This release includes breaking changes for platform teams planning a safe upgrade.
Published 26d
NoSQL & Document
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
api
decentralisation
http
storage
web
Summary
AI summaryFixed validation of pagination tokens and rejected null characters in list filters.
Full changelog
What's Changed
Bug Fixes
- Reject null characters in list filters (fixes #3738) by @gaoflow in https://github.com/Kinto/kinto/pull/3741
- Fix breaking change for
request.effective_principalsby @leplatrem in https://github.com/Kinto/kinto/pull/3744 - Validate pagination token last_object by @gaoflow in https://github.com/Kinto/kinto/pull/3740
Dependency Updates
- Bump actions/cache from 5 to 6 in the all-dependencies group by @dependabot[bot] in https://github.com/Kinto/kinto/pull/3742
- Bump the minor-patch group across 1 directory with 6 updates by @dependabot[bot] in https://github.com/Kinto/kinto/pull/3743
New Contributors
- @gaoflow made their first contribution in https://github.com/Kinto/kinto/pull/3741
Full Changelog: https://github.com/Kinto/kinto/compare/26.3.0...26.3.1
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About kinto
A generic JSON document store with sharing and synchronisation capabilities.
Related context
Related tools
Beta — feedback welcome: [email protected]