Skip to content

3.0.1

Latest
Compare
Choose a tag to compare
@josephdecock josephdecock released this 07 Nov 19:27
· 1 commit to main since this release
09c73e3

This is a security hotfix that addresses CVE-2024-51987, a medium-severity vulnerability that causes refreshed user-centric tokens to be captured in pooled HttpClient instances, which may then be used by a different user. See the security advisory for more details.