github countgitmick/FreeTubePlusTabs v0.24.5

latest release: v0.24.6
one month ago

Security patch release

Fixes

  • Bumps follow-redirects 1.15.6 → 1.16.0 (#45)
    • Closes the open Dependabot alert "follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets" (medium severity)
    • Upstream fix adds a sensitiveHeaders option and input sanitization
    • follow-redirects is a dev-only transitive dependency; no runtime behavior changes

Notes

  • Everything in v0.24.4 is included.
  • flake.nix npmDepsHash updated for the new lockfile.

This release exists because v0.24.4 was tagged before the security fix landed on development.

Don't miss a new FreeTubePlusTabs release

NewReleases is sending notifications on new releases.