Discourse 3.0.6 Stable Release
Discourse strongly recommends that all sites follow the default tests-passed branch of Discourse. The “stable” branch is more focused on lack of change than lack of bugs - all releases, including those on tests-passed and beta are production ready.
Changes
Bug Fixes
- Specify chrome version (#22681)
Security Changes
- Don’t allow a particular site to monopolize the defer queue CVE-2023-38498
- Hide restricted tags in noscript view CVE-2023-386
- Limit length of edit reason column CVE-2023-37906
- Handle concurrent invite accepts CVE-2023-37904
- Impose a upper bound on limit params in various controllers CVE-2023-38684