Releases: DefectDojo/django-DefectDojo
Releases · DefectDojo/django-DefectDojo
1.5.4rc5: Merge pull request #1227 from DefectDojo/dev
1.5.4rc4
What's Changed
- Entrypoint fix for docker, accessibility and engagement redirect (#1041) @aaronweaver
1.5.4rc3
What's Changed
- Fixes an issue with certain reports (#974) @adracea
- Migrations for containers and deployment pipeline (#976) @aaronweaver
- Move GitHub issue templates to newer GitHub workflow - fixes #977 (#978) @ppiotr3k
- ASVS v4 and CWE fixtures (#986) @barbich
- #991 and #993: Fix snyk import (#992) @madchap
- Fix twitter handle in README.md (#996) @valentijnscholten
- Added DawnScanner json report importer (#995) @jaguasch
- Anchore-Engine JSON vulnerability report importer (#999) @jaguasch
- Minor bug fixes (#1005) @aaronweaver
1.5.4rc2
What's Changed
- Updated Readme & made hash_code uneditable from UI (#959) @devGregA
- Added container security checks (#961) @aaronweaver
- annotations and secretName (#963) @sebbrandt87
- Add Kubernetes option in ISSUE_TEMPLATE.md (#965) @ppiotr3k
- Fix 964, first issue (#968) @Ravenons
- Change initializer to urandom (#971) @aaronweaver
- Container fix, helm secrets and memory optimizations (#972) @aaronweaver
Release 1.5.4rc1
What's Changed
- Removes PDF reports. Fixes save issue (#814) @devGregA
- Reworked false positive (#817) @devGregA
- add php security audit v2 JSON parser (#820) @ttrolololll
- Crashtestsecurity importer (#837) @Phylu
- Adding support for Safety scans (#848) @pdmayoSFI
- Bugfix in Burp Parser /issues/823 (#836) @ninp0
- Fixes permission issue (#857) @devGregA
- prevent sb-admin-2 from 4.0.0 upgrade (#867) @h00die
- Revert "prevent sb-admin-2 from 4.0.0 upgrade" (#868) @devGregA
- Fix max_length on primary key Product.name (#827) @wurstbrot
- prevent sb-admin-2 from 4.0.0 upgrade (#869) @h00die
- Revert "Revert "prevent sb-admin-2 from 4.0.0 upgrade"" (#871) @devGregA
- Docker and compose updates and requirements update (#872) @aaronweaver
- Add clair klar (#866) @wurstbrot
- fixed XSS bug in tags. (#878) @dr3dd589
- Output encoding for markdown (#880) @aaronweaver
- Add +x to docker-startup (#885) @wurstbrot
- added delete option in environment list. (#888) @dr3dd589
- Fix bulk edit in findings and nessus report parsing (#892) @HumanoidPhantom
- Dedupe functionaltiy doesn't correctly recognize all duplicates and l… (#841) @bend18
- fix issue #875 (#916) @dr3dd589
- add +x to run-local-dojo.bash (#915) @dr3dd589
- add linux mint 19 support (#914) @dr3dd589
- Netsparker JSON Parser (#913) @rasinfosec
- update readme (#909) @dr3dd589
- Feature/fix env vars (#917) @wurstbrot
- object_value in views.py initialized (#901) @ktreptow
- New feature request: Allow decoupling test_type and scan_type method when importing from API (#843) @jpescalona
- Update api.py (#834) @alekbc
- Revert "Update api.py" (#918) @devGregA
- K8s (#923) @hendrikhalkow
- PostgreSQL support added, image names fixed. (#924) @hendrikhalkow
- add unittest for NmapXMLParser. (#919) @dr3dd589
- Travis stuff added. (#925) @hendrikhalkow
- Use config maps, auto-generate password, improve Travis builds (#926) @hendrikhalkow
- fix issue #922 (#929) @dr3dd589
- Make DefectDojo work on Kubernetes (#927) @hendrikhalkow
- Burp Parser - minor bugfix in urlparse method. Change nettloc to netloc (#933) @ninp0
- Simplify All Calls to urlparse and ensure ZAP parser works properly to Import Results via API. (#935) @ninp0
- K8s (#936) @aaronweaver
- Make unit tests use Django database. (#937) @hendrikhalkow
- secrets added, docker files deleted. (#938) @hendrikhalkow
- documentation fixed, minor docker-compose adjustments. (#939) @hendrikhalkow
- test names fixed. (#941) @hendrikhalkow
- Make DefectDojo run on Kubernetes (#944) @hendrikhalkow
- Linting/pep8 (#946) @aaronweaver
- Dev (#949) @aaronweaver
- Markdown beautification (#950) @aaronweaver
- Fix issue #931 (#932) @TarlogicSecurity
- Updated lxml==4.2.5 (#953) @aaronweaver
- Compose timing startup changed, removed SonarCube until official Sonarcube export (#957) @aaronweaver
- Dev (#958) @aaronweaver
Fixes Permissions Issue
Third Party Security Update Fix
Fixes a stored XSS in the admin module for audit logging.
Docker Update
1.5.2.1 Update stale.yml
API and Engagement Enhancements
*Minor bug fixes
*API V2 Tagging
Release 1.5.1
Update test_type.json