mirror of
https://github.com/inventree/inventree-website.git
synced 2026-04-03 09:51:23 +00:00
deploy: 7d7b17882b
This commit is contained in:
@@ -1,4 +1,4 @@
|
||||
<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom" ><generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator><link href="/blog/feed.atom" rel="self" type="application/atom+xml" /><link href="/" rel="alternate" type="text/html" /><updated>2026-03-31T02:06:22+00:00</updated><id>/blog/feed.atom</id><title type="html">InvenTree</title><subtitle>InvenTree is an open-source inventory management system which provides intuitive parts management and stock control. It is at the center of an ecosystem of addins for EDA tools, API wrapper, deeply integrated plugins and 3rd party tools.</subtitle><entry><title type="html">Action required - Upcoming Security Release</title><link href="/blog/2026/03/25/security-release" rel="alternate" type="text/html" title="Action required - Upcoming Security Release" /><published>2026-03-25T00:00:00+00:00</published><updated>2026-03-25T00:00:00+00:00</updated><id>/blog/2026/03/25/security-release</id><content type="html" xml:base="/blog/2026/03/25/security-release"><![CDATA[<p>The InvenTree core development team has received a report of a <em>critical security vulnerability</em> affecting a large range of releases since 2024. We will release a disclosure and a fixed release for the 1.2.x release series on 2026-04-08 21:00 UTC.<br />
|
||||
<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom" ><generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator><link href="/blog/feed.atom" rel="self" type="application/atom+xml" /><link href="/" rel="alternate" type="text/html" /><updated>2026-04-01T02:23:11+00:00</updated><id>/blog/feed.atom</id><title type="html">InvenTree</title><subtitle>InvenTree is an open-source inventory management system which provides intuitive parts management and stock control. It is at the center of an ecosystem of addins for EDA tools, API wrapper, deeply integrated plugins and 3rd party tools.</subtitle><entry><title type="html">Action required - Upcoming Security Release</title><link href="/blog/2026/03/25/security-release" rel="alternate" type="text/html" title="Action required - Upcoming Security Release" /><published>2026-03-25T00:00:00+00:00</published><updated>2026-03-25T00:00:00+00:00</updated><id>/blog/2026/03/25/security-release</id><content type="html" xml:base="/blog/2026/03/25/security-release"><![CDATA[<p>The InvenTree core development team has received a report of a <em>critical security vulnerability</em> affecting a large range of releases since 2024. We will release a disclosure and a fixed release for the 1.2.x release series on 2026-04-08 21:00 UTC.<br />
|
||||
The vulnerability allows for lateral movement and privilege escalation within an InvenTree instance. It has a low attack complexity.</p>
|
||||
|
||||
<h2 id="steps-to-take-now">Steps to take now</h2>
|
||||
|
||||
Reference in New Issue
Block a user