Calibreweb

Latest version: v0.6.20

Safety actively analyzes 623983 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 1 of 4

0.6.19

Not secure
**New features:**

* Cover images are cached when using gdrive storage and local storage
* Kobo sync now uses calibre-web generated thumbnails as cover pictures
* Pagination button disapear in standard theme once infinite scroll is triggered
* Added "None" to list of file formats, tags, series, languages
* Extract publishing date, identifier from epubs after upload
* Added basic themes to epub reader
* Allow "" in imported ldap usernames
* Allow sending epub files to amazon kindle

**Bug Fixes:**

* Read status checkbox works again for custom columns
* Character '\u200d' is removed from end of email address and no longer causes an error on send emails
* Gevent log output is redirected to log file and no longer stops Calibre-web on Windows
* custom column of type "Text, but with a fixed set of permitted values" with default color no longer leads to error 500
* Permission problems while accessing the robots file are now handled better
* Fix for missing "query" entry in flask_session
* Handle empty response from lubimyczytac metadata provider
* Fix cover upload url with spaces at the end
* Support image/jpg as upload format
* Prevent "none" comment from uploaded pdf documents
* Prevent converting of kepubs on every new user

0.6.18

Not secure
**New features:**

* Enabled search for text based custom column content in simple search

**Bug Fixes:**

* Bugfix errors for load metadata from amazon are now properly handled
* Errors with readonly library are handled better
* Bigfix author sort order differs from authors order with readonly database
* Improved cover extraction for epub files, better epub cover parsing with multiple cover-image items
* Undo check of read checkbox in case of error
* Display error message in details modal dialog instead of putting it to the hidden UI
* Bugfix set archive bit in booktable
* Added environment variables for reconnect
* Catch additional error on not existing custom column linked to read column
* Prevent metadata changes are lost on edit books with errors
* Bugfix remember sort order of series and authors if entered from link below book cover
* Bugfix gmail.json location
* Series Link in series view no longer clickable
* import error on python <3.7 dataclasses solved
* Deactivated several functions for kindle, tolino, bookeen and kobo e reader. Opening books now working for ebook readers
* Bugfix show covers from goodreads
* Bugfix for advanced search with linked read column and read column having a higher number than number of available custom columns
* Bugfix for plus ("+" vs. "%2B") encoded search strings in opds search feeds are now working
* Bugfix logging with gdrive
* Bugfix database locked in combination with gevent

Security fix: Prevent possible SQL Injection in user table Thanks to Iman Sharafaldin (Forward Security)
Security fix: SSRF protection no longer can be bypassed by IPV6/IPV4 embedding. Thanks to 416e6e61
Security fix: SSRF protection no longer can be bypassed to connect to other servers in the local network. Thanks to michaellrowley

0.6.17

Not secure
**New features:**

* Amazon.com is added as metadata source
* Edit of raw html in desciption field was added
* Read and archive bit visible in book edit table
* Rename all book authors on rename author of one book (same behavior as Calibre)
* Kobo sync token is now also visible if accessed from localhost
* Added command line option to allow loading covers from localhost
* Added command line option to enable database reconnect (default disabled)
* Added command line option to perform dry run of updater
* Added possibility to exclude files from getting updated
* Better logging of errors in metadata source files
* Prevent delete of database related settings due to better detection of database change/missing
* Enabled re-convert of bookformats

**Bug Fixes:**

* Fix for adding books to shelfs using the caliblur theme
* Fix for iOS covers are not displayed during infinite scroll on standard theme
* Deleted book formats are removed from synced to kobo table
* Fix for "scholarly" requiring internet connection at startup
* Fix parsing /Keywords' in doc_info of pdf file with type bytes
* Fix for detecting covers in epubs
* Fix for already present mobi file during convert for send to kindle
* Dependencies are now displayed correct in windows executables
* Fix showing of academic cover in case no cover was found from scholary
* Fix for empty search results from google
* Avoid problems with percent encoded utf-8 abstracts on certain chinese papers while importing metadata from google scholary
* Fix a problem with sending emails from custom domain name server
* Linux "unrar-free" is now also recognized for displaying unrar version in about section
* Fix error message if rename files fails
* Fix load metadata on windows executable, due to missing iso639 files


