TL;DR: Patch release fixing a critical SAML SSO security vulnerability. Upgrade promptly.
Warning
⚠️ Security Advisory: This release patches GHSA-w699-8wff-fqxw — improper authentication in the SAML SSO flow. If you're using SAML SSO, this is a required upgrade.
Internal Changes 🔧
Deps
- Bump astral-sh/setup-uv from 8.3.2 to 9.0.0 by @dependabot in #4431
- Bump actions/setup-node from 6.4.0 to 7.0.0 by @dependabot in #4422
- Bump j178/prek-action from 2.0.5 to 2.0.6 by @dependabot in #4421
- Bump actions/setup-python from 6.3.0 to 7.0.0 by @dependabot in #4423
Other
- Add dependabot cooldown by @aminvakil in #4434