github-actions
released this
28 Oct 17:36
·
1 commit
to release/2.16
since this release
Stable (since November 5, 2024)
Changelog
Security fixes
- Dashboard: Sanitize login redirect (#15208) (#15219, 379ced6)
Resolves an issue which allows attackers to craft a Coder URL that when clicked by a logged in user, could redirect them to a website the attacker controls, e.g. google.com. For details on resolution see this advisory on Github.
Bug fixes
- Fix error handling to prevent spam in proc prio management (#15098, 5133315)
- Fix bug with trailing version info not being properly stripped (#15223, 971b1a8)
Resolves an issue which caused in-product docs links to break.
Compare: v2.16.0...v2.16.1
Container image
docker pull ghcr.io/coder/coder:v2.16.1
Install/upgrade
Refer to our docs to install or upgrade Coder, or use a release asset below.