This release includes 1 security fix for security teams reviewing exposed deployments.
Published 1mo
Secrets & Credentials
✓ No known CVEs patched
This release patches 1 known CVE
Topics
aes256
encryption
go
one-time-secret
Summary
AI summaryFixed security issue preventing negative secret expiration times.
Full changelog
-
Improvements
- chore: slim down Docker image, move towards reproducible build
-
Bugfixes
- fix: prevent passing negative expiration during secret creation (see GHSA-h5fq-653g-gxrm)
- fix(deps): update dependency vue-i18n to v11.3.2
Security Fixes
- Prevent negative expiration during secret creation (GHSA-h5fq-653g-gxrm)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About ots
One-Time-Secret sharing platform with a symmetric 256bit AES encryption in the browser
Related context
Related tools
Beta — feedback welcome: [email protected]