RELEASE NOTES FOR KOHA 16.5.16

24 Aug 2017

Koha is the first free and open source software library automation package (ILS). Development is sponsored by libraries of varying types and sizes, volunteers, and support companies from around the world. The website for the Koha project is:

Koha 16.5.16 can be downloaded from:

Installation instructions can be found at:

Koha 16.5.16 is a security release.

It includes 30 bugfixes.

Security bugs fixed

- [19035]

Stored XSS in patron lists - lists.pl

[19114]

Stored XSS in parcels.pl

[19112]

Stored XSS in basketheader.pl page

[19110]

XSS Stored in branches.pl

[19100]

XSS Flaws in memberentry.pl

[19105]

XSS Stored in holidays.pl

[16069]

XSS issue in basket.pl

[19079]

XSS Flaws in Membership page

[19033]

XSS Flaws in Currencies and exchange page

[19034] XSS Flaws in- Cities - Z39.50/SRU servers administration - Patron

categories pages

[19050]

XSS Flaws in Quick spine label creator

[19051] XSS Flaws in - Batch record deletion page - Batch item deletion page

- Batch item modification page

[19052]

XSS Flaws in - vendor search page - Invoice search page

[19054]

XSS Flaws in Report - Top Most-circulated items

[19078]

XSS Flaws in System preferences

[18726] OPAC XSS - biblionumber

Critical bugs fixed

Patrons

Other bugs fixed

Architecture, internals, and plumbing

OPAC

Patrons

System Administration

Templates

Test Suite

Tools

System requirements

Important notes:

Documentation

The Koha manual is maintained in DocBook.The home page for Koha documentation is

As of the date of these release notes, only the English version of the Koha manual is available:

The Git repository for the Koha manual can be found at

Translations

Complete or near-complete translations of the OPAC and staff interface are available in this release for the following languages:

Partial translations are available for various other languages.

The Koha team welcomes additional translations; please see

for information about translating Koha, and join the koha-translate list to volunteer:

The most up-to-date translations can be found at:

Release Team

The release team for Koha 16.5.16 is

Credits

We thank the following libraries who are known to have sponsored new features in Koha 16.5.16:

We thank the following individuals who contributed patches to Koha 16.5.16.

We thank the following libraries, companies, and other institutions who contributed patches to Koha 16.5.16

We also especially thank the following individuals who tested patches for Koha.

We regret any omissions. If a contributor has been inadvertently missed, please send a patch against these release notes to koha-patches@lists.koha-community.org.

Revision control notes

The Koha project uses Git for version control. The current development version of Koha can be retrieved by checking out the master branch of:

The branch for this version of Koha and future bugfixes in this release line is 16.05.x.

Bugs and feature requests

Bug reports and feature requests can be filed at the Koha bug tracker at:

He rau ringa e oti ai. (Many hands finish the work)

Autogenerated release notes updated last on 24 Aug 2017 06:36:21.