Serious vulnerability found in webservice function:

impact is that every file to which the user has read access can be silently disclosed to a webserver.

is asking all users today to upgrade to the latest version of for "for improved robustness and security":

I haven't found this issue in the list of fixed bugs yet. Will test tomorrow if this has been fixed.

I could validate today that the vulnerability in function 'webservice' has been fixed in version 5.4.5