diff options
author | Richard van der Hoff <richard@matrix.org> | 2019-05-03 16:03:24 +0100 |
---|---|---|
committer | Richard van der Hoff <richard@matrix.org> | 2019-05-03 16:03:24 +0100 |
commit | 863ec0962210fcb946e68caa7431f69583814c73 (patch) | |
tree | cf99c8065bb0cf79748966acd1cbe60ad78713a7 /changelog.d | |
parent | Merge pull request #5134 from matrix-org/rav/url_preview_blacklist (diff) | |
download | synapse-863ec0962210fcb946e68caa7431f69583814c73.tar.xz |
0.99.3.1
Diffstat (limited to 'changelog.d')
-rw-r--r-- | changelog.d/5133.bugfix | 1 | ||||
-rw-r--r-- | changelog.d/5134.bugfix | 1 |
2 files changed, 0 insertions, 2 deletions
diff --git a/changelog.d/5133.bugfix b/changelog.d/5133.bugfix deleted file mode 100644 index be6474a692..0000000000 --- a/changelog.d/5133.bugfix +++ /dev/null @@ -1 +0,0 @@ -Switch to using a cryptographically-secure random number generator for token strings, ensuring they cannot be predicted by an attacker. Thanks to @opnsec for identifying and responsibly disclosing this issue! diff --git a/changelog.d/5134.bugfix b/changelog.d/5134.bugfix deleted file mode 100644 index 684d48c53a..0000000000 --- a/changelog.d/5134.bugfix +++ /dev/null @@ -1 +0,0 @@ -Blacklist 0.0.0.0 and :: by default for URL previews. Thanks to @opnsec for identifying and responsibly disclosing this issue too! |