We are pleased to announce the release of Scroll Viewport 2022-12-12 which is a security and improvement release.
In this release we disclose a vulnerability of medium severity. The issue is now fixed. Please refer to the security issue VPC-303: Response Header Injection vulnerability in sites created by Scroll Viewport for Cloud for more details.
We have also fixed a bug with anchor links and improved the treatment of draw.io diagrams, which can now be clicked to be expanded, just like any other image in help center articles.
Lastly, this release also introduces the following URL changes:
__prefix is now reserved for internal use. Before, this prefix was already partially reserved, now it’s reserved for all URL segment.
Attachments URLs are now independent of the page the attachment was first processed on
This release contains the following improvements for:
|VPC-302||Use predictable publish paths for attachments||Released|
|VPC-301||Update all protected paths in Viewport sites to use '__' prefix||Released|
|VPC-291||Treat draw.io diagrams like normal pictures that can be expanded||Released|
This release contains the following fixes for:
|VPC-297||Links to anchors on different page are broken when an identical anchor exists on current page||Released|