# 3.0.5: 보안 및 버그 수정 릴리스

**URL:** https://meta.discourse.org/t/3-0-5-security-and-bug-fix-release/271302
**Category:** Announcements
**Tags:** release-notes
**Created:** [7월 11, 2023, 11:21오후 UTC](https://meta.discourse.org/t/3-0-5-security-and-bug-fix-release/271302 "2023-07-11T23:21:38Z")
**Posts on this page:** 1
**Showing post:** 1

<div class="post-metadata">

### Author: ![jomaxro](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/jomaxro/32/126216_2.png) [@jomaxro](https://meta.discourse.org/u/jomaxro)
#### Post date: [7월 11, 2023, 11:21오후 UTC](https://meta.discourse.org/t/3-0-5-security-and-bug-fix-release/271302/1 "2023-07-11T23:21:38Z")

</div>

## Discourse 3.0.5 안정판 릴리스

Discourse는 모든 사이트가 Discourse의 기본 테스트 통과(tests-passed) 브랜치를 따를 것을 강력히 권장합니다. “안정(stable)” 브랜치는 _버그의 부재_보다 _변경 사항의 부재_에 더 초점을 맞추고 있으며, 테스트 통과 및 베타를 포함한 모든 릴리스는 프로덕션 환경에서 사용 가능합니다.

### 변경 사항

#### 버그 수정

- 불완전한 보안 패치로 인한 손상된 토픽 임베딩 문제 수정

#### 보안 변경 사항

- 커스텀 사이드바 섹션의 링크 수 제한 [CVE-2023-36818  
 ](https://github.com/discourse/discourse/security/advisories/GHSA-gxqx-3q2p-37gm)
- 요청 간 CSP nonce 재사용 방지 [CVE-2023-36473](https://github.com/discourse/discourse/security/advisories/GHSA-9f52-624j-8ppq)
- 카테고리 업데이트 전 토픽 유효성 확인 [CVE-2023-36466](https://github.com/discourse/discourse/security/advisories/GHSA-4hjh-wg43-p932)
- URI gem의 ReDoS 취약점 [Ruby CVE-2023-36617](https://www.ruby-lang.org/en/news/2023/06/29/redos-in-uri-CVE-2023-36617/)

---

_[View the full topic](https://meta.discourse.org/t/3-0-5-security-and-bug-fix-release/271302)._
