Safety vulnerability ID: 61766
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Indico 3.2.8 updates its dependency 'pillow' to include a fix for a high-risk vulnerability in libwebp.
Latest version: 3.3.6
Indico is a full-featured conference lifecycle management and meeting/lecture scheduling tool
-------------
*Released on October 11, 2023*
Security fixes
^^^^^^^^^^^^^^
- Update `Pillow <https://pypi.org/project/Pillow/>`_ library due to
vulnerabilities in libwebp (:cve:`CVE-2023-4863`)
Internationalization
^^^^^^^^^^^^^^^^^^^^
- New translation: Italian
Bugfixes
^^^^^^^^
- Fix error when sending registration invitation reminders (:issue:`5879`, :pr:`5880`,
thanks :user:`bpedersen2`)
- Fix accessing the conference overview page when the default conference home page is
set to a custom page (:pr:`5882`)
- Show percentages for multi-choice survey answers based on number of answers instead of
total number of choices selected (:pr:`5930`)
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application