# 3.1.2: גרסת אבטחה ותיקוני באגים

**URL:** https://meta.discourse.org/t/3-1-2-security-and-bug-fix-release/282427
**Category:** Announcements
**Tags:** release-notes
**Created:** [16 באוקטובר,‏ 2023,‏ 5:46pm UTC](https://meta.discourse.org/t/3-1-2-security-and-bug-fix-release/282427 "2023-10-16T17:46:51Z")
**Posts on this page:** 1
**Page:** 1

<div class="post-metadata">

### Author: ![jomaxro](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/jomaxro/32/126216_2.png) [@jomaxro](https://meta.discourse.org/u/jomaxro)
#### Post date: [16 באוקטובר,‏ 2023,‏ 5:46pm UTC](https://meta.discourse.org/t/3-1-2-security-and-bug-fix-release/282427/1 "2023-10-16T17:46:51Z")

</div>

## Discourse 3.1.2 Stable Release

Discourse strongly recommends that all sites follow the default tests-passed branch of Discourse. The “stable” branch is more focused on _lack of change_ than _lack of bugs_ - all releases, including those on tests-passed and beta are production ready.

### Security Changes

- Add a default limit as to when logs should be truncated [CVE-2023-44388](https://github.com/discourse/discourse/security/advisories/GHSA-89h3-g746-xmwq)
- Prevent unauthorized access to grouped poll results [CVE-2023-43814](https://github.com/discourse/discourse/security/advisories/GHSA-3x57-846g-7qcw)
- Prevent arbitrary topic custom fields from being set [CVE-2023-45147](https://github.com/discourse/discourse/security/advisories/GHSA-wm89-m359-f9qv)
- Correctly escape ‘text’ email preview [CVE-2023-43659](https://github.com/discourse/discourse/security/advisories/GHSA-g4qg-5q2h-m8ph)
- Hide user profiles from public [CVE-2023-44391](https://github.com/discourse/discourse/security/advisories/GHSA-7px5-fqcf-7mfr)
- Add permissions to MessageBus in chat [CVE-2023-45131](https://github.com/discourse/discourse/security/advisories/GHSA-84gf-hhrc-9pw6)
