Skip to content

Releases: goauthentik/authentik

Release 2024.2.2

04 Mar 19:38
4ec37c5
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.2#fixed-in-202422

What's Changed

  • providers/oauth2: fix inconsistent sub value when setting via mapping (cherry-pick #8677) by @gcp-cherry-pick-bot in #8682
  • core: fix blueprint export (cherry-pick #8695) by @gcp-cherry-pick-bot in #8696
  • enterprise: fix read_only activating when no license is installed (cherry-pick #8697) by @gcp-cherry-pick-bot in #8698
  • website/docs: s3: fix environment variables (cherry-pick #8722) by @gcp-cherry-pick-bot in #8726
  • enterprise: force license usage update after change to license (cherry-pick #8723) by @gcp-cherry-pick-bot in #8725
  • root: fix container build (cherry-pick #8727) by @gcp-cherry-pick-bot in #8728
  • ci: fix missing DOCKER_USERNAME secret (cherry-pick #8730) by @gcp-cherry-pick-bot in #8733
  • providers/oauth2: fix offline_access requests when prompt doesn't include consent (cherry-pick #8731) by @gcp-cherry-pick-bot in #8732
  • website/docs: s3: fix migration docs (cherry-pick #8735) by @gcp-cherry-pick-bot in #8737
  • stages/authenticator_webauthn: fix error when enrolling new device (cherry-pick #8738) by @gcp-cherry-pick-bot in #8740
  • ci: fix missing output on composite action (cherry-pick #8741) by @gcp-cherry-pick-bot in #8742
  • web/admin: don't mark property mappings as required anywhere (cherry-pick #8752) by @gcp-cherry-pick-bot in #8755
  • web/admin: don't mark remaining property mappings as required (cherry-pick #8772) by @gcp-cherry-pick-bot in #8773
  • root: ensure consistent install_id (cherry-pick #8775) by @gcp-cherry-pick-bot in #8776
  • website/docs: installation: kubernetes: fix values (cherry-pick #8783) by @gcp-cherry-pick-bot in #8792
  • providers/oauth2: fix validation ordering (cherry-pick #8793) by @gcp-cherry-pick-bot in #8795
  • flows: fix mismatched redirect behaviour for invalid and valid flows (cherry-pick #8794) by @gcp-cherry-pick-bot in #8796

Full Changelog: version/2024.2.1...version/2024.2.2

Release 2024.2.1

22 Feb 15:36
8256f18
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2024.2#fixed-in-202421

What's Changed

  • stages/authenticator_validate: fix error with get_webauthn_challenge_without_user (cherry-pick #8625) by @gcp-cherry-pick-bot in #8626
  • ci: fix missing tags from release (cherry-pick #8645) by @gcp-cherry-pick-bot in #8647
  • events: sanitize args and kwargs saved in system tasks (cherry-pick #8644) by @gcp-cherry-pick-bot in #8648
  • brands: fix context processor when request doesn't have a tenant (cherry-pick #8643) by @gcp-cherry-pick-bot in #8646

Full Changelog: version/2024.2.0...version/2024.2.1

Release 2024.2.0

21 Feb 14:52
310983a
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2024.2

What's Changed

  • website/docs: kubernetes installation: update values (cherry-pick #8575) by @gcp-cherry-pick-bot in #8576
  • rbac: fix permission decorator for global permissions (cherry-pick #8591) by @gcp-cherry-pick-bot in #8597
  • web: spell customization with a Z (cherry-pick #8596) by @gcp-cherry-pick-bot in #8602
  • web/flows: fix webauthn retry (cherry-pick #8599) by @gcp-cherry-pick-bot in #8603

Full Changelog: version/2024.2.0-rc2...version/2024.2.0

Release 2024.2.0-rc2

19 Feb 13:45
318e0cf
Compare
Choose a tag to compare
Release 2024.2.0-rc2 Pre-release
Pre-release

See https://goauthentik.io/docs/releases/2024.2

What's Changed

  • ci: fix release sentry step (cherry-pick #8540) by @gcp-cherry-pick-bot in #8541
  • web: change "delete" verb to "remove" for one-to-many relationships (cherry-pick #8535) by @gcp-cherry-pick-bot in #8537
  • web/flows: improve authenticator styling (cherry-pick #8560) by @gcp-cherry-pick-bot in #8570
  • ci: main: use correct previous version (cherry-pick #8539) by @gcp-cherry-pick-bot in #8572
  • root: fix app settings load order (cherry-pick #8569) by @gcp-cherry-pick-bot in #8571

