5.50.0 release notes: added security release
authorAndie Hunt <andie@aghstrategies.com>
Wed, 1 Jun 2022 02:53:42 +0000 (22:53 -0400)
committerAndie Hunt <andie@aghstrategies.com>
Wed, 1 Jun 2022 02:53:42 +0000 (22:53 -0400)
release-notes.md
release-notes/5.50.0.md

index 65bdf3a87e6eea261cf91961a81348c945bfee49..b0c9f9112bc3b689d1550f5c5d8bc9172a16bf84 100644 (file)
@@ -20,6 +20,7 @@ Other resources for identifying changes are:
 Released June 1, 2022
 
 - **[Synopsis](release-notes/5.50.0.md#synopsis)**
+- **[Security advisories](release-notes/5.50.0.md#security)**
 - **[Features](release-notes/5.50.0.md#features)**
 - **[Bugs resolved](release-notes/5.50.0.md#bugs)**
 - **[Miscellany](release-notes/5.50.0.md#misc)**
index 3d097100b6bc750068be3918452d7917404a0ba2..442531a4f54cdb6a1edab17c12a9dd381a52404b 100644 (file)
@@ -3,6 +3,7 @@
 Released June 1, 2022
 
 - **[Synopsis](#synopsis)**
+- **[Security advisories](#security)**
 - **[Features](#features)**
 - **[Bugs resolved](#bugs)**
 - **[Miscellany](#misc)**
@@ -13,7 +14,7 @@ Released June 1, 2022
 
 | *Does this version...?*                                         |         |
 |:--------------------------------------------------------------- |:-------:|
-| Fix security vulnerabilities?                                   |   no    |
+| Fix security vulnerabilities?                                   | **yes** |
 | **Change the database schema?**                                 | **yes** |
 | **Alter the API?**                                              | **yes** |
 | Require attention to configuration options?                     |   no    |
@@ -21,6 +22,10 @@ Released June 1, 2022
 | **Introduce features?**                                         | **yes** |
 | **Fix bugs?**                                                   | **yes** |
 
+## <a name="security"></a>Security advisories
+
+- **[CIVI-SA-2022-07: APIv3 Access Bypass](https://civicrm.org/advisory/civi-sa-2022-07-apiv3-access-bypass)**
+
 ## <a name="features"></a>Features
 
 ### Core CiviCRM