Change8

v3.9.24

📦 quay-ioView on GitHub →
🐛 4 fixes🔧 4 symbols

Summary

This release addresses several CVEs, including vulnerabilities related to form-data, FastUri, and decode-uri-component. It also includes a fix to prevent SSRF in proxy cache configurations and updates dependencies.

🐛 Bug Fixes

  • Fixes CVE-2026-12143 related to form-data.
  • Fixes CVE-2026-13676 related to FastUri.
  • Fixes CVE-2026-45822 related to decode-uri-component.
  • Prevents SSRF in proxy cache upstream registry configuration.

Affected Symbols