X-Git-Url: https://vcs.fsf.org/?a=blobdiff_plain;f=ChangeLog;h=3e01fb4368049df0d2040e107b1389f83354745b;hb=6957d227c096362cdbd66b00982ff2eff01f47b3;hp=0126ccfd57f9a296a1bdeb52cf95528c6a1fa6eb;hpb=9ac8d987e165f4e0a1c815edacaac44529dd2784;p=squirrelmail.git diff --git a/ChangeLog b/ChangeLog index 0126ccfd..3e01fb43 100644 --- a/ChangeLog +++ b/ChangeLog @@ -200,6 +200,14 @@ Version 1.5.2 - SVN charset conversion exploits, and request forgery through included images. Thanks to Mikhail Markin, Tomas Kuliavas and Michael Jordon for reporting these issues. [CVE-2007-1262] + - Fix busy loop and notice when two literals in IMAP fetch (#1739433). + - Resolved issue with compose session not being updated after send/save. + - Added ability to detect HTTP_X_FORWARDED_PROTO in get_location(), + thanks to Daniel Watts. + - Fix test for signout.php in the logged in check in init.php so it + cannot be circumvented by manipulating the URL. External plugins might + rely on init.php guaranteeing that the user is logged in. + - Sort readdir() output in conf.pl (#1755886). Version 1.5.1 (branched on 2006-02-12) --------------------------------------