this post was submitted on 28 Jul 2023
6 points (87.5% liked)

France

2792 readers
1 users here now

Hop, !france@lemmy.world c'est finit, merci de migrer sur !france@jlai.lu

founded 1 year ago
MODERATORS
 

cross-posted from: https://lemmy.ml/post/2540874

What is Lemmy?

Lemmy is a self-hosted social link aggregation and discussion platform. It is completely free and open, and not controlled by any company. This means that there is no advertising, tracking, or secret algorithms. Content is organized into communities, so it is easy to subscribe to topics that you are interested in, and ignore others. Voting is used to bring the most interesting items to the top.

Major Changes

This version brings major optimizations to the database queries, which significantly reduces CPU usage. There is also a change to the way federation activities are stored, which reduces database size by around 80%. Special thanks to @phiresky for their work on DB optimizations.

The federation code now includes a check for dead instances which is used when sending activities. This helps to reduce the amount of outgoing POST requests, and also reduce server load.

In terms of security, Lemmy now performs HTML sanitization on all messages which are submitted through the API or received via federation. Together with the tightened content-security-policy from 0.18.2, cross-site scripting attacks are now much more difficult.

Other than that, there are numerous bug fixes and minor enhancements.

Support development

@dessalines and @nutomic are working full-time on Lemmy to integrate community contributions, fix bugs, optimize performance and much more. This work is funded exclusively through donations.

If you like using Lemmy, and want to make sure that we will always be available to work full time building it, consider donating to support its development. No one likes recurring donations, but they’ve proven to be the only way that open-source software like Lemmy can stay independent and alive.

Upgrade instructions

Follow the upgrade instructions for ansible or docker. There are no config or API changes with this release.

This upgrade takes ~5 minutes for the database migrations to complete.

You may need to run sudo chown 1000:1000 lemmy.hjson if you have any permissions errors.

If you need help with the upgrade, you can ask in our support forum or on the Matrix Chat.

top 6 comments
sorted by: hot top controversial new old
[–] Snoopy@jlai.lu 1 points 1 year ago* (last edited 1 year ago) (1 children)

In terms of security, Lemmy now performs HTML sanitization on all messages which are submitted through the API or received via federation. Together with the tightened content-security-policy from 0.18.2, cross-site scripting attacks are now much more difficult.

Ah ça veut dire qu'on aura plus les précedentes attaques via script comme la dernière fois ?

[–] Camus@jlai.lu 2 points 1 year ago (1 children)

Disons que cette fois-ci il y aura au moins quelques chose pour les empêcher :D

[–] Snoopy@jlai.lu 2 points 1 year ago

C'est un début toutes mes confuses

[–] Camus@jlai.lu 1 points 1 year ago* (last edited 1 year ago) (1 children)

Allow selecting from all languages in person settings (fixes #1971) (#1985)

@anansi@jlai.lu on espère que cette fois c'est la bonne

[–] anansi@jlai.lu 2 points 1 year ago

On ne peut pas tromper 1000 fois 1000 personnes.

[–] AlexisFR@jlai.lu 0 points 1 year ago

Ça avance bien ! Vivement qu'ils ajoutent le possibilité de cacher/réduire les soumissions aussi !