Skip to content

Releases: goauthentik/authentik

Release 2024.6.2

31 Jul 15:12
d6904b6
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.6#fixed-in-202462

What's Changed

  • core: improve error handling on ASGI level (cherry-pick #10547) by @gcp-cherry-pick-bot in #10552
  • lib/sync: handle SkipObject in direct triggered tasks (cherry-pick #10590) by @gcp-cherry-pick-bot in #10591
  • stages/prompt: fix prompt not editable with invalid expression (cherry-pick #10603) by @gcp-cherry-pick-bot in #10604
  • events: fix race condition (cherry-pick #10602) by @gcp-cherry-pick-bot in #10609
  • core: remove html language tag for pages that are translated (cherry-pick #10611) by @gcp-cherry-pick-bot in #10613
  • web/admin: fix missing SAML Provider ECDSA options (cherry-pick #10612) by @gcp-cherry-pick-bot in #10618
  • lifecycle: only create tenant media root if needed (cherry-pick #10616) by @gcp-cherry-pick-bot in #10617
  • web/flows: remove continue button from AutoSubmit stage (cherry-pick #10253) by @gcp-cherry-pick-bot in #10677
  • events: associate login_failed events to a user if possible (cherry-pick #10270) by @gcp-cherry-pick-bot in #10676
  • web/admin: show matching user reputation scores in user details (cherry-pick #10276) by @gcp-cherry-pick-bot in #10699
  • outposts: make refresh interval configurable (cherry-pick #10138) by @gcp-cherry-pick-bot in #10700
  • outposts: ensure minimum refresh interval (cherry-pick #10701) by @gcp-cherry-pick-bot in #10702
  • tests/e2e: fix ldap tests following #10270 (cherry-pick #10288) by @gcp-cherry-pick-bot in #10703

Full Changelog: version/2024.6.1...version/2024.6.2

Release 2024.6.1

11 Jul 20:21
9075270
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.6#fixed-in-202461

What's Changed

  • website/docs: update 2024.6 release notes with latest changes (cherry-pick #10228) by @gcp-cherry-pick-bot in #10243
  • website/docs: remove RC disclaimer from 2024.6 release notes (cherry-pick #10245) by @gcp-cherry-pick-bot in #10246
  • security: update supported versions (cherry-pick #10247) by @gcp-cherry-pick-bot in #10248
  • website/docs: update geoip and asn example to use the proper syntax (cherry-pick #10249) by @gcp-cherry-pick-bot in #10250
  • website/docs: update geoip and asn documentation following field changes (cherry-pick #10265) by @gcp-cherry-pick-bot in #10266
  • stages/user_login: fix ?next parameter not carried through broken session binding (cherry-pick #10301) by @gcp-cherry-pick-bot in #10302
  • web/flows: remove background image link (cherry-pick #10318) by @gcp-cherry-pick-bot in #10320
  • core: remove transitionary old JS urls (cherry-pick #10317) by @gcp-cherry-pick-bot in #10321
  • provider/scim: Fix exception handling for missing ServiceProviderConfig (cherry-pick #10322) by @gcp-cherry-pick-bot in #10335
  • providers/saml: fix metadata import error handling (cherry-pick #10349) by @gcp-cherry-pick-bot in #10350
  • sources/saml: fix pickle error, add saml auth tests (cherry-pick #10348) by @gcp-cherry-pick-bot in #10352
  • sources/oauth: fix link not being saved (cherry-pick #10374) by @gcp-cherry-pick-bot in #10376
  • stages/authenticator_validate: fix friendly_name being required (cherry-pick #10382) by @gcp-cherry-pick-bot in #10385
  • core: fix migrations missing using db_alias (cherry-pick #10409) by @gcp-cherry-pick-bot in #10410
  • web/admin: fix access token list calling wrong API (cherry-pick #10434) by @gcp-cherry-pick-bot in #10435
  • core: fix source flow_manager not resuming flow when linking (cherry-pick #10436) by @gcp-cherry-pick-bot in #10438
  • core: revert backchannel only filtering (cherry-pick #10455) by @gcp-cherry-pick-bot in #10457
  • website/docs: add 2024.6.1 release notes (cherry-pick #10456) by @gcp-cherry-pick-bot in #10458

