Skip to content
Success

Changes

Summary

  1. [GovWayMonitor] (commit: ca99dcc) (details)
  2. [ProtocolloModIPA] (commit: 3b84a3f) (details)
  3. [GovWayCore] (commit: cc46703) (details)
  4. [GovWayCore] (commit: 0284ce2) (details)
  5. [Documentazione] (commit: 5a8a5a0) (details)
  6. Risolto alert 'https://github.com/link-it/govway/security/dependabot/211' aggiornando la libreria ch.qos.logback:logback-core' alla versione 1.5.26 (commit: d722383) (details)
Commit ca99dcc9d056c5f8152c5fcccf8e398f30377695 by Andrea Poli
[GovWayMonitor]
Aggiunto filtro che normalizza il path dei cookie al context path dell'applicazione.
Utile quando si usa STRICT_SERVLET_COMPLIANCE=true su Tomcat con applicazioni
che usano Servlet spec 2.5, dove i cookie potrebbero avere path più restrittivi.
(commit: ca99dcc)
The file was addedtools/web_interfaces/monitor/src/WEB-INF/web/web.xml.filters.first.tomcat
The file was modifiedtools/web_interfaces/monitor/ant/openspcoop2-govwayMonitor-resource.xml (diff)
The file was addedtools/utils/src/org/openspcoop2/utils/transport/http/CookiePathFilter.java
Commit 3b84a3f0bef7ecb9ed55437f58a1bd2fc2321ece by Andrea Poli
[ProtocolloModIPA]
Aggiunte configurazioni dei test DPoP.
Spostata inizializzazione integrazione Redis.
(commit: 3b84a3f)
The file was modifiedcore/src/org/openspcoop2/pdd/services/OpenSPCoop2Startup.java (diff)
The file was modifiedprotocolli/modipa/testsuite/src/configurazioni-govway/modipaTestBundle.zip (diff)
Commit cc4670387529f7ad1c4425d72a0eef21506b1973 by Andrea Poli
[GovWayCore]
Aggiunta gestione BYOK delle informazioni DPoP
(commit: cc46703)
The file was modifiedtools/command_line_interfaces/govway_vault/testsuite/src/org/openspcoop2/pdd/config/vault/cli/testsuite/secrets/test/SecretsTest.java (diff)
The file was modifiedtools/command_line_interfaces/govway_vault/testsuite/src/org/openspcoop2/pdd/config/vault/cli/testsuite/Utilities.java (diff)
The file was modifiedtools/command_line_interfaces/govway_vault/testsuite/sql/init.sql (diff)
The file was modifiedtools/command_line_interfaces/govway_vault/src/org/openspcoop2/pdd/config/vault/cli/VaultUpdateConfigUtilities.java (diff)
The file was modifiedtools/command_line_interfaces/govway_vault/testsuite/src/configurazioni-govway/vaultTestBundle.zip (diff)
The file was modifiedprotocolli/modipa/src/org/openspcoop2/protocol/modipa/ModIFactory.java (diff)
The file was modifiedtools/web_interfaces/lib/audit/src/org/openspcoop2/web/lib/audit/appender/AuditAppender.java (diff)
Commit 0284ce206b2f288c835050fd67f5f8e8ca77de3a by Andrea Poli
[GovWayCore]
Aggiornata versione di owasp.plugin: '12.2.0'
(commit: 0284ce2)
The file was modifiedpom.xml (diff)
Commit 5a8a5a0d2fa06a45ceee7bd55a2a9230a0a09c80 by Andrea Poli
[Documentazione]
Aggiunta segnalazione falso positivo CVE-2025-15104
(commit: 5a8a5a0)
The file was addedmvn/dependencies/owasp/falsePositives/CVE-2025-15104.xml
The file was modifiedmvn/dependencies/pom.xml (diff)
The file was addedresources/doc/src/manuali/vulnerability-management/falsePositive/CVE-2025-15104.rst
The file was modifiedresources/doc/src/manuali/vulnerability-management/falsePositive/index.rst (diff)
Commit d722383cb4f8147aa36d4a585d4b8a43b2413d1a by Andrea Poli
Risolto alert 'https://github.com/link-it/govway/security/dependabot/211' aggiornando la libreria ch.qos.logback:logback-core' alla versione 1.5.26
(commit: d722383)
The file was removedthird-party-licenses/testsuite/logback-classic-1.5.20/lgpl-2.1.html
The file was modifiedmvn/dependencies/testsuite/test/pom.xml (diff)
The file was removedthird-party-licenses/testsuite/logback-core-1.5.20/epl-v10.html
The file was removedthird-party-licenses/testsuite/logback-core-1.5.20/lgpl-2.1.html
The file was removedthird-party-licenses/testsuite/logback-classic-1.5.20/epl-v10.html