github corazawaf/coraza v3.3.3

12 days ago

Important

This release has a fix for GHSA-q9f5-625g-xm39.

Thanks to @blotus for finding it and providing a proper discloruse AND fix! ❤️

What's Changed

  • fix(deps): update module github.com/corazawaf/coraza/v3 to v3.3.2 in testing/coreruleset/go.mod by @renovate in #1282
  • chore(deps): update github/codeql-action digest to b6a472f in .github/workflows/codeql-analysis.yml by @renovate in #1284
  • fix(deps): update module github.com/bmatcuk/doublestar/v4 to v4.8.0 in testing/coreruleset/go.mod by @renovate in #1285
  • ci: add wait-for-status check by @fzipi in #1286
  • chore(deps): update all non-major dependencies in .github/workflows/tinygo.yml by @renovate in #1289
  • chore(deps): pin poseidon/wait-for-status-checks action to 899c768 in .github/workflows/regression.yml by @renovate in #1288
  • chore(deps): update github/codeql-action digest to dd196fa in .github/workflows/codeql-analysis.yml by @renovate in #1293
  • chore(deps): update all non-major dependencies in .github/workflows/regression.yml by @renovate in #1295
  • fix(ci): ignore codecov tests from wait-for-status-checks by @M4tteoP in #1292
  • feat: add hexDecode transformation by @tty2 in #1275
  • chore(deps): update all non-major dependencies in .github/workflows/regression.yml by @renovate in #1296
  • fix(deps): update module github.com/bmatcuk/doublestar/v4 to v4.8.1 in testing/coreruleset/go.mod by @renovate in #1297
  • fix(deps): update all non-major dependencies in go.mod by @renovate in #1298
  • chore(deps): update github/codeql-action digest to dd74661 in .github/workflows/codeql-analysis.yml by @renovate in #1299
  • fix(deps): update module golang.org/x/sync to v0.11.0 in go.mod by @renovate in #1302
  • chore(deps): update github/codeql-action digest to 9e8d078 in .github/workflows/codeql-analysis.yml by @renovate in #1303
  • fix(deps): update module golang.org/x/net to v0.35.0 in go.mod by @renovate in #1306
  • fix(deps): update module github.com/coreruleset/go-ftw to v1.3.0 in testing/coreruleset/go.mod by @renovate in #1308
  • chore(deps): update actions/cache digest to 0c907a7 in .github/workflows/tinygo.yml by @renovate in #1309
  • chore(deps): update all non-major dependencies in .github/workflows/codeql-analysis.yml by @renovate in #1312
  • chore: update to golang 1.23.6 by @fzipi in #1313
  • inspectFile: False-positive match fixed by @vimusov in #1311
  • chore(deps): update codecov/codecov-action digest to 0565863 in .github/workflows/regression.yml by @renovate in #1314
  • chore(deps): update actions/cache digest to d4323d4 in .github/workflows/tinygo.yml by @renovate in #1315
  • fix(deps): update all non-major dependencies in go.mod by @renovate in #1317
  • chore(deps): update module golang.org/x/crypto to v0.35.0 [security] by @renovate in #1319
  • fix(deps): update module golang.org/x/net to v0.36.0 in go.mod by @renovate in #1318
  • fix(deps): update go modules in go.mod by @renovate in #1320
  • chore(deps): update github/codeql-action digest to 6bb031a in .github/workflows/codeql-analysis.yml by @renovate in #1323
  • fix(deps): update module github.com/mccutchen/go-httpbin/v2 to v2.17.1 in go.mod by @renovate in #1324
  • chore(deps): update module golang.org/x/net to v0.36.0 [security] by @renovate in #1327
  • chore: points to Go v1.23.0 and some clean ups by @M4tteoP in #1328

New Contributors

Full Changelog: v3.3.2...v3.3.3

Don't miss a new coraza release

NewReleases is sending notifications on new releases.