I'm happy to announce that GoAhead 4 is now available for immediate Download.
GoAhead 4 is an evolutionary upgrade for all GoAhead 3.X. It preserves application compatibility while strengthening API contracts.
All users are encouraged to always update to the latest release and to upgrade now to GoAhead 4.
A remote code execution vulnerability has been reported in GoAhead versions 2.x and 3.x in the CGI handler on Linux. This impacts those sites that use dynamically linked CGI programs with GoAhead on Linux.
To help simplify and accelerate releases, we're going to focus on source code distributions only for all products.
Since the Embedthis product suite are designed for embedded use, this should impose little burden and will help focus our testing and accelerate our release pipeline.
We're releasing updates for all products with minor fixes to the underlying MPR and HTTP libraries. This means that Appweb, GoAhead and ESP get new releases.
For Appweb, we're incrementing the major release to Appweb 7. Appweb 6 becomes the Long Term Release (LTS) version and will be supported until the end of 2018. There are no breaking or major changes in Appweb 7.
But CSP is off to a slow start and is not implemented on the vast majority of web sites. Perhaps the difficulty implementing CSP is to blame?
This post examines a case study deploying CSP and has some recommendations for the social media companies to make it easier to implement CSP.