Skip to content

Releases: exasol/exasol-rest-api

0.2.19: Fix vulnerabilities `CVE-2024-45337` and `CVE-2024-45338` in dependencies

13 Jan 11:20
e36e2b3
Compare
Choose a tag to compare

Summary

This release updates dependencies golang.org/x/net and golang.org/x/crypto to fix vulnerabilities CVE-2024-45337 and CVE-2024-45338

Security Issues

  • #98: Fix vulnerabilities CVE-2024-45337 and CVE-2024-45338 in dependencies

Upgrades

Indirect Dependencies

  • Updated golang.org/x/crypto:v0.26.0 to v0.32.0
  • Updated golang.org/x/net:v0.28.0 to v0.34.0
  • Updated golang.org/x/sync:v0.8.0 to v0.10.0
  • Updated golang.org/x/sys:v0.24.0 to v0.29.0
  • Updated golang.org/x/text:v0.17.0 to v0.21.0

0.2.18: Fix vulnerability "Authz zero length regression" in test dependency

19 Aug 11:14
08d0071
Compare
Choose a tag to compare

Summary

This release changes the supported version of go to be 1.22 or higher and fixes the vulnerability "Authz zero length regression" in test dependency github.com/docker/docker:v26.0.2 by updating dependencies.

Security Issues

  • #96: Fix Security Issue Authz zero length regression

Dependency Updates

Test Dependency Updates

  • Updated github.com/exasol/exasol-test-setup-abstraction-server/go-client:v0.3.5 to v0.3.9
  • Updated github.com/testcontainers/testcontainers-go:v0.29.1 to v0.32.0

0.2.17: Fix vulnerability CVE-2024-32473

03 Jul 12:28
2a7242b
Compare
Choose a tag to compare

Summary

Updated dependencies.
Fixed CVEs:

Security

Dependency Updates

Compile Dependency Updates

  • Updated github.com/gorilla/websocket:v1.5.1 to v1.5.3

0.2.16: Fix vulnerabilities CVE-2023-45288 and CVE-2024-32473

06 Jun 08:18
b126a45
Compare
Choose a tag to compare

Summary

Updated dependencies.
Fixed CVEs:

Security

  • #92: Updated dependencies and fixed vulnerabilities

Dependency Updates

Compile Dependency Updates

  • Updated github.com/gin-gonic/gin:v1.9.1 to v1.10.0

0.2.15: Fix vulnerabilities CVE-2024-24557 and CVE-2024-24786

28 Mar 08:40
cae31db
Compare
Choose a tag to compare

Summary

Updated dependencies.
Fixed CVEs:

Security

  • #90: Updated dependencies and fixed vulnerabilities

Dependency Updates

Test Dependency Updates

  • Updated github.com/stretchr/testify:v1.8.4 to v1.9.0
  • Updated github.com/testcontainers/testcontainers-go:v0.27.0 to v0.29.1

0.2.14: Fix vulnerabilities, update direct dependencies + go version

08 Feb 09:31
ab8d729
Compare
Choose a tag to compare

Summary

Fix vulnerabilities, update direct dependencies + go version
Fixed vulnerabilies:

Security

  • #88: fix vulnerabilities / update dependencies

Dependency Updates

Compile Dependency Updates

  • Updated golang:1.20 to 1.21
  • Updated github.com/swaggo/swag:v1.16.2 to v1.16.3

0.2.13: Fix CVE-2023-48795 in `golang.org/x/crypto`

17 Jan 16:22
0fe96be
Compare
Choose a tag to compare

Summary

This release fixes CVE-2023-48795 in transitive dependency golang.org/x/crypto.

Security

Dependency Updates

Compile Dependency Updates

  • Updated github.com/gorilla/websocket:v1.5.0 to v1.5.1

Test Dependency Updates

  • Updated github.com/testcontainers/testcontainers-go:v0.25.0 to v0.27.0
  • Updated github.com/exasol/exasol-test-setup-abstraction-server/go-client:v0.3.4 to v0.3.5

0.2.12: Fix CVE-2023-39325 in dependency `golang.org/x/net`

27 Oct 04:19
99cb91f
Compare
Choose a tag to compare

Summary

This release fixes CVE-2023-39325 in dependency golang.org/x/net.

Security

Dependency Updates

Compile Dependency Updates

  • Updated github.com/swaggo/swag:v1.16.1 to v1.16.2

Test Dependency Updates

  • Updated github.com/testcontainers/testcontainers-go:v0.23.0 to v0.25.0
  • Updated github.com/exasol/exasol-test-setup-abstraction-server/go-client:v0.3.3 to v0.3.4

0.2.11: Update Dependencies on top of 0.2.10

29 Aug 08:36
2f944c3
Compare
Choose a tag to compare

Summary

This release fixes vulnerability CVE-2023-3978 in dependency pkg:golang/golang.org/x/net by upgrading it to the latest version.

Security

  • #80: Fixed vulnerability CVE-2023-3978 in dependency pkg:golang/golang.org/x/net

Dependency Updates

Test Dependency Updates

  • Updated github.com/testcontainers/testcontainers-go:v0.20.1 to v0.23.0
  • Added github.com/exasol/exasol-test-setup-abstraction-server/go-client:v0.3.3

Other Dependency Updates

  • Removed github.com/exasol/exasol-driver-go:v1.0.0

0.2.10: Fixes 2 reported dependabot vulnerabilities

05 Jun 18:08
467845e
Compare
Choose a tag to compare

Summary

Fixes 2 reported dependabot vulnerabilities

Features

  • #78: Fixes 2 reported dependabot vulnerabilities

Dependency Updates

Compile Dependency Updates

  • Updated github.com/ulule/limiter/v3:v3.11.1 to v3.11.2
  • Updated github.com/gin-gonic/gin:v1.9.0 to v1.9.1

Test Dependency Updates

  • Updated github.com/stretchr/testify:v1.8.2 to v1.8.4
  • Updated github.com/testcontainers/testcontainers-go:v0.20.0 to v0.20.1