2
0
mirror of https://github.com/inventree/inventree-website.git synced 2026-04-03 09:51:23 +00:00
This commit is contained in:
inventree-bot
2026-04-01 02:23:24 +00:00
parent 42e5173c38
commit 4e3f3fa662
37 changed files with 147 additions and 147 deletions

View File

@@ -1,4 +1,4 @@
<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom" ><generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator><link href="/blog/feed.atom" rel="self" type="application/atom+xml" /><link href="/" rel="alternate" type="text/html" /><updated>2026-03-31T02:06:22+00:00</updated><id>/blog/feed.atom</id><title type="html">InvenTree</title><subtitle>InvenTree is an open-source inventory management system which provides intuitive parts management and stock control. It is at the center of an ecosystem of addins for EDA tools, API wrapper, deeply integrated plugins and 3rd party tools.</subtitle><entry><title type="html">Action required - Upcoming Security Release</title><link href="/blog/2026/03/25/security-release" rel="alternate" type="text/html" title="Action required - Upcoming Security Release" /><published>2026-03-25T00:00:00+00:00</published><updated>2026-03-25T00:00:00+00:00</updated><id>/blog/2026/03/25/security-release</id><content type="html" xml:base="/blog/2026/03/25/security-release"><![CDATA[<p>The InvenTree core development team has received a report of a <em>critical security vulnerability</em> affecting a large range of releases since 2024. We will release a disclosure and a fixed release for the 1.2.x release series on 2026-04-08 21:00 UTC.<br />
<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom" ><generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator><link href="/blog/feed.atom" rel="self" type="application/atom+xml" /><link href="/" rel="alternate" type="text/html" /><updated>2026-04-01T02:23:11+00:00</updated><id>/blog/feed.atom</id><title type="html">InvenTree</title><subtitle>InvenTree is an open-source inventory management system which provides intuitive parts management and stock control. It is at the center of an ecosystem of addins for EDA tools, API wrapper, deeply integrated plugins and 3rd party tools.</subtitle><entry><title type="html">Action required - Upcoming Security Release</title><link href="/blog/2026/03/25/security-release" rel="alternate" type="text/html" title="Action required - Upcoming Security Release" /><published>2026-03-25T00:00:00+00:00</published><updated>2026-03-25T00:00:00+00:00</updated><id>/blog/2026/03/25/security-release</id><content type="html" xml:base="/blog/2026/03/25/security-release"><![CDATA[<p>The InvenTree core development team has received a report of a <em>critical security vulnerability</em> affecting a large range of releases since 2024. We will release a disclosure and a fixed release for the 1.2.x release series on 2026-04-08 21:00 UTC.<br />
The vulnerability allows for lateral movement and privilege escalation within an InvenTree instance. It has a low attack complexity.</p>
<h2 id="steps-to-take-now">Steps to take now</h2>