Skip to content

fix: dependabot security advisory#6945

Open
SATYAsasini wants to merge 21 commits intodevelopfrom
fix-dependabot-security-advisory
Open

fix: dependabot security advisory#6945
SATYAsasini wants to merge 21 commits intodevelopfrom
fix-dependabot-security-advisory

Conversation

@SATYAsasini
Copy link
Copy Markdown
Contributor

Description

Fixes https://github.com/devtron-labs/sprint-tasks/issues/2856

Checklist:

  • The title of the PR states what changed and the related issues number (used for the release note).
  • Does this PR requires documentation updates?
  • I've updated documentation as required by this PR.
  • I have performed a self-review of my own code.
  • I have commented my code, particularly in hard-to-understand areas.
  • I have tested it for all user roles.
  • I have added all the required unit/api test cases.

Does this PR introduce a user-facing change?


vikramdevtron and others added 20 commits February 27, 2026 11:33
* feat: auto-assign role groups

* fix: sync claims with casbin policy

* feat: file re-structuring for ent oss sync

* feat: global auth apis

* sync file name with oss
* fix: global auth apis wire register for ea mode

* fix: linting
* Updated release-notes files

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated devtron to 59238e8-434-38692 tag in values file

* Updated kubelink to 6b408df4-564-38694 tag in values file

* Updated dashboard to d87d9a07-690-38693 tag in values file

* Updated release notes

* Updated release notes

* Updated release notes

* Updated release notes

* Updated kubewatch to fbde4d5e-419-38744 tag in values file

* Updated hyperion to 37b07f1-280-38743 tag in values file

* Updated devtron to 37b07f1-434-38746 tag in values file

* Updated kubelink to fbde4d5e-564-38749 tag in values file

* Updated git-sensor to fbde4d5e-200-38750 tag in values file

* Updated lens to fbde4d5e-333-38752 tag in values file

* Updated dashboard to d4a16ea7-690-38751 tag in values file

* Updated ci-runner to fbde4d5e-138-38754 tag in values file

* Updated image-scanner to fbde4d5e-141-38756 tag in values file

* Updated notifier to 580d409b-372-38755 tag in values file

* Updated chart-sync to fbde4d5e-836-38757 tag in values file

* Updated the version in scripts

* Update TimescaleDB password secret reference

* Bump version from 0.22.99 to 0.23.1

* Add CLUSTER_OVERVIEW_MAX_STALE_DATA_SECONDS variable

* Update releasenotes.md

* Update release-notes-v2.1.0.md

* Updated devtron to 634eb59-434-38762 tag in values file

* Updated hyperion to 634eb59-280-38763 tag in values file

---------

Co-authored-by: akshatsinha007 <156403098+akshatsinha007@users.noreply.github.com>
* fix: sync auto-assigned groups with casbin_rule user→group policies

* fix: support token for rbac check for clusters

* fix: support token for checkUser roles

* fix: support token based authentication for policy rest handlers

* fix: check for user isGroupClaims active in all rbac related functions

* fix: add email in case of devtron system managed

* fix: ea mode dependency updates
fix: add support of container name in cronjob
* Updated release-notes files

* Updated release notes

* Updated release notes

* Updated devtron to 1188d0b-434-38818 tag in values file

* Updated hyperion to 1188d0b-280-38819 tag in values file

* Updated release notes

* Updated dashboard to 8a175cbd-690-38843 tag in values file

* Updated the version in scripts

* Update release notes for version 2.1.1

* Update release notes for version 2.1.1

Removed the Enhancements and Others sections from the release notes.

---------

Co-authored-by: akshatsinha007 <156403098+akshatsinha007@users.noreply.github.com>
* sync: migration files

* sync: migration files
@bito-code-review
Copy link
Copy Markdown

Bito Automatic Review Skipped - PR Too Large

Bito didn't auto-review this PR because it exceeds the size limits of the free plan.To review large pull requests, please upgrade to a paid plan here.

# Conflicts:
#	go.mod
#	go.sum
#	vendor/modules.txt
@sonarqubecloud
Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants