Version 5.0.0

  • Fixed an authenticated (Subscriber+) path traversal vulnerability in the cache-clear handler that could delete arbitrary CSS/JS files.