* Security fix: The SSRF Protection can no longer be bypassed via an HTTP redirect
* Security fix: The SSRF Protection can no longer be bypassed via 0.0.0.0 and it's ipv6 equivalent

0.6.16

Not secure
**Bug Fixes:**

* Add book to shelf in popup for book details working again
* Cover extraction with comicapi for webp files working now
* Added missing unique marker on comments table to prevent double book_ids in comment table
* Delete book format is working again
* Books can be added to shelf from search again
* Kobo sync token is now also created if accessed from localhost
* If book format is deleted this also deletes the "book synced to kobo" status

* Security fix: JavaScript could get executed on authors page
* Security fix: Loading cover from localhost is prevented
* Security fix: Prevent creating a public shelf without permission

0.6.15

Not secure
**New features:**

* Added filtering of language view
* Allow download of archived books
* Add button to force full kobo sync
* New user language: korean

**Bug Fixes:**

* Fix position read mark in standard theme
* Fix grid to list button in series view
* Fix sort ascending, descending in author and series list
* Fix for Epub viewer isn't displaying images
* Fix shelf grid ordering for inverted order at page load
* Sorting buttons now visible on medium size screens
* "Fetch metadata" update appends to the existing tags instead or replacing them
* Exclude upload rights visibility if upload is not activated
* Delete book setting only visible if edit book setting is ticked
* Current sorting order visible in all sidebar selectors, and search results
* Check versions of dependencies at startup and generate logfile output if not matching
* Fix which cover are visible in series grid view
* Sorting "hot" books only ascending and descending according to download numbers
* Downloaded books sorting according to authors name now working
* Fixed missing handle_error in convert calibre task (database readonly case)
* Fix opds search and opds list of read books
* Added some missing supported book languages and unknown book languages don't lead to error message
* Improved handling of invalid cover files on upload
* Bugfix show all allowed languages in user settings in case restrictions currently apply
* Bugfix search in books list
* Fixed KoboSynce in general and in multiuser environment
* Unicode texts (title, author) are showing up right on kobo reader
* Added some missing kobo routes (prevents 404 response)
* Kobo Sync token only updated after complete library sync
* Guest sorting options are now stored in the browser session
* Visibility of upload buttons now depends only on upload right and no more on admin right
* Bugfix edit series_index
* Delete books in shelfs, downloaded books, kobo sync status, etc on database change
* Improved handling of calibre output on windows
* Catch more Gdrive errors
* Bugfix advanced search for language
* Bugfix uncheck all elements in books list and user list
* Whitespaces are trimmed also for normal search
* Better version output in about page
* Load metadata including loading from google-scholary is working again
* Deleting users now deletes also depending entries in all tables
* Prevent 2 public shelfs with same names due to changing public property (thanks to alicaz)

* Security fix: Changed error message in case of trying to delete a shelf unauthorized
* Security fix: Added missing check for creating public shelfs
* Security fix: Fix upload of cover and book formats containing html characters
* Security fix: Migrated some routes to POST-requests (CSRF protection)
* Security fix: Fix for "javascript:" script links in identifier

0.6.14

Not secure
**New features:**

* New algorithm for searching for metadata
* Python2 support removed from code
* Enabled editing of float, integer, enum, text and comments type custom_columns in books list
* Enabled raw html edit in book comments
* Enabled editing comments in books list
* Login name is no longer auto capitalized on touch devices
* Added trusted host settings for custom theming
* New user language: Traditional chinese

**Bug Fixes:**

* Hovering on cover, now shows tooltip also in Caliblur! Theme
* Added missing default locale and default language view upon importing ldap user
* Language names on non english locales are now displayed correct
* Misaligned shelf names after glyphicon
* Fix filemodal file selection dialog now works for more than one filepicker on page
* Kobo sync for more than 100 books now works correct
* Show checkbox from boolean custom columns on details page with caliblur theme
* In comic reader files are naturally sorted again
* Bugfix for book list with language restriction or archived books
* Remove include subdomwains from hsts protection
* Bugfix for covers are not displayed during infinite scroll on standard theme on Safari browsers
* Bugfix for mime-type not executable on windows


* Security fix: CSRF protection
* Security fix: JavaScript payload can no longer be injected in all typeahead functions

Page 1 of 4

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.