9.5.12
trasher
released this
24 Jan 13:52
·
4692 commits
to 10.0/bugfixes
since this release
This release fixes several security issues that have been recently discovered. Update is recommended!
You can download the GLPI 9.5.12 archive on GitHub.
You will find below the list of security issues fixed in this bugfixes version:
- [SECURITY - Moderate] XSS on browse views (CVE-2023-22722)
- [SECURITY - Moderate] XSS on external links (CVE-2023-22725)
- [SECURITY - Moderate] Unauthorized access to data export (CVE-2023-23610)
- [SECURITY - Low] Stored XSS inside Standard Interface Help Link href attribute (CVE-2022-41941)