Full Changelog: version/2024.2.0-rc1...version/2024.2.0-rc2

Release 2024.2.0-rc1

15 Feb 18:40
8ff27f6
Compare
Choose a tag to compare
Release 2024.2.0-rc1 Pre-release
Pre-release

See https://goauthentik.io/docs/releases/2024.2

What's Changed

Read more

Release 2023.8.7

29 Jan 16:58
a35cb42
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2023.8#fixed-in-202387

What's Changed

Full Changelog: version/2023.8.6...version/2023.8.7

Release 2023.10.7

29 Jan 17:26
e095e9f
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2023.10#fixed-in-2023107

What's Changed

  • sources/oauth: revert azure_ad profile URL change (cherry-pick #8139) by @gcp-cherry-pick-bot in #8141
  • web/flows: fix icon for generic oauth source with dark theme (cherry-pick #8148) by @gcp-cherry-pick-bot in #8151
  • sources/oauth: fix azure_ad user_id and add test and fallback (cherry-pick #8146) by @gcp-cherry-pick-bot in #8152
  • sources/oauth: fix URLs being overwritten by OIDC urls (cherry-pick #8147) by @gcp-cherry-pick-bot in #8156
  • rbac: fix invitations listing with restricted permissions (cherry-pick #8227) by @gcp-cherry-pick-bot in #8229
  • stages/authenticator_validate: use friendly_name for stage selector when enrolling (cherry-pick #8255) by @gcp-cherry-pick-bot in #8256
  • security: fix CVE-2024-23647 (cherry-pick #8345) by @gcp-cherry-pick-bot in #8347

Full Changelog: version/2023.10.6...version/2023.10.7

Release 2023.8.6

09 Jan 18:04
2a3d2cd
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2023.8#fixed-in-202386

What's Changed

  • providers/oauth2: fix CVE-2024-21637 (cherry-pick #8104) by @gcp-cherry-pick-bot in #8106

Full Changelog: version/2023.8.5...version/2023.8.6

Release 2023.10.6

09 Jan 18:11
1cd000d
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2023.10#fixed-in-2023106

What's Changed

  • providers/oauth2: remember session_id from initial token (cherry-pick #7976) by @gcp-cherry-pick-bot in #7977
  • outposts: fix Outpost reconcile not re-assigning managed attribute (cherry-pick #8014) by @gcp-cherry-pick-bot in #8020
  • providers/proxy: use access token (cherry-pick #8022) by @gcp-cherry-pick-bot in #8023
  • outposts: disable deployment and secret reconciler for embedded outpost in code instead of in config (cherry-pick #8021) by @gcp-cherry-pick-bot in #8024
  • rbac: fix error when looking up permissions for now uninstalled apps (cherry-pick #8068) by @gcp-cherry-pick-bot in #8070
  • web/flows: fix device picker incorrect foreground color (cherry-pick #8067) by @gcp-cherry-pick-bot in #8069
  • providers/oauth2: fix CVE-2024-21637 (cherry-pick #8104) by @gcp-cherry-pick-bot in #8105

Full Changelog: version/2023.10.5...version/2023.10.6

Release 2023.10.5

21 Dec 13:33
a15a040
Compare
Choose a tag to compare

See https://goauthentik.io/docs/releases/2023.10#fixed-in-2023105

What's Changed

  • tests: fix flaky tests (cherry-pick #7676) by @gcp-cherry-pick-bot in #7939
  • providers/scim: change familyName default (cherry-pick #7904) by @gcp-cherry-pick-bot in #7930
  • web: fix overflow glitch on ak-page-header (cherry-pick #7883) by @gcp-cherry-pick-bot in #7931
  • root: Fix cache related image build issues (cherry-pick #7831) by @gcp-cherry-pick-bot in #7932
  • web/user: fix search not updating app (cherry-pick #7825) by @gcp-cherry-pick-bot in #7933
  • blueprints: improve file change handler (cherry-pick #7813) by @gcp-cherry-pick-bot in #7934
  • root: don't show warning when app has no URLs to import (cherry-pick #7765) by @gcp-cherry-pick-bot in #7935
  • stages/email: improve error handling for incorrect template syntax (cherry-pick #7758) by @gcp-cherry-pick-bot in #7936
  • events: include user agent in events (cherry-pick #7693) by @gcp-cherry-pick-bot in #7938
  • events: add better fallback for sanitize_item to ensure everything can be saved as JSON (cherry-pick #7694) by @gcp-cherry-pick-bot in #7937

Full Changelog: version/2023.10.4...version/2023.10.5