This update fixes the CSP policy, allowing the QR code image to be loaded.
In addition, it contains numerous dependency updates to fix supply chain security issues.
All users are encouraged to update to the newest version as soon as possible.
What's Changed
- Update dependency cimg/postgres to v14.2 by @renovate in #724
- Update github/codeql-action action to v2 by @renovate in #729
- Update dependency redis to v7 by @renovate in #731
- Update dependency @hapi/bourne to v3 by @renovate in #732
- Bump ejs from 3.1.6 to 3.1.7 by @dependabot in #733
- Update docusaurus monorepo to v2.0.0-beta.20 by @renovate in #713
- Revert "Update docusaurus monorepo to v2.0.0-beta.20" by @JaneJeon in #735
- Update dependency cimg/redis to v7 by @renovate in #736
- Bump async from 2.6.3 to 2.6.4 by @dependabot in #740
- Bump semver-regex from 3.1.3 to 3.1.4 by @dependabot in #741
- Bump got from 11.8.2 to 11.8.5 by @dependabot in #743
- Bump terser from 5.10.0 to 5.14.2 by @dependabot in #745
- Bump terser from 5.10.0 to 5.14.2 in /website by @dependabot in #744
- Update dependency sharp to 0.30.5 [SECURITY] by @renovate in #748
- Added new docker compose deployment method and associated .env, and modified README by @HrBingR in #750
- Bump jose from 2.0.5 to 2.0.6 by @dependabot in #752
- Bump loader-utils from 1.4.0 to 1.4.1 by @dependabot in #758
- Bump loader-utils from 2.0.2 to 2.0.3 in /website by @dependabot in #759
- Bump loader-utils from 1.4.1 to 1.4.2 by @dependabot in #761
- Bump loader-utils from 2.0.3 to 2.0.4 in /website by @dependabot in #760
- Bump minimatch, recursive-readdir and serve-handler in /website by @dependabot in #763
- Bump minimatch and recursive-readdir by @dependabot in #762
- Bump qs and express by @dependabot in #764
- Bump decode-uri-component from 0.2.0 to 0.2.2 by @dependabot in #765
- Update dependency jsonwebtoken to 9.0.0 [SECURITY] by @renovate in #767
- Bump json5 from 1.0.1 to 1.0.2 by @dependabot in #768
- Bump json5 from 2.2.1 to 2.2.3 in /website by @dependabot in #769
- Bump knex from 2.0.0 to 2.4.0 by @dependabot in #770
- Bump cookiejar from 2.1.2 to 2.1.4 by @dependabot in #771
- Bump @sideway/formula from 3.0.0 to 3.0.1 by @dependabot in #775
New Contributors
Full Changelog: v1.3.0...v1.3.1