Skip to content

HedgeDoc 1.7.2

This release fixes a security issue. We recommend upgrading as soon as possible.

Security Fixes CVE-2021-21259: Stored XSS in slide mode An attacker can inject arbitrary JavaScript into a HedgeDoc note. Bugfixes Ensure the last line of the markdown editor is not covered by the status bar (thanks to @mhdrone for reporting!)

To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information