diff --git a/docs/en/changelogs/3.1.3.md b/docs/en/changelogs/3.1.3.md new file mode 100644 index 000000000..d43eb42fb --- /dev/null +++ b/docs/en/changelogs/3.1.3.md @@ -0,0 +1,29 @@ +# 3.1.3 + +## Overview + + * Security: Require ADMIN for ?flush=1&isDev=1 ([SS-2014-001](http://www.silverstripe.org/ss-2014-001-require-admin-for-flush1-and-isdev1)) + * Security: XSS in third party library (SWFUpload) ([SS-2014-002](http://www.silverstripe.org/ss-2014-002-xss-in-third-party-library-swfupload/)) + * Security: SiteTree.ExtraMeta allows JavaScript for malicious CMS authors ([SS-2014-003](http://www.silverstripe.org/ss-2014-003-extrameta-allows-javascript-for-malicious-cms-authors-/)) + * Better loading performance when using multiple `UploadField` instances + * Option for `force_js_to_bottom` on `Requirements` class (ignoring inline `