Changes compared to the previous beta, v0.108.0-b.82. See CHANGELOG.md for all changes.
Full changelog
Security
-
Go version has been updated to prevent the possibility of exploiting the Go vulnerabilities fixed in 1.26.1.
-
Authentication is now applied to requests that have been upgraded from HTTP/2 Cleartext (H2C) requests to public resources.
NOTE: We thank @mandreko for reporting this security issue.
Fixed
- Fixed clients block/unblock when moving clients between allowed and disallowed lists.