Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package traefik2 for openSUSE:Factory checked in at 2026-05-05 15:15:20 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/traefik2 (Old) and /work/SRC/openSUSE:Factory/.traefik2.new.30200 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "traefik2" Tue May 5 15:15:20 2026 rev:19 rq:1350758 version:2.11.44 Changes: -------- --- /work/SRC/openSUSE:Factory/traefik2/traefik2.changes 2026-03-27 16:53:58.674676582 +0100 +++ /work/SRC/openSUSE:Factory/.traefik2.new.30200/traefik2.changes 2026-05-05 15:16:38.430300858 +0200 @@ -1,0 +2,31 @@ +Mon May 4 15:49:54 UTC 2026 - Johannes Weberhofer <[email protected]> + +- Version 1.11.44 +- Updated go-jose to v4.1.4 which fixes CVE-2026-34986 - boo#1262982 + +- Bug fixes: + * acme + - Bump github.com/go-acme/lego to v4.35.2 + * middleware + - Add errorRequestHeaders option to Errors middleware + +- Version 1.11.43 +- CVE fixed: + * CVE-2026-40912 (Advisory GHSA-6jwx-7vp4-9847) - boo#1263868 + * CVE-2026-39858 (Advisory GHSA-5m6w-wvh7-57vm) - boo#1263867 + * CVE-2026-35051 (Advisory GHSA-6384-m2mw-rf54) - boo#1263866 + * CVE-2026-41263 (Advisory GHSA-6x2q-h3cr-8j2h) - boo#1263870 + * CVE-2026-41174 (Advisory GHSA-xhjw-95fp-8vgq) - boo#1263869 + +- Bug fixes: + * k8s/crd, k8s + - Honor allowCrossNamespace with chain middleware CRD + * middleware, authentication + - Cleanup and make ForwardAuth logs consistent + - Fix trustForwardHeader on forward auth middleware + - Remove map lookup making the basic auth notFoundSecret empty + * middleware + - Remove untrusted X headers with underscores + - Sanitize the request URL after stripping the prefix + +------------------------------------------------------------------- @@ -17 +48 @@ -- Bugs fixes: +- Bug fixes: @@ -40 +71 @@ -- Bugs fixes: +- Bug fixes: Old: ---- traefik-v2.11.42.src.tar.gz New: ---- traefik-v2.11.44.src.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ traefik2.spec ++++++ --- /var/tmp/diff_new_pack.DAcdae/_old 2026-05-05 15:16:40.622391808 +0200 +++ /var/tmp/diff_new_pack.DAcdae/_new 2026-05-05 15:16:40.630392140 +0200 @@ -23,7 +23,7 @@ %define buildmode pie %endif Name: traefik2 -Version: 2.11.42 +Version: 2.11.44 Release: 0 Summary: The Cloud Native Application Proxy License: MIT ++++++ traefik-v2.11.42.src.tar.gz -> traefik-v2.11.44.src.tar.gz ++++++ /work/SRC/openSUSE:Factory/traefik2/traefik-v2.11.42.src.tar.gz /work/SRC/openSUSE:Factory/.traefik2.new.30200/traefik-v2.11.44.src.tar.gz differ: char 12, line 1 ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/traefik2/vendor.tar.gz /work/SRC/openSUSE:Factory/.traefik2.new.30200/vendor.tar.gz differ: char 15, line 1