Full Changelog: version/2024.6.0...version/2024.6.1

Release 2024.6.0

26 Jun 11:19
ba87fd8
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.6

What's Changed

  • website/docs: Remove hyphen in read replica in Release Notes (cherry-pick #10178) by @gcp-cherry-pick-bot in #10188
  • core: rework base for SkipObject exception to better support control flow exceptions (cherry-pick #10186) by @gcp-cherry-pick-bot in #10187
  • web/flows: update flow background (cherry-pick #10206) by @gcp-cherry-pick-bot in #10207
  • security: fix CVE-2024-38371 (cherry-pick #10229) by @gcp-cherry-pick-bot in #10234
  • security: fix CVE-2024-37905 (cherry-pick #10230) by @gcp-cherry-pick-bot in #10237

Full Changelog: version/2024.6.0-rc2...version/2024.6.0

Release 2024.4.3

26 Jun 10:56
5afceaa
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.4#fixed-in-202443

What's Changed

  • core: fix source flow_manager not always appending save stage (cherry-pick #9659) by @gcp-cherry-pick-bot in #9662
  • web: fix value handling inside controlled components (cherry-pick #9648) by @gcp-cherry-pick-bot in #9685
  • sources/saml: fix FlowPlanner error due to pickle (cherry-pick #9708) by @gcp-cherry-pick-bot in #9709
  • security: fix CVE-2024-38371 (cherry-pick #10229) by @gcp-cherry-pick-bot in #10233
  • security: fix CVE-2024-37905 (cherry-pick #10230) by @gcp-cherry-pick-bot in #10236

Full Changelog: version/2024.4.2...version/2024.4.3

Release 2024.2.4

26 Jun 10:56
1c03cfa
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.2#fixed-in-202424

What's Changed

Full Changelog: version/2024.2.3...version/2024.2.4

Release 2024.6.0-rc2

19 Jun 17:56
version/2024.6.0-rc2
0bbbc7d
Compare
Choose a tag to compare
Release 2024.6.0-rc2 Pre-release
Pre-release

See https://docs.goauthentik.io/docs/releases/2024.6

What's Changed

  • policies/reputation: fix existing reputation update (cherry-pick #10124) by @gcp-cherry-pick-bot in #10125
  • core: include version in built JS files (cherry-pick #9558) by @gcp-cherry-pick-bot in #10148
  • web: fix needed because recent upgrade to task breaks spinner button (cherry-pick #10142) by @gcp-cherry-pick-bot in #10150
  • root: use custom model serializer that saves m2m without bulk (cherry-pick #10139) by @gcp-cherry-pick-bot in #10151
  • web: fix docker build for non-release versions (cherry-pick #10154) by @gcp-cherry-pick-bot in #10155
  • website/docs: update 2024.6 release notes with latest changes (cherry-pick #10167) by @gcp-cherry-pick-bot in #10168
  • core: fix error when raising SkipObject in mapping (cherry-pick #10153) by @gcp-cherry-pick-bot in #10173
  • website/docs: 2024.6 release notes: add note about group names (cherry-pick #10170) by @gcp-cherry-pick-bot in #10171
  • website/docs: update 2024.6 release notes with latest changes (cherry-pick #10174) by @gcp-cherry-pick-bot in #10175
  • release: 2024.6.0-rc2 by @rissson in #10176

