Authentication:
- Fixed an issue where logging in with Google or GitHub did not work in some scenarios.
Security/Component Update:
- Updated the Apache shiro-web library to version 1.10.1.
- Updated the spring-boot-dependencies library to version 2.7.6 for security reasons, and spring-security-core was updated to version 5.7.5 to avoid CVE-2022-31692.
- Updated the Socket.IO library to version 4.5.3 to avoid vulnerability CVE-2022-2421.
- Updated the SnakeYAML library to version 1.33 to avoid vulnerability CVE-2022-25857.
- Updated the Jackson Databind (jackson-databind) library to version 2.13.4.2 to avoid CVE-2022-42003.
- Updated the Jackson Databind (jackson-databind) library to version 2.13.4.2 to eliminate the vulnerability CVE-2022-42004.
- Updated the spring-boot-dependencies library to version 2.7.6 for security reasons, and spring-security-core was updated to version 5.7.5 to avoid CVE-2022-31690.
- Updated Apache Tomcat to version 9.0.69 for security reasons.
- Updated the Engine.IO library to version 6.2.1 to avoid CVE-2022-41940.
- Updated the body-parser and express libraries, which update the qs library to version 6.11.0 to avoid CVE-2022-24999.
- Content Fusion now comes with the latest release of Oxygen XML Web Author, along with all of its various improvements and bug fixes.
VMWare:
- Fixed an issue where the recommended amount of RAM was lower than needed.
Full Text Search:
- Fixed an issue where the Full Text Search feature would no longer work for old tasks after restoring from a backup.