chiappa
|
05943057b8
fix: batch-load admin IPs list per-row lookups (SEC_REVIEW F32)
|
4 дней назад |
chiappa
|
c8ea0ede68
docs: mark SEC_REVIEW F31 as fixed in 3a2564d
|
4 дней назад |
chiappa
|
3a2564d14b
fix: cap audit-log filter length and pagination depth (SEC_REVIEW F31)
|
4 дней назад |
chiappa
|
6d4687476b
docs: mark SEC_REVIEW F30 as fixed in 2cc1924
|
4 дней назад |
chiappa
|
2cc1924a4e
fix: bound IPs search `q` to anchored IP-shaped prefix (SEC_REVIEW F30)
|
4 дней назад |
chiappa
|
d2e1b3b29c
docs: mark SEC_REVIEW F29 as fixed in a997d65
|
4 дней назад |
chiappa
|
a997d65818
fix: rate-limit /api/v1/admin/* (SEC_REVIEW F29)
|
4 дней назад |
chiappa
|
20c5cce580
docs: mark SEC_REVIEW F28 as fixed in e09964b
|
4 дней назад |
chiappa
|
e09964b4ad
fix: bound RateLimiter bucket map with LRU eviction (SEC_REVIEW F28)
|
4 дней назад |
chiappa
|
8e7a5f7b46
docs: mark SEC_REVIEW F27 as fixed in 060119a
|
4 дней назад |
chiappa
|
060119af27
fix: rate-limit pre-auth and unauthenticated paths (SEC_REVIEW F27)
|
4 дней назад |
chiappa
|
5072c54f87
docs: mark SEC_REVIEW F26 as fixed in ce77454
|
4 дней назад |
chiappa
|
ce77454c93
fix: never leak exception messages from JsonErrorHandler (SEC_REVIEW F26)
|
4 дней назад |
chiappa
|
5f05743c4b
docs: mark SEC_REVIEW F25 as fixed in 33e9198
|
4 дней назад |
chiappa
|
33e9198800
fix: tighten /internal/* gate to loopback by default (SEC_REVIEW F25)
|
4 дней назад |
chiappa
|
921e17a693
docs: mark SEC_REVIEW F24 as fixed in 193f646
|
4 дней назад |
chiappa
|
193f6463a4
fix: drop CSP unsafe-inline/unsafe-eval via nonces + Alpine CSP build (SEC_REVIEW F24)
|
4 дней назад |
chiappa
|
c67734d80c
docs: mark SEC_REVIEW F23 as fixed in f66ceaf
|
4 дней назад |
chiappa
|
f66ceaf095
fix: tighten openid-connect-php constraint to ^1.0.2 (SEC_REVIEW F23)
|
4 дней назад |
chiappa
|
5a26a19be6
docs: add update workflow to README and an admin manual
|
4 дней назад |
chiappa
|
5232f10cd9
docs: mark SEC_REVIEW F22 as fixed in d9006eb
|
4 дней назад |
chiappa
|
d9006ebae7
fix: build scheduler sidecar from pinned image (SEC_REVIEW F22)
|
4 дней назад |
chiappa
|
63878aa557
docs: mark SEC_REVIEW F21 as fixed in 0da01a8
|
4 дней назад |
chiappa
|
0da01a83d0
fix: strip args from logged stack traces (SEC_REVIEW F21)
|
4 дней назад |
chiappa
|
240ca37e1a
docs: mark SEC_REVIEW F20 as fixed in 1ec9d04
|
4 дней назад |
chiappa
|
1ec9d04008
fix: mount api/ui rootfs read-only at runtime (SEC_REVIEW F20)
|
4 дней назад |
chiappa
|
b1ebe9ca3a
docs: mark SEC_REVIEW F19 as fixed in 96eaa10
|
4 дней назад |
chiappa
|
96eaa10c78
fix: add .dockerignore to api/ui build contexts (SEC_REVIEW F19)
|
4 дней назад |
chiappa
|
8fa6cdd902
docs: mark SEC_REVIEW F18 as fixed in 33179d8
|
4 дней назад |
chiappa
|
33179d8bba
fix: drop container root; run api/ui as uid 1000 (SEC_REVIEW F18)
|
4 дней назад |