-Trac 0.9.5 Release Notes
+Trac 0.9.6 Release Notes
-We're proud to present our latest release - Trac 0.9.
+We're proud to present our latest release - Trac 0.9..
Trac is an enhanced wiki and issue tracking system, integrated with
Subversion, for software development projects. Trac uses a minimalistic
-A brief summary of major changes for version 0.9.
+A brief summary of major changes for version 0.9.:
- * Fixed wiki macro XSS vulnerability.
- * Smaller memory usage when accessing subversion history.
- * Fixed issue with incorrectly generated urls when installed behind a web
+ * Fixed reStructuredText breach of privacy and denial of service vulnerability
+ found by Felix Wiemann.
+ * trac-post-commit-hook fixes.
For a more complete list of improvements, see the ChangeLog at:
+The discovered vulnerability requires docutils to be installed and enabled.
+Systems that do not have docutils installed or enabled are not vulnerable.
+As of this version version 0.3.9 or greater of docutils is required for
+using reStructuredText markup in Trac.
Many thanks to the growing number of people who have, and continue to,