v3.9.24
📦 quay-ioView on GitHub →
🐛 4 fixes🔧 4 symbols
Summary
This release addresses several CVEs, including vulnerabilities related to form-data, FastUri, and decode-uri-component. It also includes a fix to prevent SSRF in proxy cache configurations and updates dependencies.
🐛 Bug Fixes
- Fixes CVE-2026-12143 related to form-data.
- Fixes CVE-2026-13676 related to FastUri.
- Fixes CVE-2026-45822 related to decode-uri-component.
- Prevents SSRF in proxy cache upstream registry configuration.