Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

This is mainly a security release that includes the following improvements (Fixing CVE-2021-38550):

  • Prevent reflected cross site scripting.
  • Prevent stored cross site scripting.
    • As part of these security changes, some special characters no longer be available for node configuration fields like group names, including ;=()<>%'\/
  • Generate cookie http only

...