-06 02:46:52 +02:00 |
|
Lauri Ojansivu
|
c829c073cf
|
Remove not working Bookmark menu option.
Thanks to xet7 !
|
2025-11-06 02:44:30 +02:00 |
|
Lauri Ojansivu
|
0772ca4036
|
Updated ChangeLog.
|
2025-11-06 02:36:10 +02:00 |
|
Lauri Ojansivu
|
581733d605
|
Fix Regression - Show calendar popup at set due date.
Thanks to xet7 !
Fixes #5978
|
2025-11-06 02:32:34 +02:00 |
|
Lauri Ojansivu
|
b02af27ac3
|
Updated ChangeLog.
|
2025-11-06 01:06:19 +02:00 |
|
Lauri Ojansivu
|
20af0a2ef5
|
Try to fix Edit Custom Fields button not working. Removed duplicate option from Boards Settings.
Thanks to xet7 !
Fixes #5988
|
2025-11-06 01:04:20 +02:00 |
|
Lauri Ojansivu
|
c58ab5b07d
|
Updated ChangeLog.
|
2025-11-06 00:37:42 +02:00 |
|
Lauri Ojansivu
|
e5e711c938
|
Fix Card emoji issues.
Thanks to xet7 !
Fixes #5995
|
2025-11-06 00:35:49 +02:00 |
|
Lauri Ojansivu
|
42594abe4e
|
Updated ChangeLog.
|
2025-11-06 00:30:08 +02:00 |
|
Lauri Ojansivu
|
0afbdc95b4
|
Feature: Workspaces, at All Boards page.
Thanks to xet7 !
|
2025-11-06 00:26:35 +02:00 |
|
Lauri Ojansivu
|
16a74bb748
|
Updated ChangeLog.
Docker / build (push) Waiting to run
Docker Image CI / build (push) Waiting to run
Release Charts / release (push) Waiting to run
Test suite / Meteor tests (push) Waiting to run
Test suite / Coverage report (push) Blocked by required conditions
|
2025-11-05 20:51:44 +02:00 |
|
Lauri Ojansivu
|
8711b476be
|
Fix star board.
Thanks to xet7 !
|
2025-11-05 20:50:28 +02:00 |
|
Lauri Ojansivu
|
df9fba4765
|
Updated translations.
|
2025-11-05 20:26:29 +02:00 |
|
Lauri Ojansivu
|
7d27139aa9
|
Updated ChangeLog.
|
2025-11-05 20:25:07 +02:00 |
|
Lauri Ojansivu
|
e4638d5fbc
|
Fixed sidebar migrations to be per-board, not global. Clarified translations.
Thanks to xet7 !
|
2025-11-05 20:22:56 +02:00 |
|
Lauri Ojansivu
|
bc5854dd29
|
Updated ChangeLog.
|
2025-11-05 19:04:47 +02:00 |
|
Lauri Ojansivu
|
ba49d4d140
|
Remove old translations and code not in use anymore.
Thanks to xet7 !
|
2025-11-05 19:03:21 +02:00 |
|
Lauri Ojansivu
|
71b7dcffb5
|
Updated ChangeLog.
|
2025-11-05 18:46:56 +02:00 |
|
Lauri Ojansivu
|
7713e613b4
|
Fix 8.16 Lists with no items are deleted every time when board is opened. Moved migrations to right sidebar.
Thanks to xet7 !
Fixes #5994
|
2025-11-05 18:44:48 +02:00 |
|
Lauri Ojansivu
|
91a0aa7387
|
Updated ChangeLog.
|
2025-11-05 17:08:52 +02:00 |
|
Lauri Ojansivu
|
fbd6b920ef
|
Updated ChangeLog.
|
2025-11-05 17:08:10 +02:00 |
|
Lauri Ojansivu
|
1b25d1d572
|
Moved migrations from opening board to right sidebar / Migrations.
