renovate[bot]
a9277abcdf
doc and dep updates/improve ocsp script run/fix update from old versions/remove useless headers
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-23 23:32:52 +02:00
Zoey
90c3ec7335
fix nginx start/dep updates/merge upstream
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-22 11:15:16 +02:00
Zoey
927d5ca5cb
changes on custom acme server/change compression mime types
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-20 19:48:53 +02:00
Zoey
7c92e832cf
Merge remote-tracking branch 'upstream/develop' into develop
2024-10-19 18:49:48 +02:00
Zoey
32fd41d82b
prepare certbot changes/merge upstream
2024-10-19 18:46:46 +02:00
Zoey
1dbf57c2ba
Merge remote-tracking branch 'upstream/develop' into develop
2024-10-19 18:18:26 +02:00
Jamie Curnow
edbed1af90
Adds tests for settings endpoints
...
and reenables dns cert test
and fixes problems with schema
2024-10-17 08:48:47 +10:00
Nephiel
fa2c814fcb
Fix schema validation in Default Site
...
Should solve error `data/value must match exactly one schema in oneOf` when setting the Default Site to 404 or 444. #4074
2024-10-16 19:09:14 +00:00
Nephiel
d96a3987c0
Fix forward_scheme validation in Redirection Host
...
Should solve error `data/forward_scheme must be equal to one of the allowed values` when configuring a Redirection Host with scheme set to `auto`. #4074
2024-10-16 19:04:50 +00:00
Zoey
a0e583dec3
merge upstream
2024-10-16 10:38:20 +02:00
Jamie Curnow
fe2d8895d6
Cypress test for http and dns cert provision
2024-10-16 14:53:57 +10:00
Jamie Curnow
5bdc05878f
Fix issues with certbot command when using LE_SERVER
2024-10-16 11:23:58 +10:00
Jamie Curnow
929ac3bd7c
Adds env var to set certbot acme server
...
this is required for test suite to use dns certbot request
without talking to live or staging letsencrypt servers or
production level dns providers. This is a backwards port
from the v3 branch and opens the door for a full certificate
cypress test
2024-10-16 11:06:29 +10:00
Jamie Curnow
351ba8dacd
More tests for certificates, fixed schema problems
2024-10-16 08:32:49 +10:00
Zoey
13f3f0d2f0
merge upstream
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-15 06:51:17 +02:00
Zoey
19c5fe2a87
Merge remote-tracking branch 'upstream/develop' into develop
2024-10-11 12:03:31 +02:00
renovate[bot]
131f0b9d09
fix(deps): update dependency @babel/core to v7.25.8
...
fix(deps): update dependency @apidevtools/json-schema-ref-parser to v11.7.2
2024-10-11 10:31:09 +02:00
jc21
78f3e7281b
Merge pull request #4015 from NginxProxyManager/dependabot/npm_and_yarn/backend/express-4.20.0
...
Bump express from 4.19.2 to 4.20.0 in /backend
2024-10-11 15:18:36 +10:00
jc21
0bfa6c9d4f
Merge pull request #3973 from ddshd/proxy-add-set
...
Add set directives for proxied paths to keep nginx from crashing if upstream is down
2024-10-11 14:08:39 +10:00
dependabot[bot]
f71de7474d
Bump express from 4.19.2 to 4.20.0 in /backend
...
Bumps [express](https://github.com/expressjs/express ) from 4.19.2 to 4.20.0.
- [Release notes](https://github.com/expressjs/express/releases )
- [Changelog](https://github.com/expressjs/express/blob/master/History.md )
- [Commits](https://github.com/expressjs/express/compare/4.19.2...4.20.0 )
---
updated-dependencies:
- dependency-name: express
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
2024-10-11 04:06:52 +00:00
jc21
02a7b43932
Merge pull request #3991 from nlynzaad/develop_mysql2
...
swap mysql library and knex client for mysql2
2024-10-11 14:05:26 +10:00
jc21
e0352ecc48
Merge pull request #4016 from NginxProxyManager/dependabot/npm_and_yarn/backend/body-parser-1.20.3
...
Bump body-parser from 1.20.2 to 1.20.3 in /backend
2024-10-11 13:27:14 +10:00
Jamie Curnow
c39d5433bc
Fix CVE-2024-46256 and CVE-2024-46257
...
- Schema validate against bad domain characters
- Integration test for CVE POC examples
- Cypress rewrite of plugins for file upload
2024-10-11 11:31:57 +10:00
Jamie Curnow
7c97516de6
Fix schema issue with cors
2024-10-10 16:31:19 +10:00
Jamie Curnow
4572b205c9
Openapi Schema improvements
...
- Return proper booleans in api responses
- Update jsonschemavalidation to latest draft
2024-10-10 15:53:11 +10:00
Zoey
fa6ee87c40
Update certbot.js
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-09 20:15:10 +02:00
renovate[bot]
a14d394a07
chore(deps): update dependency globals to v15.11.0
2024-10-09 10:49:48 +02:00
Jamie Curnow
dfe2588523
Refactor API Schema and validation
...
