What's New in this Release
Anchor |
---|
| Blacklist_optn |
---|
| Blacklist_optn |
---|
| Added Blacklist domains option in Global ConfigurationUsers Administrators can now blacklist private networks, hosts or subnets to avoid Server Side Request Forgeries (SSRF) through the Blacklist domains configuration option. By default, this option is disabled. If enabled, users can view a list of sites that are commonly blacklisted. If and a request from any of these sites is received after enabling the option, the user is , users are prompted to contact the System Administrator system administrator for further processing, or, an error message is displayed. Image Removed To view the default list of sites that can be blacklisted, click the link named listed. A pop-up with Click the link named listed (in the description beneath the option) to view the list of the most commonly blacklisted sites appears as shown:Image Removedin a pop-up window.
Anchor |
---|
| Enhanced_XSS_security |
---|
| Enhanced_XSS_security |
---|
| Enhanced security against XSS vulnerabilitiesThis app version now has provides enhanced security implemented to handle any cross-site scripting from the macros. |