This release includes 1 security fix for security teams reviewing exposed deployments.
Topics
+9 more
Affected surfaces
Summary
AI summaryUpdates https://github.com/Infisical/infisical/pull/7121, https://github.com/Infisical/infisical/pull/7148, and https://github.com/Infisical/infisical/pull/7085 across a mixed release.
Full changelog
Changed
- Revamp add member to group modal (https://github.com/Infisical/infisical/pull/7121)
- Reorganize documentation with screenshots (https://github.com/Infisical/infisical/pull/7148)
Added
- Add HSM-backed internal certificate authorities (https://github.com/Infisical/infisical/pull/7085)
- Expose certificate sync external identifier in API and UI (https://github.com/Infisical/infisical/pull/7130)
- Support Hasura Cloud secret sync (https://github.com/Infisical/infisical/pull/7081)
- Support cross-project secret sharing (https://github.com/Infisical/infisical/pull/7019)
Fixed
- Harden PAM-revamp migration and identity bootstrap (https://github.com/Infisical/infisical/pull/7150)
New Contributors
- @jal-co made their first contribution in https://github.com/Infisical/infisical/pull/7165
Full Changelog: https://github.com/Infisical/infisical/compare/v0.161.12...v0.161.13
Security Fixes
- Hardened PAM revamp migration and identity bootstrap to prevent configuration vulnerabilities
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About infisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
Related context
Related tools
Earlier breaking changes
- v1.0.0 Shared GitHub App host now bound to INF_APP_CONNECTION_GITHUB_APP_HOST environment variable.
Beta — feedback welcome: [email protected]