chiappa
|
3556cd1920
fix: extend Permissions-Policy deny-list to full hardening (SEC_REVIEW F61)
|
před 3 dny |
chiappa
|
6ff3720983
docs: mark SEC_REVIEW F60 as fixed in 68121fe
|
před 3 dny |
chiappa
|
68121febe2
fix: make HSTS header operator-tuneable for preload opt-in (SEC_REVIEW F60)
|
před 3 dny |
chiappa
|
a1356f9eb2
docs: mark SEC_REVIEW F59 as fixed in 206db1e
|
před 3 dny |
chiappa
|
206db1e492
fix: add COOP / CORP / Cross-Domain-Policies headers (SEC_REVIEW F59)
|
před 3 dny |
chiappa
|
b2d81caa70
docs: mark SEC_REVIEW F58 as fixed in 95e206c
|
před 3 dny |
chiappa
|
95e206c436
fix: pin RapiDoc CDN load with SRI hash on /api/docs (SEC_REVIEW F58)
|
před 3 dny |
chiappa
|
6b06ff379e
docs: mark SEC_REVIEW F57 as fixed in 67011c8
|
před 3 dny |
chiappa
|
67011c8cea
fix: prefix session cookie with __Host- in production (SEC_REVIEW F57)
|
před 3 dny |
chiappa
|
de80c1f318
docs: mark SEC_REVIEW F56 as fixed by F24 (193f646)
|
před 3 dny |
chiappa
|
ee1582d904
docs: mark SEC_REVIEW F55 as fixed by F24 (193f646)
|
před 3 dny |
chiappa
|
ea92c3d093
docs: mark SEC_REVIEW F54 as fixed in 1ed16c0
|
před 3 dny |
chiappa
|
1ed16c03a3
fix: Origin/Referer + JSON-body checks on CsrfMiddleware (SEC_REVIEW F54)
|
před 3 dny |
chiappa
|
f54d83d21e
docs: mark SEC_REVIEW F53 as fixed by F24 (193f646)
|
před 3 dny |
chiappa
|
6f5429e958
docs: mark SEC_REVIEW F52 as fixed in e5b525b
|
před 3 dny |
chiappa
|
e5b525b393
fix: strip C0/C1 control chars from admin string fields (SEC_REVIEW F52)
|
před 3 dny |
chiappa
|
d336550c19
docs: mark SEC_REVIEW F51 as fixed in 9c0fef5
|
před 3 dny |
chiappa
|
9c0fef58d2
fix: enforce list<string> shape in RoleMappingRepository (SEC_REVIEW F51)
|
před 3 dny |
chiappa
|
1ed9341c2c
docs: mark SEC_REVIEW F50 as fixed in 6cc66ef
|
před 3 dny |
chiappa
|
6cc66ef4ec
fix: tight redirect policy + private-host guard on GeoIP client (SEC_REVIEW F50)
|
před 3 dny |
chiappa
|
8210d3ee58
docs: mark SEC_REVIEW F49 as fixed in 6580a5b
|
před 3 dny |
chiappa
|
6580a5b3cd
fix: stream DB-IP gunzip with size cap (SEC_REVIEW F49)
|
před 3 dny |
chiappa
|
781c356f38
docs: mark SEC_REVIEW F48 as fixed in c380d12
|
před 3 dny |
chiappa
|
c380d126e9
fix: enforce uncompressed-size cap on MaxMind tarball extract (SEC_REVIEW F48)
|
před 3 dny |
chiappa
|
9f79fbf3c8
docs: mark SEC_REVIEW F47 as fixed in f7a727d
|
před 3 dny |
chiappa
|
f7a727da7c
fix: charset gate on AuditController *_kind filters (SEC_REVIEW F47)
|
před 3 dny |
chiappa
|
9af6cce2de
docs: mark SEC_REVIEW F46 as fixed by F30 (2cc1924)
|
před 3 dny |
chiappa
|
fc6415ca6f
docs: mark SEC_REVIEW F45 as fixed by F25 (33e9198)
|
před 3 dny |
chiappa
|
82124b9d94
docs: mark SEC_REVIEW F44 as fixed in 1a705f6
|
před 3 dny |
chiappa
|
1a705f6b64
fix: validate job name regex before audit emit (SEC_REVIEW F44)
|
před 3 dny |