Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Release/v0.33.8 #407

Merged
merged 5 commits into from
Jul 31, 2021
Merged

Release/v0.33.8 #407

merged 5 commits into from
Jul 31, 2021

Conversation

jayanandagit
Copy link
Contributor

@jayanandagit jayanandagit commented Jul 30, 2021

Proposed changes

A vulnerability bot flagged an issue with the Swagger UI. The issue is quite serious as it enables input value exfiltration. Swagger is used without authorization credentials, so this attack could have severe consequences for a service that is long-lived.

You can see the issue here

Types of changes

  • Bugfix (non-breaking change which fixes an issue)
  • New feature (non-breaking change which adds functionality)
  • Breaking change (fix or feature that would cause existing functionality to not work as expected)
  • Refactor (changes to code, which do not change application behavior)

Checklist

  • I have filled out this PR template
  • I have read the CONTRIBUTING doc
  • I have added automated tests that prove my fix is effective or that my feature works
  • I have added necessary documentation (README.md, inline comments, etc.)
  • I have updated the CHANGELOG.md under a ## next release, with a short summary of my changes

Relevant Links

Further comments

@jayanandagit jayanandagit requested a review from bytebounder July 30, 2021 19:04
@jayanandagit jayanandagit mentioned this pull request Jul 30, 2021
9 tasks
@jayanandagit jayanandagit merged commit 41dbb8d into master Jul 31, 2021
@jayanandagit jayanandagit deleted the release/v0.33.8 branch July 31, 2021 03:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants