v9.0.1
Maintenance
Security fixes
- jQuery updated to 3.7.1 covering CVE-2020-11022 and CVE-2020-11023
- CVE-2020-11023
Full changelog
Improvements
- Updated Go toolchain to 1.25 and aligned the Dockerfile base.
- Migrated
google/go-githubfrom a 2015 pseudo-version to v76 (fixes a latentListUserTeamsAPI-drift bug acknowledged in-code). - Bumped
go-sql-driver/mysql,mattn/go-sqlite3,hashicorp/consul/api,golang.org/x/{crypto,net,oauth2},fsouza/go-dockerclient,prometheus/client_golang. - Updated
webdavanddemonginx images tobookwormbases (bullseye EOL 2026-06). - Refreshed vendored UI libs: jQuery 3.2.1 → 3.7.1 (covers CVE-2020-11022 / CVE-2020-11023), showdown 1.9.0 → 2.1.0, FontAwesome 5.3.1 → 6.7.2 free.
- Carries the two prior
v9.0.1-rc.1fixes: S3 plugin IMDSv2 support and S3 REST API change handling.