github kimai/kimai 1.16

latest releases: 2.16.1, 2.16.0, 2.15.0...
2 years ago

Full Changelog

Implemented enhancements:

Fixed bugs:

  • Time records marked as exported even when invoice is not saved due to duplicate invoice numbers #2917
  • Error on Install: "Call to undefined method Doctrine\DBAL\Statement::fetchAll()" #2885
  • Request via API with X-AUTH-USER invalidates all other sessions for the (LDAP) user #2873 thanks @handcode
  • improve csrf handling #2936 (kevinpapst)
  • link to doctor #2930 (kevinpapst)
  • do not reset password for LDAP and SAML users unless needed #2916 (kevinpapst)
  • use token in invoice delete route #2889 (kevinpapst)
  • fixes for new quick-entry week form #2887 (kevinpapst)

Multiple possible CSRF attacks were found and patched. Thanks to @Asura-N and @Haxatron for the disclosure.
If you use Kimai in a multi-user environment, you are urged to update as soon as possible.

Don't miss a new kimai release

NewReleases is sending notifications on new releases.