%PDF- %PDF-
Direktori : /var/softaculous/livehelper/ |
Current File : //var/softaculous/livehelper/changelog.txt |
4.64v 1. Departments widget will show online operators counter also, not only their slots. 2. Copy CURL Command will be available in audit login also. Click info icon and you will find it. 3. Debug window in chat will preparse chat_variables for better understandability. 4. If user message contained LHC internal tags, Rest API was reparsing them again. 5. Chat tabs will have light background for better visibility. 6. Option to have custom back office site access more easily. https://doc.livehelperchat.com/docs/security 7. Changes to avoid notices in case invalid requests are made. execute doc/update_db/update_332.sql for update 4.63v 1. Attribute to set additional variable to check if it is encrypted in the first place. 2. `Permission` tab in user window will allow checking which group/role grants specific permission. 3. Holding CTRL will open chat tab in the background. 4. Possibility to search by trigger body in the bot constructor. 5. When logging Rest API message as system message, it will enable generating CURL request by logged data. 6. Search in system configuration. execute doc/update_db/update_331.sql for update 4.62v 1. Option to show hidden chat variable directly in the chat window. execute doc/update_db/update_330.sql for update 4.61v Security Fixes Multiple XSS vulnerabilities were fixed (all required operator login to exploit) These were minor security issues that couldn't be exploited by anonymous visitors Reported by: * Name: Manojkumar Jaganathan (TheWhiteEvil) * LinkedIn: https://www.linkedin.com/in/manojkumar-j-7ba35b202/ * HackerOne Profile: https://hackerone.com/the-white-evil?type=user * Company: HackerBro Technologies * Their website https://www.hackerbro.net Specific fixes included: 1. Properly escaping operator names in the dropdown filtering box 2. Escaping bot usernames in the Telegram module 3. Escaping operator names in the change owner window 4. Escaping "Alias nick" field in department assignment modals 5. Escaping Facebook page "Name" fields 6. Escaping canned message content in chat window flows New Features 1. Added logging capability for chat priority rules application 2. Added support for passing chat_id and chat_hash parameters 3. Improved UI to show which siteaccess is being used for translated text in widget themes execute doc/update_db/update_329.sql for update 4.60v 1. Disabled operators departments relations will be stored in separate table. Performance improvement. 2. `Ignore message in Rest API` option in text message. Will avoid message being send inside `previous_visitor_messages_list_url` loop. 3. Option in chat configuration `Delete chat on close there there is no visitor messages in chat` usefull in case you are using auto chat start in start chat form settings. 4. `sensitive`, `raw`, `sensitive_raw` prefixes support for `sensitive_{{args.item.msg}}` syntax inside `previous_visitor_messages_list_url` loop 5. Encrypted variables passing additional options https://doc.livehelperchat.com/docs/custom-fields-and-prefill#how-securely-pass-attributes 6. JS api to hide need help widget manually. https://doc.livehelperchat.com/docs/javascript-arguments#hide-need-help-widget 7. Update script to support migration queries. execute doc/update_db/update_328.sql for update