Release v2.0.2 - Fix HTML injection/XSS vulnerability in filenames of attached files (CVE-2025-62796)
This release fixes a security vulnerability that allowed HTML injection/XSS (CVE-2025-62796).
more ...This release fixes a security vulnerability that allowed HTML injection/XSS (CVE-2025-62796).
more ...This release changes configuration defaults including switching the template and removing legacy features.
more ...This release asks for confirmation, before loading burn after reading pastes.
more ...This release adds translations for Japanese & Arabic and increases the minimal required PHP version to 7.3.
more ...This release contains an improvement for the S3 storage & updates several libraries.
more ...This release reverts a filesystem purge lookup change and adds a script for administrative tasks.
more ...This release improves the safety of the SVG attachment preview, adds Google Cloud Storage and Oracle database support, and new translations.
more ...This release improves the safety of the SVG attachment preview, adds Google Cloud Storage and Oracle database support, and new translations.
more ...This release fixes a number of smaller issues and adds new translations.
more ...This release fixes HTML entities, custom expiration and pasting into password field.
more ...