Hi all,
We are happy to announce that the new patch releases for CKAN 2.9.x
and 2.8.x are now available to download and install. Note that
following our revised release policy [1], this will be the last patch
release on the 2.8.x line.
These patch releases are particularly important to apply as they
address a vulnerability in user registration (CVE-2022-43685), so
users should upgrade as soon as possible to the latest patch release
for the CKAN version they are using.
Patch release upgrades are very straight-forward and do not contain
any backwards incompatible changes or involve any change in the
database or Solr schema.
Please refer to the CHANGELOG file to see what's included:
https://docs.ckan.org/en/2.9/changelog.html#v-2-9-7-2022-10-26
https://docs.ckan.org/en/2.8/changelog.html#v-2-8-12-2022-10-26
To discuss security related issues please email
secu...@ckan.org.
Otherwise you can ask your questions in the Discussions or the Gitter
channel.
Best,
Adrià
[1]
https://ckan.org/blog/new-supported-versions-policy-going-forward