HedgeDoc
Recent Changes
Update hedgedoc to 1.10.5
Fix the bundled healthcheck in the docker container
GHSA-gmgw-rcmh-7x47 reports potential cross-site side-effects due to not applying sandboxing to iframes.
GHSA-6wm6-3vpq-6qvv reports a possible CSRF vulnerability when using certain social login providers because the
stateparameter is not used and checked.Add
enableUploads(CMD_ENABLE_UPLOADS) config option to restrict uploads toregisteredusers,allusers orAllow links to protocols such as xmpp, webcal or geo
Switch from deprecated shortid to nanoid module, with 10 character long aliases in "public" links
Ensure compatibility with Node 24
Protect user history from accidental or malicious deletion by adding a CSRF-like token
Many enhancements in the documentation at docs.hedgedoc.org
Ignore the healthcheck endpoint in the "too busy" limiter
Send the referrer origin for YouTube embeddings due to their requirement
HedgeDoc lets you create realtime collaborative markdown notes on all platforms. Inspired by Hackpad, with more focus on speed and flexibility.
Features
- Documentation Collaborated
- Context Captured
- Native Markdown
- Knowledge Net
- Technical Sharing and Presentation
- Turn Notes into Slides
- Better Conference Experience
- Questions Polling
Install HedgeDoc in a few minutes on your server with Cloudron. To install Cloudron first, follow our setup steps.