github pomerium/pomerium v0.10.6

latest releases: v0.25.2, v0.25.1, v0.25.0...
3 years ago

Security

Envoy released a security update to addresses the following CVE(s):

  • CVE-2020-25017 (CVSS score 6.5, Medium): Incorrect handling of duplicate HTTP headers

This patch updates the underlying embedded version of Envoy to 1.15.1. If you instead are using the Envoy from your local $PATH you are encouraged to upgrade that binary as well.

Don't miss a new pomerium release

NewReleases is sending notifications on new releases.