What's Changed
- CVE-2026-55760 handlebars.java FileTemplateLoader Path Traversal by @dependabot[bot] in #194
- CVE-2026-54291 PostgreSQL JDBC Driver: Silent channel-binding authentication downgrade via unsupported certificate algorithms by @dependabot[bot] in #201
- CVE-2026-62961 Query-filter injection in bundled auth augmentation scripts thanks @mountainousmolehill ❤️
- CVE-2026-62266 Path traversal in maintenance archive browser thanks @mountainousmolehill ❤️
- GHSA-xjw4-4w2v-rp6g Unsafe Java deserialization of persisted scheduler state in Quartz job store thanks @tonghuaroot ❤️
- Add CodeQL security scanning workflow by @vharseko in #195
- CI: trim build matrix on macOS/Windows and add workflow concurrency by @vharseko in #196
- Modernizes the OpenIDM Docker images and broadens their multi-architecture build matrix by @vharseko in #193
- Enable strict Javadoc doclint (all,-missing) and fix all doclint issues by @vharseko in #197
- Re-enable three previously disabled tests by @vharseko in #198
- Update org.openidentityplatform.openicf to 2.0.4 by @vharseko in #200
Full Changelog: 7.1.0...7.1.2
Backers
Thank you to all our backers! Become a backer 🙏
Sponsors
Support this project by becoming a sponsor. Your logo will show up here with a link to your website. Become a sponsor ❤️