Changelog
Security
- e97d8ec security: GHSA-g962-2j28-3cg9 (HIGH) JWT Audience Validation Bypass in Local Key and HMAC Modes (thanks @Zwique)
- bb14c5d security: GHSA-fwhj-785h-43hh (MODERATE) Crash on NPE by calling APIs with invalid bindings or log references (thanks @maru1009)
- d6a0abc security: GHSA-gq2m-77hf-vwgh (MODERATE) Session Fixation: Logout Fails to Invalidate Server-Side Session (thanks @Zwique)
- d796271 security: GHSA-jf73-858c-54pg (MODERATE) View permission not being checked when returning dashboards (thanks @Zwique)
- cb46a59 security: GHSA-p443-p7w5-2f7f (MODERATE) RestartAction always runs actions as guest (thanks @Zwique)
Bug fixes
Others
- 6e7f3b0 Merge commit from fork
- 0655768 Merge commit from fork
- 6202736 Merge commit from fork
- 32c7fd7 Merge commit from fork
- 276e3f6 Next (#915)
Container images (from GitHub)
docker pull ghcr.io/olivetin/olivetin:3000.11.1
Container images (on Docker Hub)
docker pull docker.io/jamesread/olivetin:3000.11.1
Upgrade warnings, or breaking changes
- No such issues between the last release and this version.
Useful links
Thanks for your interest in OliveTin!