X-Git-Url: https://vcs.fsf.org/?p=squirrelmail.git;a=blobdiff_plain;f=ChangeLog;h=6e04ac7f0a776ba9493613e03fdcdfd328f84d1c;hp=aa190b9356d32c9254fe3b9edd5be0e7ee015de1;hb=1a64a0848b49542838be9986392c2c86a92bbb24;hpb=c4de9863a2cd0e8da286a7d8fa5bf407e3a4d12f diff --git a/ChangeLog b/ChangeLog index aa190b93..6e04ac7f 100644 --- a/ChangeLog +++ b/ChangeLog @@ -4,6 +4,16 @@ Version 1.5.2 - CVS ------------------- + - The search expression in the LDAP backend of the Addressbook is now + configurable, which can allow the result set to be expanded. + - Preliminary support for NAMESPACE in Squirrelmail IMAP Backend: NAMESPACE + is parsed and stored in session upon login. + - Now uses the $Forwarded IMAP keyword for forwarded messages, when it is + enabled or when arbitrary keywords ("PERMANENT FLAGS \*") are permitted. + RFC 4550, paragraph 2.8. + - Added support for authorization identifier in IMAP backend, for SASL + authentication mechanisms PLAIN and DIGEST-MD5. This can be set upon login + by use of an external plugin. - Fix warning about array required in array_keys for display options when no fontset is defined. - Added "bad plugin" blacklist in configtest.php. @@ -11,8 +21,143 @@ Version 1.5.2 - CVS - Added monitored folders option to newmail plugin. - Tweaked STARTTLS option for SMTP/IMAP to allow previous settings of just pure TLS not to be used to assume STARTTLS. - - + - Fixed quotes in configuration strings in administrator plugin. + - Fixed View as HTML link so it doesn't forget it was part of a seach result. + - Don't use delimiter in IMAP subscription command, when noselect folder is + created. + - Security: Possible cookie theft in src/redirect.php if + register_globals is enabled, and malicous site is running + in same domain. + - Stop URL parsing, if 8bit symbols or HTML entities are detected (#1356798). + - Added new color themes by Jeremy Landes, Tammi Maggard and Lucas Austin-Howe + (#1378332), (#1377567), (#1377529), (#1377528), (#1377527), (#1377526), + (#1377525), (#1393188). + - Issue loading options page always loaded the prefs + initial_value on display, instead of the users' value. + - Adding the message_body hook to src/view_html.php and src/view_text.php, + allowing display of unsafe images when viewing HTML attachments and when + HTML is in an