Skip to content

v0.10.2

Compare
Choose a tag to compare
@mbrt mbrt released this 01 May 15:30
· 247 commits to master since this release

Security fix

Solved a possible XSS attack vector, only present in v0.10.1. This could happen only during a token refresh for a few seconds. Most likely not exploitable, given that the webserver runs only on localhost.

If you are running version v0.10.1 (check with gmailctl version), please update. Otherwise there's no risk for you.