github maathimself/mailflow v3.9.0

4 hours ago

MailFlow v3.9.0

Reply-draft markers in the inbox, a signature on/off switch, user management for admins, and better rendering of email with broken HTML, plus security fixes. Update when you can. Thanks to @Monkey7539, @prudenciooficial, @salmonumbrella, @karamanliev and @mvalkier.

Security

  • The live-update connection could be made to hold a lot of memory (#569). Anyone who could reach /ws, signed in or not, could make the server buffer and parse messages of up to 100 MB. It now accepts only the small messages MailFlow's own apps send, and only once the session is signed in.
  • A reload could lift the screen lock (#570). If the lock request never reached the server, for example while the network was reconnecting after sleep, reloading the page opened the mailbox without the PIN. The browser now keeps the lock until the server confirms the session has ended, and sends the lock again if the server never got it.
  • Changing your recovery email left old reset links working. A "forgot password" link or a login code already sent to the old address still worked. Changing the address now cancels them.

New

  • Reply-draft markers (#538). An inbox message you have a saved reply for shows a "Reply draft" marker, in the list and the reading pane, including replies saved in another mail client. Click it to open the draft. Settings → Appearance → Layout can also open it automatically when you select the message.
  • Signature on/off (#556). A toggle in the composer leaves the signature out of one message without clearing it, and each mailbox has "Show signature by default" under its signature settings.
  • User management for admins (#534). Settings → Users shows when each user was last seen, and an admin can change a user's sign-in name, recovery email and password. Setting a password signs that user out everywhere and cancels their trusted devices, pending reset links and login codes. These changes, turning off a user's 2FA, and deleting a user appear in the security log with the admin who made them.
  • Email with broken HTML renders like it does in a browser (#574). Messages whose markup closed tables early or put </head> after </body> showed a blank body or a squeezed layout; they now show what the sender meant.
  • GTD sidebar shortcuts (#535). t, w and e act on the sidebar row under the pointer.

Fixes

  • The plain-text version of rich-text mail is readable again. Recipients reading the plain part saw &lt; and &amp; in place of < and &, and every paragraph on one line.
  • A mistyped password when turning off 2FA no longer signs you out (#571). It now shows "Incorrect password".
  • Undo send keeps the automatic Cc and Bcc as they were (#575). After Undo, switching From could bring back an automatic address you had removed before sending.

Upgrading

ghcr.io/maathimself/mailflow-backend:latest points at 3.9.0, published for amd64 and arm64.

  • Three database migrations run on start, each quick: a "last seen" column for users, filled from recent sign-ins; the admin who made a change, in the security log; and "Show signature by default" for each mailbox, on for every existing one, so signatures behave as before.
  • Email opened before this update keeps its old rendering until its body is fetched again; new mail uses the improved rendering.
  • Tabs opened on 3.8.0 or later reload into the new version by themselves; reload any older ones.

Don't miss a new mailflow release

NewReleases is sending notifications on new releases.