From 585cbcb5cc9990b13c8f22c2cc4576fc46706d67 Mon Sep 17 00:00:00 2001 From: Ulises Gascon Date: Mon, 14 Sep 2026 17:20:54 +0200 Subject: [PATCH] 2.0.8 --- HISTORY.md | 114 +++++++++++++++++++++++++++------------------------ package.json | 2 +- 2 files changed, 61 insertions(+), 55 deletions(-) diff --git a/HISTORY.md b/HISTORY.md index 8480242..3d62c3e 100644 --- a/HISTORY.md +++ b/HISTORY.md @@ -1,144 +1,150 @@ -2.0.7 / 2021-05-31 -================== +2.0.8 +===== + + * Fix [CVE-2026-90711](https://www.cve.org/CVERecord?id=CVE-2026-90711) ([GHSA-jqcg-44mw-7w3h](https://github.com/jshttp/proxy-addr/security/advisories/GHSA-jqcg-44mw-7w3h)) + + +2.0.7 +===== * deps: forwarded@0.2.0 - Use `req.socket` over deprecated `req.connection` -2.0.6 / 2020-02-24 -================== +2.0.6 +===== * deps: ipaddr.js@1.9.1 -2.0.5 / 2019-04-16 -================== +2.0.5 +===== * deps: ipaddr.js@1.9.0 -2.0.4 / 2018-07-26 -================== +2.0.4 +===== * deps: ipaddr.js@1.8.0 -2.0.3 / 2018-02-19 -================== +2.0.3 +===== * deps: ipaddr.js@1.6.0 -2.0.2 / 2017-09-24 -================== +2.0.2 +===== * deps: forwarded@~0.1.2 - perf: improve header parsing - perf: reduce overhead when no `X-Forwarded-For` header -2.0.1 / 2017-09-10 -================== +2.0.1 +===== * deps: forwarded@~0.1.1 - Fix trimming leading / trailing OWS - perf: hoist regular expression * deps: ipaddr.js@1.5.2 -2.0.0 / 2017-08-08 -================== +2.0.0 +===== * Drop support for Node.js below 0.10 -1.1.5 / 2017-07-25 -================== +1.1.5 +===== * Fix array argument being altered * deps: ipaddr.js@1.4.0 -1.1.4 / 2017-03-24 -================== +1.1.4 +===== * deps: ipaddr.js@1.3.0 -1.1.3 / 2017-01-14 -================== +1.1.3 +===== * deps: ipaddr.js@1.2.0 -1.1.2 / 2016-05-29 -================== +1.1.2 +===== * deps: ipaddr.js@1.1.1 - Fix IPv6-mapped IPv4 validation edge cases -1.1.1 / 2016-05-03 -================== +1.1.1 +===== * Fix regression matching mixed versions against multiple subnets -1.1.0 / 2016-05-01 -================== +1.1.0 +===== * Fix accepting various invalid netmasks - IPv4 netmasks must be contingous - IPv6 addresses cannot be used as a netmask * deps: ipaddr.js@1.1.0 -1.0.10 / 2015-12-09 -=================== +1.0.10 +====== * deps: ipaddr.js@1.0.5 - Fix regression in `isValid` with non-string arguments -1.0.9 / 2015-12-01 -================== +1.0.9 +===== * deps: ipaddr.js@1.0.4 - Fix accepting some invalid IPv6 addresses - Reject CIDRs with negative or overlong masks * perf: enable strict mode -1.0.8 / 2015-05-10 -================== +1.0.8 +===== * deps: ipaddr.js@1.0.1 -1.0.7 / 2015-03-16 -================== +1.0.7 +===== * deps: ipaddr.js@0.1.9 - Fix OOM on certain inputs to `isValid` -1.0.6 / 2015-02-01 -================== +1.0.6 +===== * deps: ipaddr.js@0.1.8 -1.0.5 / 2015-01-08 -================== +1.0.5 +===== * deps: ipaddr.js@0.1.6 -1.0.4 / 2014-11-23 -================== +1.0.4 +===== * deps: ipaddr.js@0.1.5 - Fix edge cases with `isValid` -1.0.3 / 2014-09-21 -================== +1.0.3 +===== * Use `forwarded` npm module -1.0.2 / 2014-09-18 -================== +1.0.2 +===== * Fix a global leak when multiple subnets are trusted * Support Node.js 0.6 * deps: ipaddr.js@0.1.3 -1.0.1 / 2014-06-03 -================== +1.0.1 +===== * Fix links in npm package -1.0.0 / 2014-05-08 -================== +1.0.0 +===== * Add `trust` argument to determine proxy trust on * Accepts custom function @@ -150,12 +156,12 @@ * Add `proxyaddr.compile` to pre-compile `trust` function to make subsequent calls faster -0.0.1 / 2014-05-04 -================== +0.0.1 +===== * Fix bad npm publish -0.0.0 / 2014-05-04 -================== +0.0.0 +===== * Initial release diff --git a/package.json b/package.json index bf17d9b..8f08090 100644 --- a/package.json +++ b/package.json @@ -1,7 +1,7 @@ { "name": "proxy-addr", "description": "Determine address of proxied request", - "version": "2.0.7", + "version": "2.0.8", "author": "Douglas Christopher Wilson ", "license": "MIT", "keywords": [