X-Git-Url: https://vcs.fsf.org/?p=squirrelmail.git;a=blobdiff_plain;f=ChangeLog;h=a4fba6225545bbbe1b40e99ea1b7525d3ebbcc27;hp=b779179be86354b03fb4e7881d8dbf265e70197e;hb=9881d1144ef3e7250a3a056c2883b47554dad73f;hpb=4b5049de2fa934c45599d6e4c74bf2bbee10d34d diff --git a/ChangeLog b/ChangeLog index b779179b..a4fba622 100644 --- a/ChangeLog +++ b/ChangeLog @@ -4,6 +4,7 @@ Version 1.5.2 - SVN ------------------- + - Fix incorrect detection of auth mechanisms in conf.pl (#1727033). - The search expression in the LDAP backend of the Addressbook is now configurable, which can allow the result set to be expanded. - Preliminary support for NAMESPACE in Squirrelmail IMAP Backend: NAMESPACE @@ -177,6 +178,27 @@ Version 1.5.2 - SVN configuring plugin. Thanks to Peter Steiner. - Fixed HttpOnly cookies again. - Update for switch from CVS to Subversion. + - Default provider URI link fixed (was broken when on plugin options pages, etc) + - Fix URL to send read receipts from read_body (#1637572). + - Add option to ask users for personal information on first login. + - Drop redundant call to session_register, which could trigger a segfault + in PHP 4.4.5 (#1664155). + - If a date-header cannot be parsed, display the unparsed version as a + better-than-nothing alternative. + - Fix Priority and Receipt compose options being reset after return from + HTML addressbook, and allow returning from an empty address book (#1673056). + - Do not special case the 'None' folder. + - Fixes for filters issues (#1634735). + - session_id reporting session id when no active session (#1685031). + - Added sq_change_text_domain() for plugins to use when switching text + domains. If plugins use this function, it fixes #1434043. + - Add dynamic textarea sizing slider control to compose screen (default_advanced + skin) + - Security: fixes for the HTML filter to counter further XSS exploits: + HTML attachments containing 'data:' URLs, Internet Explorer-specifc + charset conversion exploits, and request forgery through included + images. Thanks to Mikhail Markin, Tomas Kuliavas and Michael Jordon + for reporting these issues. [CVE-2007-1262] Version 1.5.1 (branched on 2006-02-12) --------------------------------------