Full Changelog: version/2024.6.0-rc1...version/2024.6.0-rc2

Release 2024.6.0-rc1

14 Jun 17:06
version/2024.6.0-rc1
35cd126
Compare
Choose a tag to compare
Release 2024.6.0-rc1 Pre-release
Pre-release

See https://docs.goauthentik.io/docs/releases/2024.6

What's Changed

Read more

Release 2024.4.2

07 May 14:56
version/2024.4.2
1f5953b
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.4#fixed-in-202442

What's Changed

  • sources/oauth: fix OAuth Client sending token request incorrectly (cherry-pick #9474) by @gcp-cherry-pick-bot in #9475
  • flows: fix execute API endpoint (cherry-pick #9478) by @gcp-cherry-pick-bot in #9481
  • events: ensure all models' str can be called without any further lookups (cherry-pick #9480) by @gcp-cherry-pick-bot in #9485
  • web/flows: fix missing fallback for flow logo (cherry-pick #9487) by @gcp-cherry-pick-bot in #9492
  • core: only prefetch related objects when required (cherry-pick #9476) by @gcp-cherry-pick-bot in #9510
  • web: Add missing integrity hashes to package-lock.json by @jvanbruegge in #9527
  • lifecycle: close database connection after migrating (cherry-pick #9516) by @gcp-cherry-pick-bot in #9531
  • providers/saml: fix ecdsa support (cherry-pick #9537) by @gcp-cherry-pick-bot in #9544
  • web/flows: fix error when enrolling multiple WebAuthn devices consecutively (cherry-pick #9545) by @gcp-cherry-pick-bot in #9547
  • providers/scim: fix time_limit not set correctly (cherry-pick #9546) by @gcp-cherry-pick-bot in #9553
  • enterprise/audit: fix audit logging with m2m relations (cherry-pick #9571) by @gcp-cherry-pick-bot in #9572
  • core: fix source_flow_manager saving user-source connection too early (cherry-pick #9559) by @gcp-cherry-pick-bot in #9578
  • providers/scim: fix SCIM ID incorrectly used as primary key (cherry-pick #9557) by @gcp-cherry-pick-bot in #9579
  • tenants: fix scheduled tasks not running on default tenant (cherry-pick #9583) by @gcp-cherry-pick-bot in #9586
  • core: fix task clean_expiring_models removing valid sessions with using database storage (cherry-pick #9598) by @gcp-cherry-pick-bot in #9601
  • core: fix condition in task clean_expiring_models (cherry-pick #9603) by @gcp-cherry-pick-bot in #9604
  • sources/scim: fix duplicate groups and invalid schema (cherry-pick #9466) by @gcp-cherry-pick-bot in #9606
  • website/docs: prepare 2024.4.2 release notes (cherry-pick #9555) by @gcp-cherry-pick-bot in #9624

Full Changelog: version/2024.4.1...version/2024.4.2

Release 2024.4.1

26 Apr 16:02
ca70c96
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.4#fixed-in-202441

What's Changed

  • web: markdown: display markdown even when frontmatter is missing (cherry-pick #9404) by @gcp-cherry-pick-bot in #9405
  • sources/oauth: ensure all UI sources return a valid source (cherry-pick #9401) by @gcp-cherry-pick-bot in #9406
  • stages/identification: don't check source component (cherry-pick #9410) by @gcp-cherry-pick-bot in #9420
  • web: Add resolved and integrity fields back to package-lock.json (cherry-pick #9419) by @gcp-cherry-pick-bot in #9421
  • core: fix logic for token expiration (cherry-pick #9426) by @gcp-cherry-pick-bot in #9428
  • ci: fix ci pipeline (cherry-pick #9427) by @gcp-cherry-pick-bot in #9429
  • web/common: fix locale detection for user-set locale (cherry-pick #9436) by @gcp-cherry-pick-bot in #9439
  • lifecycle: always try custom redis URL (cherry-pick #9441) by @gcp-cherry-pick-bot in #9458
  • website/docs: prepare 2024.4.1 (cherry-pick #9459) by @gcp-cherry-pick-bot in #9461
  • web/admin: show user internal service account as disabled (cherry-pick #9464) by @gcp-cherry-pick-bot in #9467
  • web/admin: fix disabled button color with dark theme (cherry-pick #9465) by @gcp-cherry-pick-bot in #9468
  • sources/scim: fix service account user path (cherry-pick #9463) by @gcp-cherry-pick-bot in #9470
  • website/docs: update release notes for 2024.4.1 again (cherry-pick #9471) by @gcp-cherry-pick-bot in #9472

