Skip to content

Releases: linuxserver/docker-hedgedoc

1.10.3-ls172

22 Oct 19:31
7b9de60

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls172/index.html

LinuxServer Changes:

Full Changelog: 1.10.3-ls171...1.10.3-ls172

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls171

14 Oct 21:01
43c23e2

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls171/index.html

LinuxServer Changes:

Rebase to Alpine 3.22.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls170

08 Oct 19:35
c9d03ae

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls170/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls169

01 Oct 19:35
4ad647b

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls169/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls168

24 Sep 19:38
2bda2d9

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls168/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls167

13 Aug 19:39
adc0050

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls167/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls166

23 Jul 19:40
8d09ef5

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls166/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls165

16 Jul 19:39
8ba98e9

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls165/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls164

09 Jul 19:36
cff26cd

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls164/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml

1.10.3-ls163

11 Jun 19:33
c5b90f4

Choose a tag to compare

CI Report:

https://ci-tests.linuxserver.io/linuxserver/hedgedoc/1.10.3-ls163/index.html

LinuxServer Changes:

Add missing icu-data-full to fix bug with TextDecoder and image uploads.

Remote Changes:

Security fixes

This release fixes a security issue of a possible XSS exploit which can be planted via a malicous SVG file upload.

See CVE-2025-32391 for more details

Enhancements

  • Add config options CMD_SAML_WANT_ASSERTIONS_SIGNED and CMD_SAML_WANT_AUTHN_RESPONSE_SIGNED for SAML auth, since
    some instances didn't comply with the new defaults of @node-saml/passport-saml