Fess 14.19.2 Released

We are pleased to announce the release of Fess 14.19.2, a minor update that includes security and functionality improvements.

Key Updates in This Release:

  • :shield: Security Fix: Addressed CVE-2025-48382 by correcting insecure temporary file permissions used during certain operations. This improves the overall file system security of Fess.
  • :card_index_dividers: Recursive File Crawling Control: Added depth control to recursive file list crawling to prevent unintended deep traversal and improve crawl performance. (#2878)
  • :cookie: Cookie Handling Refactor: Refactored secure cookie logic using a centralized isSecureCookie() method for consistent and reliable handling. (#2880)

:scroll: Release Info: GitHub Release Notes

:bug: Issues Addressed: Issue Tracker

:whale: Docker Image: Available on GitHub Packages

:open_book: Documentation: Installation Guide | Admin Guide

If you have any questions or feedback, feel free to post here.

Thank you for your continued support and for being part of the Fess community!