Author: René Pfeuffer

News and posts by René Pfeuffer

Path Traversal Vulnerability

Posted on 2022-01-17 by René Pfeuffer


Hey SCM-Manager Community,

thanks to an attentive user, we got notice of a path traversal vulnerability in SCM-Manager. Affected are all versions from 2.0.0 up to 2.29.0.

We released a hotfix 2.29.1.

Update now!

Your SCM-Manager Team


Posted in scm-manager, release, security


SCM-Manager 2.28.0

Posted on 2021-12-23 by René Pfeuffer


Hey SCM-Manager Community,

some time has passed since 2.27.0, and the hassle around log4shell brought us some bugfix releases (because we use logback and not log4j, we had some less severe issues in SCM-Manager). But now it is time for a new feature release 2.28.0.

Branch Details


Posted in scm-manager, release


Log4Shell

Posted on 2021-12-13 by René Pfeuffer


Hey SCM-Manager Community,

We're sure you've heard about the vulnerability in log4j called Log4Shell. As far as we can say, SCM-Manager is not affected by this, because log4j is not used in SCM-Manager (for logging, we use Logback).

However, if you have installed plugins from external sources, you can check whether log4j is used somewhere by running this little script using the script plugin


Posted in scm-manager, security, release


Java 11

Posted on 2021-11-11 by René Pfeuffer


Hey SCM-Manager Community,

Java 8 has been around for quite a long time now and it has served SCM-Manager quite well. But everything has come to an end.

So today we are here to tell you, that we will quit support for Java 8 in March 2022. We chose this date, because according to Oracle the support for Java 8 will end then, too. So, if you still run SCM-Manager on Java 8, you should start your transition to Java 11, which will…


Posted in scm-manager, administration


SCM-Manager 2.26.0

Posted on 2021-11-05 by René Pfeuffer


Hey SCM-Manager Community,

we would like SCM-Manager to be accessible for as many users as possible. We aren't there, yet, but we have taken some major steps. Maybe the most obvious one: You can change your theme.

Accessibility

As well as it might seem so, our first goal was not…


Posted in scm-manager, release


SCM-Manager 2.19.0

Posted on 2021-06-08 by René Pfeuffer


Hey SCM-Manager community,

with release 2.19.0 we have prepared SCM-Manager for two new plugins we hope you will find useful: The SSL context plugin and the repository mirror plugin.

SSL Context Plugin

For a long time SCM-Manager offers lots of plugins providing connections to…


Posted in scm-manager, release


SCM-Manager 2.17.0

Posted on 2021-04-22 by René Pfeuffer


Hey SCM-Manager community,

A new release is ready, bringing avatars for repositories, health checks, and some more fixes, especially in plugins.

Repository Avatars

Ever got lost in an SCM-Manager with lots of repositories? Then it's time to allow your imagination run free: With the new avatar plugin you can set avatars for each repository. Either use the default avatar build from the first letters of the namespace and name, choose from a collection of different icons, or import your own image (jpeg, png, gif or…


Posted in scm-manager, release


SCM-Manager 2.0.0-rc7

Posted on 2020-04-16 by René Pfeuffer


Hey there, another two weeks have passed (can you see the pattern?), and we proudly present release candidate 7 of SCM-Manager 2 to you. Besides a fix regarding repository write requests with anonymous access enabled and other small bugs, we have a new nice plugin for you: A new…


Posted in release, scm-manager


SCM-Manager 2.0.0-rc6

Posted on 2020-04-01 by René Pfeuffer


One of the core features of SCM-Manager is its extensibility with plugins. Installing, updating and removing plugins requires a restart of the SCM-Manager. And to be honest, we would not have thought this would be so hard.

After trying to destroy the complete context of the…


Posted in release, scm-manager


Issue restart

Posted on 2020-03-24 by René Pfeuffer


Over the years, SCM-Manager received a lot of attention and a lot of people had questions. Some of them led to issues on BitBucket, which were migrated to GitHub not long ago. With the release of SCM-Manager 2 getting closer, we would like to get rid of old issues, because we…


Posted in scm-manager, support