Bacularis 6.5.2 is a maintenance release focused on security, application hardening, and improvements resulting from a recent security review. It also includes fixes for two reported stored XSS vulnerabilities and minor updates to Restore Verification checkers.
Hello Community,
We are pleased to announce the release of Bacularis 6.5.2. As previously announced, this is a maintenance release focused primarily on security and application hardening.
Version 6.5.2 includes fixes and changes prepared as part of a security review. We strengthened the Bacularis codebase and standardized the way data from users, Bacula, the API, and other sources is validated and handled securely.
In this release, we also fixed two reported stored XSS vulnerabilities that could allow crafted JavaScript code to be executed in a user's browser.
Bacularis 6.5.2 includes fixes for both vulnerabilities. CVE identifiers will be added once they are published.
Users running affected versions are encouraged to upgrade to Bacularis 6.5.2.
In addition to the security-related changes, we also introduced minor fixes to some Restore Verification checkers.
The security review was both a response to the reported issues and a preventive measure. Its purpose was not only to address the identified problems, but also to strengthen Bacularis through additional hardening and by standardizing secure data handling across different parts of the application.
We hope you enjoy using Bacularis and encourage you to upgrade to version 6.5.2.
Best regards,
The Bacularis Team
Bacularis Web
Bacularis API
Bacularis Common