This release includes 1 security fix for security teams reviewing exposed deployments.
Published 3mo
File Storage & Sync
✓ No known CVEs patched
This release patches 1 known CVE
Topics
file-sharing
go
self-hosted
storj
Affected surfaces
auth
Summary
AI summaryUpdates Chores & Refactoring, Bug Fixes, and fix across a mixed release.
Full changelog
v0.3.1 Release Notes
Bug Fixes
- fix: long boot time for local stacks by @Renizmy in #895
- fix: set secure cookie only on https by @yohanleb in #904
- fix: typo in dependabot file by @yohanleb in #897
Chores & Refactoring
- chore: update readme by @yohanleb in #884
- chore: reduce dependabot noise by @yohanleb in #896
Dependencies (Frontend)
- bump @types/react from 19.2.8 to 19.2.13
- bump @types/node from 25.2.0 to 25.2.1
- bump @tanstack/react-router from 1.158.0 to 1.159.4
- bump @tanstack/router-plugin from 1.158.0 to 1.159.4
- bump @tanstack/react-devtools from 0.9.4 to 0.9.5
- bump i18next from 25.8.1 to 25.8.4
- bump i18next-cli from 1.41.4 to 1.42.5
- bump knip from 5.83.0 to 5.83.1
Dependencies (Backend)
- bump github.com/go-chi/chi/v5 from 5.2.4 to 5.2.5
- bump google.golang.org/api from 0.264.0 to 0.265.0
- bump golang.org/x/oauth2 from 0.34.0 to 0.35.0
Full Changelog: https://github.com/safebucket/safebucket/compare/v0.3.0...v0.3.1
Security Fixes
- Set secure cookie only on HTTPS connections
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]