• Get Review Board
  • What's New
  • Products
  • Review Board Code review, image review, and document review
  • Documentation
  • Release Notes
  • Power Pack Enterprise integrations, reports, and enhanced document review
  • Try for 60 Days
  • Purchase
  • RBCommons Review Board as a Service, hosted by us
  • Pricing
  • RBTools Command line tools and Python API for Review Board
  • Documentation
  • Release Notes
  • Review Bot Automated code review, connecting tools you already use
  • Documentation
  • Release Notes
  • RB Gateway Manage Git and Mercurial repositories in your network
  • Documentation
  • Release Notes
  • Learn and Explore
  • What is Code Review?
  • Documentation
  • Frequently Asked Questions
  • Support Options
  • Third-Party Integrations
  • Demo
  • What's New in Review Board

    Releases Security Updates Tips and Strategies — Subscribe Twitter Facebook
    New Review Board Security Releases: 1.5.7 and 1.6.3
    November 15, 2011

    It was brought to our attention today that Review Board 1.5.x and 1.6.x had a security vulnerability involving browser-side script injection in the diff viewer and screenshot pages. We take such things seriously, and are putting out a couple of releases to fix it. We strongly advise everyone to update, especially if you're running a public server.

    Review Board 1.5.7 and 1.6.3 have been released. If you're running 1.6.x, just upgrade as normal, but if you're running 1.5.x, you need to upgrade by doing:

    $ sudo easy_install -U ReviewBoard==1.5.7
    

    Otherwise, you'll automatically upgrade to 1.6.x.

    Thanks to Damian Johnson for letting us know about this vulnerability and providing a patch to fix it.

    Security vulnerability found in Django 1.0.3 and 1.1
    October 10, 2009

    An announcement was made yesterday that the Django 1.0.3 and 1.1 releases contained a security vulnerability that may impact some users. We recommend that users upgrade to the latest version of Django immediately. This is especially important to open source projects with public Review Board servers.If you're running an older Review Board server with Django 1.0.x, you should download Django 1.0.4 and install it. If you're running a newer version, you can upgrade by typing:

    easy_install -U Django
    

    Once you've upgraded, re-run rb-site upgrade on your installed Review Board sites.

    1 2 3 4 pages

    Keep up with the latest Review Board releases, security updates, and helpful information.

    About
    News
    Demo
    RBCommons Hosting
    Integrations
    Happy Users
    Support Options
    Documentation
    FAQ
    User Manual
    RBTools
    Administration Guide
    Power Pack
    Release Notes
    Downloads
    Review Board
    RBTools
    Djblets
    Power Pack
    Package Store
    PGP Signatures
    Contributing
    Bug Tracker
    Submit Patches
    Development Setup
    Wiki
    Follow Us
    Mailing Lists
    Reddit
    Twitter
    Mastodon
    Facebook
    YouTube

    Copyright © 2006-2025 Beanbag, Inc. All rights reserved.

    Terms of Service — Privacy Policy — AI Ethics Policy — Branding