This release includes a security fix, so upgrading is strongly recommended.
One security vulnerability affecting publicly exposed (SMTP) instances of Mailpit has been fixed in this release. Details are provided below.
Many thanks to the security researcher who responsibly disclosed this issue and helped improve Mailpit's security.
Security
- Prevent SMTP DATA line exceeding MaxSize (GHSA-r553-m4fv-5v97)
Chore
- Update Go dependencies
- Update node dependencies