2
@meldrik@lemmy.wtf If lemmy.wtf
is using custom emojis, you should probably update to the latest UI Release Candidate, i. e. the latest lemmy-ui docker image.
@meldrik@lemmy.wtf If lemmy.wtf
is using custom emojis, you should probably update to the latest UI Release Candidate, i. e. the latest lemmy-ui docker image.
It is not, so we are safe.
BE ➡ 0.18.2 | UI ➡ 0.18.2
@meldrik@lemmy.wtf
Probably does not hurt to upgrade, despite the fact that we didn't have any custom emojis.
Additionally it disallows inline Javascript using Content Security Policy. This should ensure that XSS vulnerabilities are impossible from now on.
BE ➡ 0.18.2-rc.2 | UI ➡ 0.18.2-rc.2
Now using release branches (release/v0.18
) for BE
and UI