hometown-fork / hometown

A supported fork of Mastodon that provides local posting and a wider range of content types.
GNU Affero General Public License v3.0
734 stars 56 forks source link

Backport security changes from 4.0.6 #1317

Closed mistydemeo closed 1 year ago

mistydemeo commented 1 year ago

This ports over security fixes from upstream Mastodon 4.0.6. Branch here: https://github.com/mastodon/mastodon/commits/stable-4.0

This doesn't port over non-security changes that were also in that release.

dariusk commented 1 year ago

Thank you!! I am in the middle of traveling but I hope to get a release out in about 6 hours from this.

mistydemeo commented 1 year ago

You're welcome! And thank you very much!

There's also #1316, which backports more commits from that release. This one's more targeted to specifically the security content, which might make it a safer release until you've got time to test.

pronoiac commented 1 year ago

I think, but am not positive, that the title should be 4.0.5. Mastodon released 4.0.6 15 minutes ago. It's another security release.

mistydemeo commented 1 year ago

Yes, the title was a typo.