Komit Sejarah

Pembuat SHA1 Pesan Tanggal
  chiappa f7a727da7c fix: charset gate on AuditController *_kind filters (SEC_REVIEW F47) 4 hari lalu
  chiappa 9af6cce2de docs: mark SEC_REVIEW F46 as fixed by F30 (2cc1924) 4 hari lalu
  chiappa fc6415ca6f docs: mark SEC_REVIEW F45 as fixed by F25 (33e9198) 4 hari lalu
  chiappa 82124b9d94 docs: mark SEC_REVIEW F44 as fixed in 1a705f6 4 hari lalu
  chiappa 1a705f6b64 fix: validate job name regex before audit emit (SEC_REVIEW F44) 4 hari lalu
  chiappa bb72a427b4 docs: mark SEC_REVIEW F43 as fixed in 8ff409f 4 hari lalu
  chiappa 8ff409fff2 fix: tighten /ips/{ip} route pattern to IP charset (SEC_REVIEW F43) 4 hari lalu
  chiappa 782faf23f3 docs: mark SEC_REVIEW F42 as fixed in cc77749 4 hari lalu
  chiappa cc77749fca fix: enforce role allowlist on UI policy proxies (SEC_REVIEW F42) 4 hari lalu
  chiappa af42ca5fbc docs: mark SEC_REVIEW F41 as fixed in 4ca69f3 4 hari lalu
  chiappa 4ca69f30b6 fix: dedicated audit row when reporter/consumer audit_enabled flips (SEC_REVIEW F41) 4 hari lalu
  chiappa 8ac4af659f docs: mark SEC_REVIEW F40 as fixed in 30c0604 4 hari lalu
  chiappa 30c0604e49 fix: rotate CSRF token on session-id regeneration (SEC_REVIEW F40) 4 hari lalu
  chiappa 35645140e0 docs: mark SEC_REVIEW F39 as fixed in 0c79c1b 4 hari lalu
  chiappa 0c79c1bb2b fix: assert TokenIssuer base32 input length, remove dead pad (SEC_REVIEW F39) 4 hari lalu
  chiappa 41564642cf docs: mark SEC_REVIEW F38 as fixed in d37890b 4 hari lalu
  chiappa d37890b68f fix: rate-limit /login/local even when local admin is disabled (SEC_REVIEW F38) 4 hari lalu
  chiappa 436e670c5a docs: mark SEC_REVIEW F37 as fixed in f2a81ad 4 hari lalu
  chiappa f2a81ad611 fix: reject weak local-admin password hash at UI boot (SEC_REVIEW F37) 4 hari lalu
  chiappa a469e38cb3 docs: mark SEC_REVIEW F36 as fixed in 2c3b65b 4 hari lalu
  chiappa 2c3b65b469 fix: revalidate UI session against api periodically (SEC_REVIEW F36) 4 hari lalu
  chiappa 9b09048f24 docs: mark SEC_REVIEW F35 as fixed in d39ab01 4 hari lalu
  chiappa d39ab01a7c fix: validate INTERNAL_JOB_TOKEN entropy at api boot (SEC_REVIEW F35) 4 hari lalu
  chiappa 1409ff2179 docs: mark SEC_REVIEW F34 as fixed in 3a4026b 4 hari lalu
  chiappa 3a4026baf6 fix: log fingerprints, not raw identifiers, in auth flows (SEC_REVIEW F34) 4 hari lalu
  chiappa 6a0aa27c61 docs: mark SEC_REVIEW F33 as fixed in c9f9a45 4 hari lalu
  chiappa c9f9a45664 fix: accept nullable email on /auth/users/upsert-oidc (SEC_REVIEW F33) 4 hari lalu
  chiappa e3fa0cc65c docs: mark SEC_REVIEW F32 as fixed in 0594305 4 hari lalu
  chiappa 05943057b8 fix: batch-load admin IPs list per-row lookups (SEC_REVIEW F32) 4 hari lalu
  chiappa c8ea0ede68 docs: mark SEC_REVIEW F31 as fixed in 3a2564d 4 hari lalu