From 395b74051ce974ced8a5abe378f66e9bcf0c8e34 Mon Sep 17 00:00:00 2001 From: Aleksander Machniak Date: Wed, 27 Mar 2013 16:32:51 +0100 Subject: Whitelist configuration options (user preferences) that can be changed using save-pref command Conflicts: program/lib/Roundcube/rcube_plugin.php program/lib/Roundcube/rcube_plugin_api.php Conflicts: CHANGELOG program/steps/utils/save_pref.inc --- CHANGELOG | 1 + 1 file changed, 1 insertion(+) (limited to 'CHANGELOG') diff --git a/CHANGELOG b/CHANGELOG index 754576e42..87dd6ae75 100644 --- a/CHANGELOG +++ b/CHANGELOG @@ -1,6 +1,7 @@ CHANGELOG Roundcube Webmail =========================== +- Fix security issue in save-pref command - Fix XSS vulnerability in handling of text/enriched messages (#1488806) - Fix compatybility with MDB2 2.5.0b4 (#1488779) - Fix lower-casing email address on replies (#1488598) -- cgit v1.2.3