Froxlor 2.3.13 Ships with Vhost Regression Fix and Let's Encrypt Hardening
Froxlor 2.3.13 shipped today, delivering targeted bugfixes to the open-source hosting control panel. Lead developer Michael Kaufmann addressed a regression in the getWebroot() function that broke document-root paths for Apache and Nginx virtual hosts, alongside a change that hides Let's Encrypt private key paths from the UI and API. The update arrives after a security-heavy period for the 2.x branch, capped by version 2.3.11 which patched over 20 vulnerabilities including authentication bypasses and CRLF injection flaws.
Froxlor 2.3.13 Ships with Vhost Regression Fix and Let's Encrypt Hardening @ Linux Compatible
Froxlor 2.3.13 Ships with Vhost Regression Fix and Let's Encrypt Hardening
Froxlor 2.3.13 has been released, focusing on bug fixes and minor security enhancements for the open-source hosting control panel. The update addresses a regression affecting document-root paths in Apache and Nginx virtual hosts and hides the private key paths for Let's Encrypt in the UI and API. This release follows a series of security updates in the 2.x branch, including the previous version which fixed over 20 vulnerabilities. The project, led by Michael Kaufmann, operates under a centralized development model and is supported by froxlor GmbH, which offers managed hosting and DevOps services
