Project

General

Profile

Actions

tickets #158293

closed

Update Weblate to remediate CVE-2022-23915

Added by crameleon 3 months ago. Updated 28 days ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Weblate
Target version:
-
Start date:
2024-03-31
Due date:
% Done:

0%

Estimated time:

Description

The currently installed version was found to be 28 versions behind the latest stable release.
Since then, 2 security issues have been resolved, one of them I consider relevant: https://docs.weblate.org/de/weblate-4.14/changes.html#weblate-4-11-1.
I understand new/untrusted users cannot use the "add project" and "add component" features, but I think it would still be good to remediate considering the application is running in our internal network.

Actions

Also available in: Atom PDF