Skip to content

kinto

v26.3.1 Breaking

This release includes breaking changes for platform teams planning a safe upgrade.

Published 26d NoSQL & Document
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

api decentralisation http storage web

Summary

AI summary

Fixed validation of pagination tokens and rejected null characters in list filters.

Full changelog

What's Changed

Bug Fixes

  • Reject null characters in list filters (fixes #3738) by @gaoflow in https://github.com/Kinto/kinto/pull/3741
  • Fix breaking change for request.effective_principals by @leplatrem in https://github.com/Kinto/kinto/pull/3744
  • Validate pagination token last_object by @gaoflow in https://github.com/Kinto/kinto/pull/3740

Dependency Updates

  • Bump actions/cache from 5 to 6 in the all-dependencies group by @dependabot[bot] in https://github.com/Kinto/kinto/pull/3742
  • Bump the minor-patch group across 1 directory with 6 updates by @dependabot[bot] in https://github.com/Kinto/kinto/pull/3743

New Contributors

  • @gaoflow made their first contribution in https://github.com/Kinto/kinto/pull/3741

Full Changelog: https://github.com/Kinto/kinto/compare/26.3.0...26.3.1

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track kinto

Get notified when new releases ship.

Sign up free

About kinto

A generic JSON document store with sharing and synchronisation capabilities.

All releases →

Related context

Beta — feedback welcome: [email protected]