From: Dan Brown Date: Sat, 16 Jan 2021 18:23:19 +0000 (+0000) Subject: Added v0.31.4 blogpost X-Git-Url: http://source.bookstackapp.com/website/commitdiff_plain/0acbf3ef4098d40c09a19105dd70a50e7b941c43 Added v0.31.4 blogpost --- diff --git a/content/blog/beta-security-release-v0-31-4.md b/content/blog/beta-security-release-v0-31-4.md new file mode 100644 index 0000000..29b29d5 --- /dev/null +++ b/content/blog/beta-security-release-v0-31-4.md @@ -0,0 +1,32 @@ ++++ +categories = ["Releases"] +tags = ["Releases"] +title = "Beta Security Release v0.31.4" +date = 2021-01-16T18:00:00Z +author = "Dan Brown" +image = "/images/blog-cover-images/gate-masaaki-komori.jpg" +slug = "beta-release-v0-31-4" +draft = false ++++ + +BookStack v0.31.4 has been released. This security release updates the [Laravel framework version](https://blog.laravel.com/security-laravel-62012-7303-released), due to a vulnerability that could occur if request data was crafted and then used in a certain way. While it is not known if such a case exists in BookStack, this release updates the framework as a pre-emptive measure. + +* [Update instructions](https://www.bookstackapp.com/docs/admin/updates) +* [GitHub release page](https://github.com/BookStackApp/BookStack/releases/tag/v0.31.4) + +### Markdown editing in v0.31 + +In addition to this security release, A range of patch releases (v0.31.1, v0.31.2 & v0.31.3) have been made available recently +which largely covers issues in how markdown content is rendered upon save. In BookStack v0.31 I changed the way we render +markdown content so it's done server-side upon save. This was done so that markdown could be used via the API and to prepare for future changes. These patch releases have worked to better align the abilities of the new back-end renderer and the existing front-end renderer, that you see as a preview when editing a page. + +### For more information + +If you have any questions or comments about this advisory: +* Open an issue in [the BookStack GitHub repository](BookStackApp/BookStack/issues). +* Ask on the [BookStack Discord chat](https://discord.gg/ztkBqR2). +* Follow the [BookStack Security Advice](https://github.com/BookStackApp/BookStack#-security) to contact someone privately. + +---- + +Header Image Credits: Photo by Masaaki Komori on Unsplash diff --git a/static/images/blog-cover-images/gate-masaaki-komori.jpg b/static/images/blog-cover-images/gate-masaaki-komori.jpg new file mode 100644 index 0000000..18782ab --- /dev/null +++ b/static/images/blog-cover-images/gate-masaaki-komori.jpg @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:0786d328fe87139a692de1b40d077ae3b1d8469d39844af1a30f2281f2d970d8 +size 219025