Skip to content

Commit edf3f61

Browse files
committed
doc: add CVE identifiers to changelog
1 parent 0c3813f commit edf3f61

File tree

4 files changed

+8
-0
lines changed

4 files changed

+8
-0
lines changed

changelog/10.15.1_2025-03-03/41355

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -4,4 +4,6 @@ Prevent access to app config where the key is prefixed with remote_ and public_
44
via the http api as these are internal configuration settings which are not to
55
be exposed via the network.
66

7+
CVE: CVE-2025-27844
8+
79
https://github.com/owncloud/core/pull/41355

changelog/10.15.2_2025-03-11/41358

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,5 @@
11
Security: disable phar stream wrapper
22

3+
CVE: CVE-2025-32804
4+
35
https://github.com/owncloud/core/pull/41358

changelog/10.15.3_2025-07-04/41374

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,4 +3,6 @@ Bugfix: Harden remote service resolution
33
Remote services such as webdav, caldav, etc, will be loaded from the app
44
or from a hardcoded list.
55

6+
CVE: CVE-2025-53829
7+
68
https://github.com/owncloud/core/pull/41374

changelog/10.15.3_2025-07-04/41385

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -6,5 +6,7 @@ At the end it can cause more pain than help.
66
In addition the use of the web updater is discouraged by removing the
77
integration in the admin ui.
88

9+
CVE: CVE-2025-53827
10+
911
https://github.com/owncloud/core/issues/41149
1012
https://github.com/owncloud/core/pull/41385

0 commit comments

Comments
 (0)