Discourse 2.7.6 Stable Release
Discourse strongly recommends that all sites follow the default tests-passed branch of Discourse. The “stable” branch is more focused on lack of change than lack of bugs - all releases, including those on tests-passed and beta are production ready.
Changes
Security:
- Sanitize YouTube Onebox data (CVE-2021-32764)
- This vulnerability only affects sites which have disabled/modified the default content-security-policy