2026-05
mailcow/mailcow-dockerized2026-05May 12, 2026by FreddleSpl0it
AI Summary
This small but important update addresses security vulnerabilities in Postfix's postscreen component and fixes potential HTML injection in the web interface's sieve filter and queue manager.
Key Highlights
- Postfix postscreen_access updates
- HTML escaping in Sieve filter edit view
- HTML escaping in Queue manager
- Translations updated
Full Release Notes
## What's Changed This is a small but important update that fixes a security-related issue. We strongly recommend updating to this version. The associated CVE identifier will be published at a later time. * [Postfix] update postscreen_access.cidr by @milkmaker in https://github.com/mailcow/mailcow-dockerized/pull/7177 * [Postfix] update postscreen_access.cidr by @milkmaker in https://github.com/mailcow/mailcow-dockerized/pull/7209 * Translations update from Weblate by @milkmaker in https://github.com/mailcow/mailcow-dockerized/pull/7190 * Translations update from Weblate by @milkmaker in https://github.com/mailcow/mailcow-dockerized/pull/7218 * [Web] escape HTML in sieve filter edit view and queue manager by @FreddleSpl0it in https://github.com/mailcow/mailcow-dockerized/pull/7220 **Full Changelog**: https://github.com/mailcow/mailcow-dockerized/compare/2026-03b...2026-05