0
Fork 0
mirror of https://github.com/TryGhost/Ghost.git synced 2025-03-18 02:21:47 -05:00
ghost/core
Fabien O'Carroll b6be89a44f
🔒 Fixed member email change vulnerability
refs https://github.com/TryGhost/Ghost/security/advisories/GHSA-65p7-pjj8-ggmr

This updates the signup/signin flow for members to no longer support the
email address change flow - which had missing authentication. It has
been replaced with a dedicated email change flow, and Portal has been
updated to use it.
2021-09-23 10:46:00 +01:00
..
client@fcdbfd2668 Updated Ghost-Admin to v3.42.5 2021-04-16 17:37:33 +01:00
frontend 🔒 Fixed member email change vulnerability 2021-09-23 10:46:00 +01:00
server 🔒 Fixed member email change vulnerability 2021-09-23 10:46:00 +01:00
shared Add ElasticSearch logging to v3 2021-03-03 17:55:36 +00:00
index.js Refactored server announce functions to be clearer 2020-08-09 17:25:15 +01:00