Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Vulnerabilities

Dependency

Package

CVE-2021-3807

ansi-regex:4.1.0

pkg:npm/ansi-regex@4.1.0

CVE-2020-28469
CWE-400

glob-parent:3.1.0

pkg:npm/glob-parent@3.1.0

CVE-2020-15168
CVE-2022-0235

node-fetch:2.6.1

pkg:npm/node-fetch@2.6.1

CVE-2022-0122
NPM-1006852
NPM-1006854

node-forge:0.10.0

pkg:npm/node-forge@0.10.0

CVE-2021-23382

postcss:7.0.39

pkg:npm/postcss@7.0.39

CVE-2019-12400
CVE-2021-40690

org.apache.santuario:xmlsec:2.0.10)

pkg:maven/org.apache.santuario/xmlsec@2.0.10

Changes in 5.5.4

Bug fixes

  • Status
    colourBlue
    titlekerberos
    In this release, we temporary roll back Kerberos (back to bouncycastle.bcprov-jdk15@140 in org.simplericity.serberuhs) due to some compatibility issues with the library update performed in verison 5.5.2. We will investigate and troubleshoot the issues with the update before reintroducing it more stabilized in a later release.

  • Status
    colourRed
    titlesaml
    Setup wizard summary step was stuck on ‘Loading…’ due to changes in 5.5.3

  • Status
    colourRed
    titlesaml
    Metadata URL was not saved after SAML IDP setup due to changes in 5.5.3

  • Status
    colourRed
    titlesaml/oidc
    Unchanged display name was not persisted in IDP setup draft due to changes in 5.5.3