Skip to content

Commit 70ae862

Browse files
committed
changelogs/1.33.13: Add summary
Signed-off-by: Ryan Northey <[email protected]>
1 parent fe079ca commit 70ae862

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

changelogs/summary.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
2+
* Security fixes:
3+
- CVE-2025-64527: Envoy crashes when JWT authentication is configured with the remote JWKS fetching
4+
- CVE-2025-66220: TLS certificate matcher for `match_typed_subject_alt_names` may incorrectly treat certificates containing an embedded null byte
5+
- CVE-2025-64763: Potential request smuggling from early data after the CONNECT upgrade

0 commit comments

Comments
 (0)