Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

https://github.com/DSpace/DSpace/milestone/11?closed=1

Changes in DSpace 4.3

...

This release  includes the following security fixes.

  • [HIGH SEVERITY] XMLUI Directory Traversal Vulnerabilities (DS-2445)
  • [MEDIUM SEVERITY] JSPUI Directory Traversal Vulnerability (DS-2448)
  • [LOW SEVERITY] Cross-site scripting (XSS injection) is possible in JSPUI Recent Submissions listings (DS-1702)
  • [LOW SEVERITY] Cross-site scripting (XSS injection) is possible in JSPUI Discovery search form (DS-2044

Changes in DSpace 4.2

https://github.com/DSpace/DSpace/milestone/53?closed=1

...