Release Notes
SECURITY
- Fix data exfiltration scenario based on "video" element with "poster" attribute (AXI-6922)
- Fix JavaScript injection via the timeFormat account preference (AXI-6925 • CVE-2025-68643)
- Sanitize all webmailData fields to prevent JavaScript injection vulnerabilities (AXI-6930)
- Add base-uri and form-action CSP directives (AXI-6933)
- Add CSP headers to the print pages (AXI-6946)
- WebAdmin: Fix incorrect delegated admin access control checks when handling SSL certificates (AXI-6935 • CVE-2025-68721)
- WebAdmin: Fix multiple instances of stored XSS vulnerabilities (AXI-6936 • CVE-2025-68723)
- WebAdmin: Fix application manipulation via malicious links that abuse the breadcrumb parameter (AXI-6937 • CVE-2025-68722)
SERVER
- Fix domain loading order in specific scenarios (AXI-6745)
- Fix administrative permission (AACL) affecting delegated admin access to the FTP backup CLI context (AXI-6889)
WEBADMIN
- Fix account number overlapping the account name column when listing more than 10k accounts (AXI-6681)
- Onboarding: Update license registration text (AXI-6942)
WEBMAIL
- Fix the domain names shown in the domain selection list in the login page (AXI-6715)
- Fix print pages missing base stylesheet in light mode (AXI-6947)
OTHER
- Axigen TNEF filter
- Fix failsafe recovery validation for the AFSL TNEF filter (AXI-6929)
Download
How to Install
To update to this version on Linux, please follow the step by step instructions below:
-
Download the corresponding install kit for your operating system (see above)
-
Stop the Axigen service
Use the command ps aux | grep axigen to confirm that the service is stopped.
-
Create a backup of the Axigen working directory
Use the suggestions in our related knowledge base article on how to back up Axigen
Note: For the restoring process, please consult our article on how to restore an Axigen working directory backup
-
Run the installer
Follow the on-screen installer instructions to complete the upgrade process.
Note: Since this is only an update, please make sure that you skip the Axigen post-install configuration wizard.
-
Start the Axigen service
Use the commands: ps aux | grep axigen and /opt/axigen/bin/axigen --version to confirm that the new version is in place.
Download
How to Install
To update to this version on Windows, please follow the step by step instructions below:
-
Download the corresponding install kit for your operating system (see above)
-
Stop the Axigen service
-
Create a backup of the Axigen working directory
Use the suggestions in our related knowledge base article on how to back up Axigen
Note: For the restoring process, please consult our article on how to restore an Axigen working directory backup
-
Run the installer
Follow the on-screen installer instructions to complete the upgrade process.
Note: Since this is only an update, please make sure that you skip the Axigen post-install configuration wizard.
-
Start the Axigen service