v5.2.1
frappe/hrmsv5.2.1Dec 1, 2025by jonchurch
AI Summary
Reverts an erroneous breaking change from the previous release (5.2.0) related to the extended query parser, confirming that CVE-2024-51999 is not a real vulnerability.
Key Highlights
- Reverts erroneous breaking change from v5.2.0
- Reverts change related to extended query parser
- Confirms CVE-2024-51999 is rejected
Full Release Notes
## What's Changed > [!IMPORTANT] > The prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release. * Release: 5.2.1 by @UlisesGascon in https://github.com/expressjs/express/pull/6933 **Full Changelog**: https://github.com/expressjs/express/compare/v5.2.0...v5.2.1