The Evergreen Project has issued the following security releases:
- 3.15.14
- 3.16.10
- 3.17.4
This is a security release that fixes a cross-site scripting vulnerability detailed in Bug 2150054: https://bugs.launchpad.net/evergreen/+bug/2150054. The bug will be made publicly visible after the security release is generally available.
These releases are available on the downloads page.
We recommend immediate installation of this security release.
If you are running a version of Evergreen earlier than 3.15, please consult with your service provider or review the fixes in Git to update your system.
These releases also include other bugfixes, which are detailed in the release notes available on the downloads page.
Thank you to the release teams: Martha Driscoll (NOBLE), Blake Graham-Henderson (MOBIUS), Gina Monti (Bibliomation), Andrea Buntz Neiman (Equinox), and Jason Stephenson (CW MARS).
