| Commit History - (may be incomplete: for full details, see links to repositories near top of page) |
| Commit | Credits | Log message |
8.5.21_1 09 Mar 2023 19:50:37
    |
Dmitri Goutnik (dmgk)  |
all: Bump PORTREVISION after lang/go119 update
Direct commit to quarterly to bump Go ports revisions after 61a665d2d8d2
Approved by: ports-secteam (blanket) |
8.5.21 03 Mar 2023 12:09:17
    |
Fernando ApesteguĂa (fernape)  Author: Boris Korzun |
www/grafana8: Update to 8.5.21 (Fixes security vulnerabilities)
ChangeLog:
https://grafana.com/blog/2023/02/28/grafana-security-release-new-versions-with-security-fixes-for-cve-2023-0594-cve-2023-0507-and-cve-2023-22462/
PR: 269903
Reported by: drtr0jan@yandex.ru (maintainer)
MFH: 2023Q1 (security fix)
Security: CVE-2023-0594 CVE-2023-0507 CVE-2023-22462
(cherry picked from commit 5877f73ba26bbcb03700ab3d7d3943e9d0e0f3f3) |
8.5.20_1 17 Feb 2023 10:49:10
    |
Dmitri Goutnik (dmgk)  |
all: Bump PORTREVISION after lang/go119 update
Direct commit to quarterly to bump Go ports revisions after f30271912e48
Approved by: riggs (ports-secteam) |
8.5.20 09 Feb 2023 09:56:36
    |
Fernando ApesteguĂa (fernape)  Author: Boris Korzun |
www/grafana8: Update to 8.5.20 (Fixes security vulnerabilities)
ChangeLog: https://grafana.com/docs/grafana/latest/whatsnew/
Fixes:
* Spoofing originalUrl of snapshots
* Stored XSS in ResourcePicker component
PR: 269409
Reported by: drtr0jan@yandex.ru (maintainer)
MFH: 2023Q1 (security fixes)
Security: CVE-2022-23552 CVE-2022-39324
(cherry picked from commit 71bbafdbe0f5df8c36aeade818e1375891644cf3) |