From: Tim Otten Date: Thu, 16 Apr 2020 01:28:50 +0000 (-0700) Subject: release-notes - Small copy edits X-Git-Url: https://vcs.fsf.org/?a=commitdiff_plain;h=6e2652ab7266143002ba5b3dd4680fec4d442235;p=civicrm-core.git release-notes - Small copy edits --- diff --git a/release-notes.md b/release-notes.md index 3c8a95c1fb..39a9660f56 100644 --- a/release-notes.md +++ b/release-notes.md @@ -19,7 +19,7 @@ Other resources for identifying changes are: Released April 15, 2020 -- **[Security advisories](release-notes/5.23.3.md#security)** +- **[Security advisories](release-notes/5.24.3.md#security)** ## CiviCRM 5.24.2 diff --git a/release-notes/5.24.3.md b/release-notes/5.24.3.md index a7954ed980..806729bb89 100644 --- a/release-notes/5.24.3.md +++ b/release-notes/5.24.3.md @@ -19,22 +19,22 @@ Released April 15, 2020 ## Security advisories -- **[CIVI-SA-2020-01](https://d8.civicrm.org/advisory/civi-sa-2020-01): Improve Entity Name sanitisation when used as part of API** -- **[CIVI-SA-2020-02](https://d8.civicrm.org/advisory/civi-sa-2020-02): API Key Disclosure** -- **[CIVI-SA-2020-03](https://d8.civicrm.org/advisory/civi-sa-2020-03): PHP Code Execution via Phar Deserialization** -- **[CIVI-SA-2020-04](https://d8.civicrm.org/advisory/civi-sa-2020-04): Cross Site Scripting within CiviCase Reports** -- **[CIVI-SA-2020-05](https://d8.civicrm.org/advisory/civi-sa-2020-05): SQL Injection in Campaign Summary and Delete Activity** -- **[CIVI-SA-2020-06](https://d8.civicrm.org/advisory/civi-sa-2020-06): SQLI in Query Builder** -- **[CIVI-SA-2020-07](https://d8.civicrm.org/advisory/civi-sa-2020-07): CSRF in Scheduled Jobs** -- **[CIVI-SA-2020-08](https://d8.civicrm.org/advisory/civi-sa-2020-08): XSS via JS libraries** +- **[CIVI-SA-2020-01](https://civicrm.org/advisory/civi-sa-2020-01): Improve Entity Name sanitisation when used as part of API** +- **[CIVI-SA-2020-02](https://civicrm.org/advisory/civi-sa-2020-02): API Key Disclosure** +- **[CIVI-SA-2020-03](https://civicrm.org/advisory/civi-sa-2020-03): PHP Code Execution via Phar Deserialization** +- **[CIVI-SA-2020-04](https://civicrm.org/advisory/civi-sa-2020-04): Cross Site Scripting within CiviCase Reports** +- **[CIVI-SA-2020-05](https://civicrm.org/advisory/civi-sa-2020-05): SQL Injection in Campaign Summary and Delete Activity** +- **[CIVI-SA-2020-06](https://civicrm.org/advisory/civi-sa-2020-06): SQLI in Query Builder** +- **[CIVI-SA-2020-07](https://civicrm.org/advisory/civi-sa-2020-07): CSRF in Scheduled Jobs** +- **[CIVI-SA-2020-08](https://civicrm.org/advisory/civi-sa-2020-08): XSS via JS libraries** ## Credits This release was developed by the following people, who participated in various stages of reporting, analysis, development, review, and testing: -Cure53; Mozilla Open Source Support (MOSS); Dennis Brinkrolf - RIPS Technologies-; +Cure53; Mozilla Open Source Support (MOSS); Dennis Brinkrolf - RIPS Technologies; Kevin Cristiano - Tadpole Collective; Rich Lott - Artful Robot; Eileen McNaughton - Wikipedia Foundation; Sean Colsen - Left Join Labs; Mark Burdett - Electronic Frontier Foundation; Patrick Figel - Greenpeace CEE; -Seamus Lee - CiviCRM and JMA Consulting; Tim Otten - CiviCRM; +Seamus Lee - CiviCRM and JMA Consulting; Tim Otten - CiviCRM