Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package matomo for openSUSE:Factory checked in at 2022-10-19 13:17:59 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/matomo (Old) and /work/SRC/openSUSE:Factory/.matomo.new.2275 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "matomo" Wed Oct 19 13:17:59 2022 rev:44 rq:1029902 version:4.12.1 Changes: -------- --- /work/SRC/openSUSE:Factory/matomo/matomo.changes 2022-10-06 07:42:05.980673357 +0200 +++ /work/SRC/openSUSE:Factory/.matomo.new.2275/matomo.changes 2022-10-19 13:18:30.677325847 +0200 @@ -1,0 +2,24 @@ +Wed Oct 19 05:16:52 UTC 2022 - ecsos <ec...@opensuse.org> + +- Update to 4.12.1 + There is one low impact security fix in this patch release to add + missing escaping to prevent a Cross-site Scripting attack by a + super user on another super user. + * matomo-org/matomo + - #19853 Goal visits log query performance improvement ??? don???t execute the query when no idVisits + - #19819 Ensure empty report tables also use max width + - #19838 Avoid loading goals data multiple times for goal metrics + - #19833 Allow empty excludedReferrers on the global setting + - #19863 Adds missing escaping + - #19768 Upgrade to Matomo 4.12 breaks Matomo when DeviceDetectorCache plugin is installed + - #19870 Fix failures link to Learn More + - #19808 Visits Overview accessibility improvement ??? remove redundant information + - #19809 TourEngagement accessibility improvement ??? Remove redundant information + - #19817 Fix Referrers.getKeywordsFromSearchEngineId API for invalid subtable ids + - #19869 PHP8 fix ??? Ensure data retention settings are respected + - #19841 Check downloaded referrer spam list for validity + - #19827 Return correct parameter divId for JS opt-out + - #19852 Fix array to string conversion warning in userOptOut + - #19861 Ensure password check can only throw wrong password error + +------------------------------------------------------------------- Old: ---- matomo-4.12.0.tar.gz New: ---- matomo-4.12.1.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ matomo.spec ++++++ --- /var/tmp/diff_new_pack.Cq1zRz/_old 2022-10-19 13:18:31.497327546 +0200 +++ /var/tmp/diff_new_pack.Cq1zRz/_new 2022-10-19 13:18:31.505327563 +0200 @@ -21,7 +21,7 @@ %{!?_tmpfilesdir:%global _tmpfilesdir %{_prefix}/lib/tmpfiles.d} Name: matomo -Version: 4.12.0 +Version: 4.12.1 Release: 0 Summary: Web analytics platform License: GPL-3.0-or-later ++++++ matomo-4.12.0.tar.gz -> matomo-4.12.1.tar.gz ++++++ /work/SRC/openSUSE:Factory/matomo/matomo-4.12.0.tar.gz /work/SRC/openSUSE:Factory/.matomo.new.2275/matomo-4.12.1.tar.gz differ: char 31, line 1