[PR #4049] [MERGED] CVE fixes and other API work #3797

Closed
opened 2026-02-26 08:31:59 +03:00 by kerem · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/NginxProxyManager/nginx-proxy-manager/pull/4049
Author: @jc21
Created: 10/11/2024
Status: Merged
Merged: 10/11/2024
Merged by: @jc21

Base: developHead: cve-fixes


📝 Commits (5)

  • dfe2588 Refactor API Schema and validation
  • 4572b20 Openapi Schema improvements
  • 7c97516 Fix schema issue with cors
  • c39d543 Fix CVE-2024-46256 and CVE-2024-46257
  • d21403c Move docker login in pipeline

📊 Changes

150 files changed (+6334 additions, -4607 deletions)

View changed files

📝 Jenkinsfile (+8 -4)
backend/.vscode/settings.json (+0 -8)
📝 backend/app.js (+1 -1)
backend/doc/api.swagger.json (+0 -1456)
📝 backend/index.js (+3 -6)
📝 backend/internal/access-list.js (+2 -2)
📝 backend/internal/certificate.js (+2 -2)
📝 backend/internal/dead-host.js (+10 -4)
📝 backend/internal/proxy-host.js (+11 -5)
📝 backend/internal/redirection-host.js (+10 -4)
📝 backend/internal/stream.js (+4 -4)
📝 backend/internal/user.js (+1 -1)
📝 backend/lib/access.js (+4 -11)
📝 backend/lib/access/permissions.json (+0 -1)
📝 backend/lib/access/roles.json (+0 -1)
📝 backend/lib/express/cors.js (+9 -33)
📝 backend/lib/helpers.js (+18 -0)
📝 backend/lib/validator/api.js (+16 -18)
📝 backend/lib/validator/index.js (+12 -16)
📝 backend/models/access_list.js (+17 -0)

...and 80 more files

📄 Description

No description provided


🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/NginxProxyManager/nginx-proxy-manager/pull/4049 **Author:** [@jc21](https://github.com/jc21) **Created:** 10/11/2024 **Status:** ✅ Merged **Merged:** 10/11/2024 **Merged by:** [@jc21](https://github.com/jc21) **Base:** `develop` ← **Head:** `cve-fixes` --- ### 📝 Commits (5) - [`dfe2588`](https://github.com/NginxProxyManager/nginx-proxy-manager/commit/dfe2588523a602dd275fb6aadebfe37701dcbb36) Refactor API Schema and validation - [`4572b20`](https://github.com/NginxProxyManager/nginx-proxy-manager/commit/4572b205c912db498706e9a3e8f1891c94129c88) Openapi Schema improvements - [`7c97516`](https://github.com/NginxProxyManager/nginx-proxy-manager/commit/7c97516de673511c570dea12eee066af85fca1d5) Fix schema issue with cors - [`c39d543`](https://github.com/NginxProxyManager/nginx-proxy-manager/commit/c39d5433bcd13993def222bbb2b6988bbb810a05) Fix CVE-2024-46256 and CVE-2024-46257 - [`d21403c`](https://github.com/NginxProxyManager/nginx-proxy-manager/commit/d21403ca1e08af90069222f7513b490719295190) Move docker login in pipeline ### 📊 Changes **150 files changed** (+6334 additions, -4607 deletions) <details> <summary>View changed files</summary> 📝 `Jenkinsfile` (+8 -4) ➖ `backend/.vscode/settings.json` (+0 -8) 📝 `backend/app.js` (+1 -1) ➖ `backend/doc/api.swagger.json` (+0 -1456) 📝 `backend/index.js` (+3 -6) 📝 `backend/internal/access-list.js` (+2 -2) 📝 `backend/internal/certificate.js` (+2 -2) 📝 `backend/internal/dead-host.js` (+10 -4) 📝 `backend/internal/proxy-host.js` (+11 -5) 📝 `backend/internal/redirection-host.js` (+10 -4) 📝 `backend/internal/stream.js` (+4 -4) 📝 `backend/internal/user.js` (+1 -1) 📝 `backend/lib/access.js` (+4 -11) 📝 `backend/lib/access/permissions.json` (+0 -1) 📝 `backend/lib/access/roles.json` (+0 -1) 📝 `backend/lib/express/cors.js` (+9 -33) 📝 `backend/lib/helpers.js` (+18 -0) 📝 `backend/lib/validator/api.js` (+16 -18) 📝 `backend/lib/validator/index.js` (+12 -16) 📝 `backend/models/access_list.js` (+17 -0) _...and 80 more files_ </details> ### 📄 Description _No description provided_ --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
kerem 2026-02-26 08:31:59 +03:00
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/nginx-proxy-manager-NginxProxyManager#3797
No description provided.