Thanks to xet7 !
|
2025-11-05 17:06:26 +02:00 |
|
Lauri Ojansivu
|
e93e72234c
|
Updated ChangeLog.
|
2025-11-05 16:38:10 +02:00 |
|
Lauri Ojansivu
|
15d9b0ae3a
|
Updated ChangeLog.
|
2025-11-05 16:38:03 +02:00 |
|
Lauri Ojansivu
|
550d87ac6c
|
Fix 8.16: Switching Board View fails with 403 error.
Thanks to xet7 !
|
2025-11-05 16:35:29 +02:00 |
|
Lauri Ojansivu
|
f8e576e890
|
Try to fix Snap.
Docker / build (push) Has been cancelled
Docker Image CI / build (push) Has been cancelled
Release Charts / release (push) Has been cancelled
Test suite / Meteor tests (push) Has been cancelled
Test suite / Coverage report (push) Has been cancelled
Thanks to xet7 !
|
2025-11-02 22:23:16 +02:00 |
|
Lauri Ojansivu
|
fb8ef4d978
|
Try to fix Snap.
Thanks to xet7 !
|
2025-11-02 21:36:17 +02:00 |
|
Lauri Ojansivu
|
5127e87898
|
Try to fix Snap.
Thanks to xet7 !
|
2025-11-02 21:33:06 +02:00 |
|
Lauri Ojansivu
|
3f2d4444e4
|
Try to fix Snap. Part 2.
Docker / build (push) Waiting to run
Docker Image CI / build (push) Waiting to run
Release Charts / release (push) Waiting to run
Test suite / Meteor tests (push) Waiting to run
Test suite / Coverage report (push) Blocked by required conditions
Thanks to xet7 !
|
2025-11-02 16:14:45 +02:00 |
|
Lauri Ojansivu
|
9c7badb0eb
|
Merge branch 'main' of github.com:wekan/wekan
|
2025-11-02 16:04:16 +02:00 |
|
Lauri Ojansivu
|
9d9f77a731
|
Try to fix Snap.
Thanks to xet7 !
|
2025-11-02 16:02:53 +02:00 |
|
Lauri Ojansivu
|
c400ce74b1
|
v8.16
|
2025-11-02 12:09:27 +02:00 |
|
Lauri Ojansivu
|
c2e20ee4a3
|
Updated ChangeLog.
Docker / build (push) Waiting to run
Docker Image CI / build (push) Waiting to run
Release Charts / release (push) Waiting to run
Test suite / Meteor tests (push) Waiting to run
Test suite / Coverage report (push) Blocked by required conditions
|
2025-11-02 11:43:33 +02:00 |
|
Lauri Ojansivu
|
ccd9034339
|
Fix SECURITY ISSUE 5: Attachment API uses bearer value as userId and DoS (Low).
Thanks to Siam Thanat Hack (STH) and xet7 !
|
2025-11-02 11:42:07 +02:00 |
|
Lauri Ojansivu
|
0a1a075f31
|
Fix SECURITY ISSUE 4: Members can forge others’ votes (Low). Bonus: Similar fixes to planning poker too done by xet7.
Thanks to Siam Thanat Hack (STH) and xet7 !
|
2025-11-02 11:12:41 +02:00 |
|
Lauri Ojansivu
|
4aaeec9515
|
Updated ChangeLog.
|
2025-11-02 10:17:33 +02:00 |
|
Lauri Ojansivu
|
ea310d7508
|
Fix SECURITY ISSUE 3: Unauthenticated (or any) user can update board sort.
Thanks to Siam Thanat Hack (STH) !
|
2025-11-02 10:13:45 +02:00 |
|
Lauri Ojansivu
|
0a2e6a0c38
|
Updated ChangeLog.
|
2025-11-02 09:20:28 +02:00 |
|
Lauri Ojansivu
|
f26d582018
|
Fix SECURITY ISSUE 2: Access to boards of any Orgs/Teams, and avatar permissions.
Thanks to Siam Thanat Hack (STH) !
|
2025-11-02 09:11:50 +02:00 |
|
Lauri Ojansivu
|
e9a727301d
|
Fix SECURITY ISSUE 1: File Attachments enables stored XSS (High).
Thanks to Siam Thanat Hack (STH) !
|
2025-11-02 08:36:29 +02:00 |
|