Friday, September 18, 2026
1 change · saas-19.4
Security fixes and vulnerability patches
The website configurator preview now validates its inputs more carefully and limits access to website designers. This reduces the risk of unsafe or unintended preview behavior while keeping the site-building workflow protected.
Original PR description
bug: The configurator preview used the parameters it is given without checking them enough. fix: Check them, keep the configurator to website designers, and give the preview page a stricter policy.