From 0c1a0c59ff5c3f2827685d56513aa858a612b6a5 Mon Sep 17 00:00:00 2001 From: olleharstedt Date: Mon, 26 Jul 2021 16:40:04 +0200 Subject: [PATCH] Release 3.27.9+210726 --- application/config/version.php | 4 ++-- docs/release_notes.txt | 9 +++++++++ 2 files changed, 11 insertions(+), 2 deletions(-) diff --git a/application/config/version.php b/application/config/version.php index 7f09f2bedfd..808856ec428 100644 --- a/application/config/version.php +++ b/application/config/version.php @@ -12,10 +12,10 @@ */ -$config['versionnumber'] = '3.27.8'; +$config['versionnumber'] = '3.27.9'; $config['dbversionnumber'] = 365; $config['buildnumber'] = ''; $config['updatable'] = true; $config['templateapiversion'] = 3; -$config['assetsversionnumber'] = '30199'; +$config['assetsversionnumber'] = '30200'; return $config; diff --git a/docs/release_notes.txt b/docs/release_notes.txt index f9ef82926b3..186f31524cf 100644 --- a/docs/release_notes.txt +++ b/docs/release_notes.txt @@ -34,6 +34,15 @@ Thank you to everyone who helped with this new release! CHANGE LOG ------------------------------------------------------ +Changes from 3.27.8 (build 210721) to 3.27.9 (build 210726) July 26, 2021 +-Fixed issue #17470 [security]: Arbitrary file read in participant functionality (Olle Haerstedt) +-Fixed issue #17469 [security]: SQL injection in participants (editShareInfo) (Olle Haerstedt) +-Fixed issue #17468 [security]: SQL injection in survey data entries (Olle Haerstedt) +-Fixed issue #17467 [security]: SQL injection in survey data entries (Olle Haerstedt) +-Fixed issue #17471 [security]: Update PHPMailer to 6.5.0 +-Fixed issue #17373: Misuse of progress bar (#1953) (Denis Chenu) + + Changes from 3.27.7 (build 210713) to 3.27.8 (build 210721) July 21, 2021 -Fixed issue: Seperator showing in Chrome when clicking back (Gabriel Jenik) -Fixed issue #17451: Upload file link after session expire leads to a message unclear to users (Denis Chenu)