Full Changelog: version/2024.4.0...version/2024.4.1

Release 2024.4.0

24 Apr 16:30
afa4234
Compare
Choose a tag to compare

See https://docs.goauthentik.io/docs/releases/2024.4

What's Changed

  • ci: docker push: re-add timestamp image tag by @rissson in #8529
  • ci: fix release pipeline by @BeryJu in #8530
  • core, web: update translations by @authentik-automation in #8531
  • web: fix save & reset behavior on System ➲ Settings page. by @kensternberg-authentik in #8528
  • web: change "delete" verb to "remove" for one-to-many relationships by @kensternberg-authentik in #8535
  • ci: fix release sentry step by @rissson in #8540
  • web: bump the storybook group in /web with 8 updates by @dependabot in #8544
  • web: bump chromedriver from 121.0.0 to 121.0.1 in /tests/wdio by @dependabot in #8545
  • web: bump the wdio group in /tests/wdio with 2 updates by @dependabot in #8543
  • web: bump the sentry group in /web with 1 update by @dependabot in #8542
  • web: bump rollup from 4.10.0 to 4.11.0 in /web by @dependabot in #8546
  • core: bump cryptography from 42.0.0 to 42.0.2 by @dependabot in #8553
  • website: bump undici from 5.27.2 to 5.28.3 in /website by @dependabot in #8550
  • core: bump github.com/redis/go-redis/v9 from 9.4.0 to 9.5.0 by @dependabot in #8567
  • web: bump rollup from 4.11.0 to 4.12.0 in /web by @dependabot in #8566
  • web: bump the storybook group in /web with 1 update by @dependabot in #8565
  • web: bump chromedriver from 121.0.1 to 121.0.2 in /tests/wdio by @dependabot in #8564
  • website: bump react-tooltip from 5.26.2 to 5.26.3 in /website by @dependabot in #8562
  • website: bump @types/react from 18.2.55 to 18.2.56 in /website by @dependabot in #8561
  • web: bump the wdio group in /tests/wdio with 4 updates by @dependabot in #8563
  • web/flows: improve authenticator styling by @BeryJu in #8560
  • root: fix app settings load order by @BeryJu in #8569
  • ci: main: use correct previous version by @rissson in #8539
  • Revert "core: bump github.com/redis/go-redis/v9 from 9.4.0 to 9.5.0 (… by @BeryJu in #8573
  • core: bump twilio from 8.12.0 to 8.13.0 by @dependabot in #8525
  • core: bump black from 24.1.1 to 24.2.0 by @dependabot in #8524
  • web: bump core-js from 3.35.1 to 3.36.0 in /web by @dependabot in #8523
  • core, web: update translations by @authentik-automation in #8574
  • website/docs: kubernetes installation: update values by @rissson in #8575
  • website/docs: edited Docs about tenants by @tanberry in #8549
  • website/docs: remove outdated info by @tanberry in #8552
  • providers/oauth2: improve conformance with client_credentials standard by @BeryJu in #8471
  • website/docs: remove tenants docs from sidebar for now by @tanberry in #8551
  • website/docs: edit RN to remove tenants by @tanberry in #8578
  • translate: Updates for file web/xliff/en.xlf in zh-Hans by @transifex-integration in #8582
  • translate: Updates for file web/xliff/en.xlf in zh_CN by @transifex-integration in #8581
  • translate: Updates for file web/xliff/en.xlf in fr by @transifex-integration in #8590
  • website: bump @types/react from 18.2.56 to 18.2.57 in /website by @dependabot in #8589
  • core: bump ruff from 0.2.1 to 0.2.2 by @dependabot in #8588
