Skip to content

v3.26.0

Latest

Choose a tag to compare

@github-actions github-actions released this 06 Aug 08:56

Changes 08/06/2026 (v3.26.0)

release(v3.26.0): harden persistent authentication and Pro storage rendering

Fixed

  • File and folder metadata shown in FileRise Pro's Storage → Top Files table is now HTML-encoded before rendering, preventing uploaded file names from being interpreted as markup in an administrator's browser.
  • Existing file names, disk-usage snapshots, storage sources, deletion controls, Pro bundle installation, and FileRise's Content Security Policy remain unchanged.
  • Successful self-service password changes and administrator password resets now revoke every remember-me token belonging to the affected account.
  • Remember-me tokens belonging to other accounts and the password-changing user's current authenticated session remain unchanged.

Upgrade notes

  • No account, ACL, file, folder, metadata, Pro license, Docker volume, storage, or configuration migration is required.
  • Existing names containing Unicode, punctuation, or HTML-significant characters continue to display and operate normally; the characters are displayed as text instead of being interpreted as HTML.
  • Upgrading alone does not expire remember-me tokens or sign out existing users. Remembered devices are asked to sign in again only after that account's password is subsequently changed or reset.

v3.26.0

Full Changelog

v3.25.0 → v3.26.0

SHA-256 (zip)

69ffef2249c2a6bb31b522b56f1bb5801c4e1ca613d5a5e39d64104d27a538f5  FileRise-v3.26.0.zip