This release adds 3 notable features for engineering teams evaluating rollout.
Published 1mo
Secrets & Credentials
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
acme
certificate-management
cli
environment-variables
go
node-js
+9 more
pki
postgresql
private-ca
secrets-management
secret-manager
secret-scanning
security
security-tools
typescript
Affected surfaces
auth
rbac
crypto_tls
Summary
AI summaryUpdates https://github.com/Infisical/infisical/pull/6990, https://github.com/Infisical/infisical/pull/6991, and https://github.com/Infisical/infisical/pull/6981 across a mixed release.
Full changelog
Changed
- Resolve AWS workload identity federation on Fargate/Lambda/EKS (https://github.com/Infisical/infisical/pull/6990)
- Address certificate profile defaults behavior (https://github.com/Infisical/infisical/pull/6991)
Added
- Add registry-driven template policies for PAM (https://github.com/Infisical/infisical/pull/6981)
- Add MongoDB and MS SQL Server account types to PAM (https://github.com/Infisical/infisical/pull/6956)
- Add HSM connector to PKI code signing (https://github.com/Infisical/infisical/pull/6938)
- Add SAN validation for workload identity (https://github.com/Infisical/infisical/pull/6957)
- Add Trigger.dev app connection and secret sync (https://github.com/Infisical/infisical/pull/6712)
- Get membership by project id and user id (https://github.com/Infisical/infisical/pull/6976)
Fixed
- Block no access users from approval review (https://github.com/Infisical/infisical/pull/6988)
- Correct license server v2 customer portal behavior (https://github.com/Infisical/infisical/pull/6973)
- Check all orgs before failing request (https://github.com/Infisical/infisical/pull/6975)
- Allow user added through groups in approval policy (https://github.com/Infisical/infisical/pull/6929)
- Block last super admin from self-deleting (https://github.com/Infisical/infisical/pull/6288)
- Always label add button "Add Secret" in secret overview (https://github.com/Infisical/infisical/pull/7005)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About infisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
Related context
Related tools
Earlier breaking changes
- v1.0.0 Shared GitHub App host now bound to INF_APP_CONNECTION_GITHUB_APP_HOST environment variable.
Beta — feedback welcome: [email protected]