Releases: linuxserver/docker-bookstack
v24.10.1-ls174
CI Report:
N/A
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
This release contains the following fixes and changes:
- Updated System CLI with fixes and updated dependencies. (#5312)
- Fixed update-url command not updating revisions & drafts. (#5292)
- Fixed the namespaces of some tests. Thanks to @LordSimal. (#5291, #5071)
- Fixed misaligned user input validation. (#5263)
- Updated setting categories to validate by for existing views, allowing custom categories to be used via the theme system. Thanks to @LachTrip. (#5255, #5251)
- Updated translations with latest Crowdin changes. (#5250)
v24.10.1-ls173
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
This release contains the following fixes and changes:
- Updated System CLI with fixes and updated dependencies. (#5312)
- Fixed update-url command not updating revisions & drafts. (#5292)
- Fixed the namespaces of some tests. Thanks to @LordSimal. (#5291, #5071)
- Fixed misaligned user input validation. (#5263)
- Updated setting categories to validate by for existing views, allowing custom categories to be used via the theme system. Thanks to @LachTrip. (#5255, #5251)
- Updated translations with latest Crowdin changes. (#5250)
v24.10-ls172
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.10-ls171
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.10-ls170
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.10-ls169
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.10-ls168
LinuxServer Changes:
Default to environment config over .env file config.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.10-ls167
LinuxServer Changes:
Add php-exif for reading image EXIF data.
bookstack Changes:
Links
Full List of Changes
- Added ability to configure the PDF export command timeout. (#5119)
- Added new Lexical based editor. (#5058)
- Added not operator to search. (#4536)
- Added OpenSearch support. Thanks to @maximilian-walter. (#5198)
- Added SAS and R code language support. (#5206)
- Added search term negation support. (#5239)
- Added Welsh language to language list. (#5240)
- Updated dompdf and bacon-qr-code libraries to new major versions. (#5222)
- Updated page editor type to always exist in API and database. (#5117)
- Updated translations with latest Crowdin changes. (#5188)
- Updated user account creation to provide better email failure feedback. (#5195)
- Fixed drifting search icon on smaller screen sizes. (#5204)
v24.05.4-ls166
LinuxServer Changes:
Add php-exif for reading image EXIF data.
bookstack Changes:
Security Release
BookStack v24.05.4 has been released.
This is a security release to address issues found in LDAP group syncing, where in certain scenarios a user could be matched to extra roles incorrectly, and an issue with content visibility in "book-show" API responses which would not have permissions applied properly.
Upgrade is strongly advised for instances where LDAP authentication is used with group syncing, or where the REST API is used to fetch contents of books ("books-read" endpoint).
Thanks to Linus Nagel and their team at WorkSimple GmbH for reporting this API vulnerability.
Full List of Changes
- Updated API docs with consistent parameter types. (#5183)
- Updated default content iframe embed max-width to align with other content types. (#5130)
- Updated LDAP group sync to query via full DN.
- Updated translations with latest Crowdin changes. (#5118)
- Fixed books read API response not applying visibility control to chapter contents.
- Fixed API docs users response showing extra property. (#5178)
- Fixed database error thrown when using out dev docker setup. (#5124)
- Fixed RTL display issues with tasklist checkboxes. (#5134)
v24.05.4-ls165
LinuxServer Changes:
Add php-exif for reading image EXIF data.
bookstack Changes:
Security Release
BookStack v24.05.4 has been released.
This is a security release to address issues found in LDAP group syncing, where in certain scenarios a user could be matched to extra roles incorrectly, and an issue with content visibility in "book-show" API responses which would not have permissions applied properly.
Upgrade is strongly advised for instances where LDAP authentication is used with group syncing, or where the REST API is used to fetch contents of books ("books-read" endpoint).
Thanks to Linus Nagel and their team at WorkSimple GmbH for reporting this API vulnerability.
Full List of Changes
- Updated API docs with consistent parameter types. (#5183)
- Updated default content iframe embed max-width to align with other content types. (#5130)
- Updated LDAP group sync to query via full DN.
- Updated translations with latest Crowdin changes. (#5118)
- Fixed books read API response not applying visibility control to chapter contents.
- Fixed API docs users response showing extra property. (#5178)
- Fixed database error thrown when using out dev docker setup. (#5124)
- Fixed RTL display issues with tasklist checkboxes. (#5134)