v1.8.7
v1.8.7 Stable
Dated: 16th July, 2019
In between we also released v1.8.6, it was an emergency security release, thus this change log covers it.
Features
CageFS integration.
CloudLinux Integration.
Setup SSH access for website users from its launcher.
Bug Fixes
Bug fixes to cPanel Importer.
Other bug fixes that were introduced because of emergency security release v1.8.6
Security Update
v1.8.6 and v1.8.7 have many security enhancements. For all end user operations CyberPanel now use run-as user (the website user) to perform those operations. Special CyberPanel -> LSCPD connection is used for security communication for different sort of user elevation and to drop priviliges when necessary. Authentication token is used for communication to prevent un-athorized access to the command socket.
This will be our first security release in our 2-stage security release model. Everyone must update your servers to v1.8.7 as soon as possible.
Special thanks to rack911labs.com, for doing a security audit and help us find/fix the issues.