BookStack v26.05.1 has been released. This is a security release to address the following vulnerabilities: Attachment requests could be manipulated to leak details/links/metadata (not content) of attachments which the user did not have permission to view. The file:// protocol could be abused in some Windows-specific scenarios to auto-run requests with credential information when viewing exports.
BookStack Security Release v26.05.1
calendar_today
June 9, 2026
domain
bookstack