*** Squirrelmail Stable Series 1.2 ***
**************************************
-Version 1.2.5 -- CVS
+Version 1.2.6 -- CVS
--------------------
- - Added the possibility to add special folders through plugins.
+ - A complete MagicHTML rewrite since the existing codebase was
+ causing too many XSS problems. Hopefully now Nick Cleaton will
+ leave us alone. :) Testing credits go to Nick.
+ - Fix for cross-site scripting vulnerability (bug #545933)
+ Reported by Nick Cleaton.
+ - Changing "emtpy" to "purge" for more clarity.
+ - Fix for cross-site scripting vulnerability (bug #544658)
+ Reported by Nick Cleaton.
+ - Fix for incorrect word wrap in Opera (bug #495073)
+ - Workaround for older prefs: some of them contain "None" for
+ left_refresh (bug #540108)
+ - Fix for entities in cc and bcc fields on message display (bug #522493)
+ - Fixes for quoted values in the addressbook by David Rees (bug #538389)
+ - Fixed src/src problem (bug #538803)
+ - Fixed so non-ascii searches no longer fail both when searching
+ and when applying filters (bug #520918)
+ - Added POP3 Before SMTP option (feature request: #498428)
+ - Added a server-side thread sorting option per folder
+ - Added a server-side sorting global option
+ - Compose in new window size can be set in Display prefs.
+ - Logout error system unified.
+ - Fix for a "theme passed as cookie" exploit.
+ - PostgreSQL is now supported for database backed use
+ - Added user option to sort messages by internal date
+ - Changed attachment handling now attachments are adressed to
+ unique compose session.
+ - Added forward messages as message/rfc822 attachment
+ - Fixed handling message/rfc822 attachments
+ - Fixed folder list display when special folders have subfolders
+ - Added option to auto-append sig before reply/forward text (523853)
+ - Fixed subfolders being "orphaned" when renaming parents (498167)
+ - Filters can be applied to only new mail.
+ - Filters are updated when renaming/deleting folders (512056)
+ - Filtering now happens on login (filters plugin)
+ - Added option for WIDTH and HEIGHT tags to Org. Logo. (patch #412754)
+ - Fixed resume draft bug #513521, #514639
+ - Newmail plugin: admin can disable the use of audio (patch #517698)
+ - Fixed quoting problem in safe html (patch #516542)
+ - SPAM folder no longer special folder (filters plugin)
+ - Filtering now happens on folder list refresh (filters plugin)
+ - Added checking of input of the folders page
+ - Made erronous deleting of folders harder (patch #514208)
+ - Made SquirrelMail display \Noselect nodes in Cyrus also made it
+ impossible to try to delete \Noselect nodes. (patch #452178)
+ - SquirrelSpell version 0.3.8 -- pretty configuration error reporting
+ added by popular demand.
+ - Improved the handling of IMAP [PARSE] messages to reduce retrieval error.
+ - Fixed small bug in handeling timezone (bug #536149)
+ - MDN message now RFC compatible (bug #537662)
+ - Fixed html tables in printer_friendly_bottom.php (patch #542367)
+ - Fixed return address of MDN receipts when having multiple identities
+ (patch #530139)
+
+Version 1.2.5 -- 22 February 2002
+---------------------------------
+ - Multiple mailbox list calls cached.
+ - Added 'View unsafe images' link to the bottom of pages which contain
+ unsafe images.
+ - Fixed 'too many close table tags' and various other issues
+ which meant SM output didn't always validate as clean HTML.
+ - Added the ability to add special folders through plugins.
+ - Added an Always compose in a pop-up window option.
+ - Search page update with ability to save searches and search
+ all folders at once.
- Made searching on multiple criteria possible, with thanks to Jason Munro
- Fixed 'list all' in addressbook (#506624, thanks to Kurt Yoder)
- Fixed small bugs in db_prefs
- conf.pl can now configure database backed address books and
preferences.
- Version 0.3.7 of SquirrelSpell. Fixes a potential privacy
- vulnerability (symlink attack), plus introduces formatting fixes
+ vulnerability (symlink attack), plus introduces formatting fixes
and javadoc-style comments.
- Bugfix in mailfetch reported by Mateusz Mazur
- Administrator plugin. A web based conf.pl replacement.
- Removed GLOBALS from conf.pl
- HTML messages optimization.
-
+ - Added support for requesting read receipts (MDN) and delivery receipts.
+ - Added the ability to stop users changing their names and email addresses.
+ - Added signature into multiple identities (Stefan Meier <Stefan.Meier@cimsource.com>)
+ - Updated user help files to reflect UI chanegs and added functionality.
+
Version 1.2.4 -- 25 January 2002
--------------------------------
- Fixes a nasty remote arbitrary command execution vulnerability