Critical Security Notice: Upgrade to OneDev 16.4.1

We have fixed a critical security vulnerability in OneDev 16.4.1. The vulnerability can allow remote code execution (RCE) in installations that use OneDev's internal database.
All OneDev versions before 16.4.1 are affected when the internal database is used. Installations configured to use an external database with password authentication are not affected.
If your installation may be affected, upgrade to OneDev 16.4.1 as soon as possible. We strongly recommend treating this update as urgent.