- /schema now returns full openapi/swagger schema
- That schema is used to validate incoming requests
- And used as a contract in future integration tests
- Moved route files up one level
- Fixed incorrect 404 reponses when getting objects
- Fixed saving new objects and passing jsonschemavalidation
2024-10-09 18:05:15 +10:00
renovate[bot]
b688c92e9a
fix(deps): update dependency express to v4.21.1
2024-10-09 06:31:09 +02:00
renovate[bot]
65854a3e8c
chore(deps): update eslint monorepo to v9.12.0
2024-10-05 07:47:59 +02:00
renovate[bot]
bb09562f89
fixes/dep updates/improved tls
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-10-02 23:17:42 +02:00
dependabot[bot]
d69cb26157
Bump body-parser from 1.20.2 to 1.20.3 in /backend
...
Bumps [body-parser](https://github.com/expressjs/body-parser ) from 1.20.2 to 1.20.3.
- [Release notes](https://github.com/expressjs/body-parser/releases )
- [Changelog](https://github.com/expressjs/body-parser/blob/master/HISTORY.md )
- [Commits](https://github.com/expressjs/body-parser/compare/1.20.2...1.20.3 )
---
updated-dependencies:
- dependency-name: body-parser
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
2024-09-21 08:52:30 +00:00
Nico Lynzaad
48a9f5f9db
swop mysql library and knex client for mysql2
2024-09-10 23:08:02 +02:00
Dhrumil Shah
554d1ff2b6
Add set directives for proxies to keep from crashing if upstream is down
2024-09-04 00:07:43 -04:00
renovate[bot]
a1f44c57d1
dep updates/fix healthcheck
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-08-15 18:29:44 +02:00
renovate[bot]
dbb0883dd7
dep updates
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-08-03 16:32:17 +02:00
Zoey
b9c4de0422
merge upstream
2024-07-11 16:06:32 +02:00
Zoey
603164791b
Merge remote-tracking branch 'upstream/develop' into develop
2024-07-11 16:03:39 +02:00
renovate[bot]
a039e7165d
dep updates/close #945 and #940/switch to better-sqlite3/allow to disable nginxbeautifier
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-07-11 15:44:23 +02:00
Jamie Curnow
99cce7e2b0
Fix command injection when passing bash commands into the dns provider configuration
...
- Use built in node functions to write the file
- And to delete the file
2024-07-01 16:08:01 +10:00
jc21
b33012705b
Merge pull request #3790 from DavidLievrouw/initial_admin
...
Read initial admin email and password from env vars
2024-07-01 15:22:15 +10:00
jc21
e948b60194
Merge pull request #3809 from NginxProxyManager/dependabot/npm_and_yarn/backend/braces-3.0.3
...
Bump braces from 3.0.2 to 3.0.3 in /backend
2024-07-01 15:20:48 +10:00
jc21
d1c23b6286
Merge pull request #3833 from NginxProxyManager/dependabot/npm_and_yarn/backend/glob-parent-5.1.2
...
Bump glob-parent from 5.1.1 to 5.1.2 in /backend
2024-07-01 15:19:39 +10:00
An Seongjin
001c77e686
Fix syntax that causes errors (generateKeys log)
2024-06-30 22:27:54 +09:00
renovate[bot]
0b388e0cf8
dep update/update prebuilt certbot
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-06-29 09:17:25 +02:00
dependabot[bot]
50aeae234f
Bump glob-parent from 5.1.1 to 5.1.2 in /backend
...
Bumps [glob-parent](https://github.com/gulpjs/glob-parent ) from 5.1.1 to 5.1.2.
- [Release notes](https://github.com/gulpjs/glob-parent/releases )
- [Changelog](https://github.com/gulpjs/glob-parent/blob/main/CHANGELOG.md )
- [Commits](https://github.com/gulpjs/glob-parent/compare/v5.1.1...v5.1.2 )
---
updated-dependencies:
- dependency-name: glob-parent
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
2024-06-27 18:24:09 +00:00
Zoey
22fa2f04ab
dep updates/alpine 3.20.1
...
Signed-off-by: Zoey <zoey@z0ey.de>
2024-06-22 00:55:42 +02:00
dependabot[bot]
6f9eed8a61
Bump braces from 3.0.2 to 3.0.3 in /backend
...
Bumps [braces](https://github.com/micromatch/braces ) from 3.0.2 to 3.0.3.
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md )
- [Commits](https://github.com/micromatch/braces/compare/3.0.2...3.0.3 )
---
updated-dependencies:
- dependency-name: braces
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
2024-06-16 10:41:32 +00:00
renovate[bot]
132623891a
dep updates/see description
...
little php design preview (dead host/default page/fancyindex)
improved "exploit blocking"
fancyindex now default off
block access to .git folders/files
change NGINX_404_REDIRECT default to false
2024-06-09 15:20:13 +02:00
renovate[bot]
941950ebbf
dep updates
2024-06-04 23:13:02 +02:00