Redmine 2.2.3 fix and security release
Redmine 2.2.3 fixes a few detects and was upgraded to Ruby on Rails 3.2.12 which fixes several vulnerabilities.
You can read the [[Changelog]] and download it at Rubyforge.
Redmine 2.2.3 fixes a few detects and was upgraded to Ruby on Rails 3.2.12 which fixes several vulnerabilities.
You can read the [[Changelog]] and download it at Rubyforge.
A new Rails vulnerability (CVE-2013-0333) has been discovered and affects those who are still using Redmine 1.4.7. In order to upgrade to the Rails version that fixes this vulnerability, you can apply the attached patch (attachment:redmine-1.4.7.patch) then run `bundle update rails`
.
Redmine 2.1.6 and 2.2.2 are not affected by this vulnerability.
Redmine version:2.2.2 is a maintenance release that fixes a few issues ([[Changelog]]). It’s available for download at Rubyforge.
Redmine 1.4.7 fixes a Ruby on Rails vulnerability (CVE-2013-0155) that was not fixed in Rails 2.3.15 and Redmine 1.4.6. It is strongly recommended for 1.4.x users to upgrade to this new release. This vulnerability was already fixed in Redmine 2.1.6 and Redmine 2.2.1.
Now that Rails 2.3 is no longer supported by the Rails core team and that security fixes are not guaranteed for this unsupported Rails version, Redmine 1.4.7 is the last 1.4.x release.
Several security vulnerabilities have been discovered in Ruby on Rails lately (read the announcement) and are fixed in all of these new Redmine releases. These vulnerabilities are considered critical, so upgrading as soon as possible is highly recommended.
These new releases are available at Rubyforge.
I am proud to announce that the new feature release Redmine version:2.2.0 is available for download at Rubyforge. Here are the highlights:
You can review all the changes in the [[Changelog]]. Redmine version:2.1.5 is a maintenance release for the 2.1.x branch.
Thanks to all contributors!
Redmine version:2.1.4 fixes 7 defects including an IE8 compatiblity issue. You can see the full list of changes in the [[Changelog]] and download this release at Rubyforge.
Redmine version:2.1.3 ([[Changelog]]) and Redmine version:1.4.5 ([[Changelog_1_4|Changelog]]) are new maintenance releases for 2.1.x and 1.4.x series. They include several bug fixes and can be downloaded at Rubyforge.
Redmine 2.1.2 is a maintenance release that fixes 12 defects and a XSS vulnerability discovered in Redmine 2.1.0 ([[Changelog]]).
It’s available for download at Rubyforge.
Redmine version:2.1.0 is the new feature release and is available for download at Rubyforge. It includes major and exclusive new features as well as many improvements and fixes. Here are the highlights:
You can review the full list of changes and fixes in the [[changelog]].
Redmine version:2.0.4 is a last maintenance release for the 2.0.x branch. Redmine 1.4.x will be maintained for security updates until the end of 2012.
导出 Atom