Skip to content

v0.13.2 Spideriest Sloth

Compare
Choose a tag to compare
@gotosocialorg gotosocialorg released this 06 Feb 12:12
· 636 commits to main since this release

Release highlights

Fixes some issues where remote accounts could potentially imitate other accounts in order to deliver a subset of activities to a GtS inbox as those accounts. See post https://gts.superseriousbusiness.org/@gotosocial/statuses/01HNZ5GF2EM5M899B7RKXYNMH9 for more details.

This is a recommended security update over anything 0.13.1 and below. You should update your instance when time permits.

Migration notes

Upgrading

See the release notes for 0.13.0 but replace 0.13.0 with 0.13.2 throughout.

config.yaml

No changes since 0.13.1, see 0.13.0 for migration notes from versions < 0.13.0.

Database Migrations

No changes since 0.13.1, see 0.13.0 for migration notes from versions < 0.13.0.

Detailed Changelog

  • f5314c0 [bugfix] Ensure activities sender always = activities actor (#2608)