  • core: bump github.com/jellydator/ttlcache/v3 from 3.1.1 to 3.2.0 by @dependabot in #8587
  • web: bump the eslint group in /web with 2 updates by @dependabot in #8583
  • web: bump the esbuild group in /web with 2 updates by @dependabot in #8584
  • web: bump the eslint group in /tests/wdio with 2 updates by @dependabot in #8585
  • rbac: fix permission decorator for global permissions by @BeryJu in #8591
  • web: spell customization with a Z by @fheisler in #8596
  • web/flows: fix webauthn retry by @BeryJu in #8599
  • web: bump @codemirror/lang-javascript from 6.2.1 to 6.2.2 in /web by @dependabot in #8615
  • web: bump @open-wc/lit-helpers from 0.6.0 to 0.7.0 in /web by @dependabot in #8614
  • web: bump the storybook group in /web with 8 updates by @dependabot in #8613
  • web: bump the sentry group in /web with 1 update by @dependabot in #8612
  • core: bump github.com/redis/go-redis/v9 from 9.4.0 to 9.5.1 by @dependabot in #8611
  • web: bump the wdio group in /tests/wdio with 3 updates by @dependabot in #8610
  • web: bump ip from 1.1.8 to 1.1.9 in /tests/wdio by @dependabot in #8608
  • core: bump cbor2 from 5.5.1 to 5.6.2 by @dependabot in #8607
  • core, web: update translations by @authentik-automation in #8606
  • translate: Updates for file web/xliff/en.xlf in zh_CN by @transifex-integration in #8609
  • web: bump API Client version by @authentik-automation in #8617
  • website/blog: Blog about release 2024.2 by @tanberry in #8580
  • website/docs: fix link to helm chart release notes by @BeryJu in #8624
  • stages/authenticator_validate: fix error with get_webauthn_challenge_without_user by @BeryJu in #8625
  • website/docs: added a new template for "combo" topics by @tanberry in #8595
  • fix version by @tanberry in #8630
  • core: bump goauthentik.io/api/v3 from 3.2023107.2 to 3.2024020.1 by @dependabot in #8635
  • core: bump cryptography from 42.0.2 to 42.0.4 by @dependabot in #8629
  • brands: fix context processor when request doesn't have a tenant by @BeryJu in #8643
  • ci: fix missing tags from release by @BeryJu in #8645
  • events: sanitize args and kwargs saved in system tasks by @BeryJu in #8644
  • website/docs: prepare 2024.2.1 release notes by @BeryJu in #8649
  • website/blog: add draft for blog about fletcher joining by @tanberry in #8634
  • web: bump API Client version by @authentik-automation in #8654
  • website/blog: fix image so it displays in twitter post by @tanberry in #8656
  • core: rework recovery API to return better error messages by @BeryJu in #8655
  • web: bump API Client version by @authentik-automation in #8658
  • website/blog: Blog try again by @tanberry in #8659
  • web: bump the sentry group in /web with 1 update by @dependabot in #8665
  • core: bump selenium from 4.17.2 to 4.18.1 by @dependabot in #8664
  • core: bump pytest from 8.0.0 to 8.0.1 by @dependabot in #8663
  • web: bump chromedriver from 121.0.2 to 122.0.3 in /tests/wdio by @dependabot in #8662
  • core: bump goauthentik.io/api/v3 from 3.2024020.1 to 3.2024021.2 by @dependabot in #8661
  • translate: Updates for file web/xliff/en.xlf in zh-Hans by @transifex-integration in #8622
  • blueprints: use reconcile decorator instead of relying on function name prefix by @BeryJu in #8483
  • translate: Updates for file web/xliff/en.xlf i...
Read more