2.8.1: Security and Minor Patch Release

Discourse 2.8.1 Stable Release

Discourse strongly recommends that all sites follow the default tests-passed branch of Discourse. The “stable” branch is more focused on lack of change than lack of bugs - all releases, including those on tests-passed and beta are production ready.

Changes

Security:

  • Onebox response timeout and size limit (CVE-2022-21684)

Feature:

  • RS512, RS384 and RS256 COSE algorithms
  • Update translations

Bug Fix:

  • Only block domains at the final destination
  • Table pasting issues with uppy

Accessibility:

  • Switch to using autocomplete="off"

Developer:

  • Remove jQuery UI vendor dependencies
8 Likes