Fossil SCM

Version 2.27

drh 2025-09-30 10:59 release
Commit 52558546985f0d335c41e2715b152d96f6ab0196dbe0d71d1f6e5c6d400adf79
1 file changed +1 -1
--- www/changes.wiki
+++ www/changes.wiki
@@ -1,8 +1,8 @@
11
<title>Change Log</title>
22
3
-<h2 id='v2_27'>Changes for version 2.27 (pending)</h2><ol>
3
+<h2 id='v2_27'>Changes for version 2.27 (2025-09-30)</h2><ol>
44
<li> Close a potential Denial-of-Service attack against any public-facing Fossil
55
server involving exponential behavior in Fossil's regexp implementation.
66
<li> Fix a SQL injection on the [/help?cmd=/file|/file page]. Thanks to
77
additional defenses built into Fossil, as well as good luck, this injection
88
is not exploitable for either data exfiltration or privilege escalation. The
99
--- www/changes.wiki
+++ www/changes.wiki
@@ -1,8 +1,8 @@
1 <title>Change Log</title>
2
3 <h2 id='v2_27'>Changes for version 2.27 (pending)</h2><ol>
4 <li> Close a potential Denial-of-Service attack against any public-facing Fossil
5 server involving exponential behavior in Fossil's regexp implementation.
6 <li> Fix a SQL injection on the [/help?cmd=/file|/file page]. Thanks to
7 additional defenses built into Fossil, as well as good luck, this injection
8 is not exploitable for either data exfiltration or privilege escalation. The
9
--- www/changes.wiki
+++ www/changes.wiki
@@ -1,8 +1,8 @@
1 <title>Change Log</title>
2
3 <h2 id='v2_27'>Changes for version 2.27 (2025-09-30)</h2><ol>
4 <li> Close a potential Denial-of-Service attack against any public-facing Fossil
5 server involving exponential behavior in Fossil's regexp implementation.
6 <li> Fix a SQL injection on the [/help?cmd=/file|/file page]. Thanks to
7 additional defenses built into Fossil, as well as good luck, this injection
8 is not exploitable for either data exfiltration or privilege escalation. The
9

Keyboard Shortcuts

Open search /
Next entry (timeline) j
Previous entry (timeline) k
Open focused entry Enter
Show this help ?
Toggle theme Top nav button