-
Notifications
You must be signed in to change notification settings - Fork 4
Merge Develop for release #388
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
… upgrade debug_toolbar and fix associated bug
…ict out of scope of pr
…/appstore into audit-logging
…t/delete to appstore internals
Audit logging
create symlink to /shared under /home/user/shared for ordrd deployments
Security upgrades
Feature; add ldap check for whitelist inclusion
|
The Trivy issue we are seeing appears to point to a Django vulnerability which would cause significant risk/effort to change due to the age of Django itself. However given the defense in depth strategy and the fact that we do not use this particular library for sql-lite, it's existence in the codebase poses very little risk based on the evidence that has been provided to me. I approve the PR for Jeff to merge. |
Set the enableServiceLins to false without exception
There is a lot to review accumulated over many months. Leaving it here to be fixed in pieces.
Describe your changes
General Best Practice