Releases: HXSecurity/DongTai
Releases · HXSecurity/DongTai
1.16.0
What's Changed
- feat: improve patch type hint by @st1020 in #1841
- feat: modify user field by @st1020 in #1839
- feat: remove login lock by @st1020 in #1840
- feat:add agent version api. by @Bidaya0 in #1838
- feat/project_type_summary by @Bidaya0 in #1842
- deps: add pyotp dep by @st1020 in #1846
- feat: add project status change notify by @st1020 in #1845
- fix: percentage zero error. by @Bidaya0 in #1847
- fix: zero divide by @Bidaya0 in #1849
- fix: project current version auth fix. by @Bidaya0 in #1848
- feat: add request topo models. by @Bidaya0 in #1853
- feat: project type summary list. by @Bidaya0 in #1854
- feat: modify user info api by @st1020 in #1856
- feat: increase buffer size. by @Bidaya0 in #1855
- feat: add tantivy search by @st1020 in #1857
- deps: add qrcode dep by @st1020 in #1858
- feat: change tantivy index path by @st1020 in #1859
- Feat/add ldap settings by @Bidaya0 in #1860
- feat: add update vul tantivy index receiver by @st1020 in #1861
- feat: vul status change msg. by @Bidaya0 in #1862
- build(deps): fix deps . by @Bidaya0 in #1864
- build(deps): fix deps . by @Bidaya0 in #1865
- fix: tantivy search error by @st1020 in #1866
- build(deps): fix deps . by @Bidaya0 in #1867
- fix: tantivy search error by @st1020 in #1868
- feat/msg_status_log by @Bidaya0 in #1869
- feat load vul fix by @Bidaya0 in #1870
- fix: change log level. by @Bidaya0 in #1873
- fix: load hook strategy with dup data. by @Bidaya0 in #1874
- fix: tantivy path error by @st1020 in #1875
- feat: add strategy case. by @Bidaya0 in #1877
- feat: add vul log time range. by @Bidaya0 in #1878
- Feat/add vul log time range by @Bidaya0 in #1879
- Feat/add 1.16 strategy p2 by @Bidaya0 in #1880
- feat: add 1.16 strategy. by @Bidaya0 in #1876
- fix: vul_log msg record by @Bidaya0 in #1881
- fix: vul_log msg record by @Bidaya0 in #1882
- fix: vul_log msg record by @Bidaya0 in #1883
- feat: migration permissions. by @Bidaya0 in #1884
- feat: update ci by @tscuite in #1885
- feat: update ci by @tscuite in #1886
- feat: update ci by @tscuite in #1887
- feat: update ci by @tscuite in #1888
- fix: dockerfile by @st1020 in #1889
- Develop to Beta by @st1020 in #1892
- Beta to Main by @st1020 in #1893
- Develop to Beta by @st1020 in #1895
- Beta to Main by @st1020 in #1896
- Update release_dongtai.yml by @lingyuguo in #1898
- Beta by @lingyuguo in #1899
- cos gitaction by @lingyuguo in #1902
- Beta by @lingyuguo in #1903
New Contributors
- @lingyuguo made their first contribution in #1898
Full Changelog: v1.15.0...v1.16.0
1.15.0
What's Changed
- feat: add 1.14.0 by @tscuite in #1745
- v1.14.0 by @tscuite in #1746
- Beta by @tscuite in #1747
- v1.14.0 by @tscuite in #1748
- v1.14.0 by @tscuite in #1750
- Beta by @tscuite in #1751
- fix: remove print by @st1020 in #1739
- pref: use group celery tasks in sca bulk handler by @st1020 in #1749
- feat: add session engine by @st1020 in #1753
- pref: improve app vul list pref by @st1020 in #1742
- feat: set session expiry by @st1020 in #1755
- feat: remove outdate code by @st1020 in #1754
- fix: app vul list error by @st1020 in #1756
- feat: add failed login count by @st1020 in #1757
- feat: update ci by @tscuite in #1760
- fix: login error by @st1020 in #1761
- feat: new patch implementation by @st1020 in #1759
- feat: add login lock status by @st1020 in #1762
- build(deps): bump uwsgi from 2.0.21 to 2.0.22 by @dependabot in #1764
- feat: modify project summary api day_num field by @st1020 in #1763
- feat: method pool save by @st1020 in #1766
- feat: reduce memory usage in vul scan. by @Bidaya0 in #1767
- feat: modify vul save logic by @st1020 in #1768
- fix: vul method pool error by @st1020 in #1769
- feat: add has vul method pool field by @st1020 in #1771
- fix: iast_vulnerability table migration by @st1020 in #1772
- feat: package focus by @st1020 in #1773
- feat: focus package priority by @st1020 in #1775
- feat: add custom tag by @Bidaya0 in #1777
- feat: change hook strategy length limit. by @Bidaya0 in #1778
- Feat/add new topo table by @Bidaya0 in #1779
- deps: add pandas dependance by @st1020 in #1781
- feat: custom max page size by @st1020 in #1782
- feat: modify notify by @st1020 in #1783
- refactor: vul details api parse_graph by @st1020 in #1784
- feat: update ci by @tscuite in #1785
- feat: add replay header by @st1020 in #1786
- feat: update ci by @tscuite in #1787
- feat: update ci by @tscuite in #1788
- feat: update ci by @tscuite in #1790
- feat: update ci by @tscuite in #1791
- feat: modify hook strategy update logic by @st1020 in #1789
- feat: update ci by @tscuite in #1792
- feat: update ci by @tscuite in #1793
- feat: update ci by @tscuite in #1794
- Feat/add project token by @Bidaya0 in #1797
- feat: heartbeat use celery task by @st1020 in #1795
- fix: save vul did not save uri by @st1020 in #1796
- feat: add project token by @Bidaya0 in #1798
- feat: add new migration by @Bidaya0 in #1799
- fix: memory reduce. by @Bidaya0 in #1780
- dep: add new migration by @Bidaya0 in #1800
- fix: modify rule value by @st1020 in #1801
- fix: set language by @st1020 in #1802
- fix: modify rule value by @st1020 in #1803
- deps: add more itertools by @Bidaya0 in #1804
- feat/project token p2 by @Bidaya0 in #1805
- feat/remove no risk level by @Bidaya0 in #1806
- feat/project token p2 by @Bidaya0 in #1807
- feat/api route is cover. by @Bidaya0 in #1809
- fix: heartbeat task error by @st1020 in #1808
- feat: sensitive info rule add system type by @st1020 in #1811
- fix: heartbeat task error by @st1020 in #1810
- fix: vul status const error by @st1020 in #1813
- fix: change to directed graph. by @Bidaya0 in #1812
- Feat/add constrain in vec by @Bidaya0 in #1814
- Feat/add doc by @Bidaya0 in #1815
- feat: update new strategy. by @Bidaya0 in #1816
- fix:project_agent_download_token by @Bidaya0 in #1817
- feat: update new strategy. by @Bidaya0 in #1818
- feat: update new strategy. by @Bidaya0 in #1819
- v1.15.0 by @tscuite in #1820
- Beta by @tscuite in #1821
- v1.15.0 by @tscuite in #1822
- v1.15.0 by @tscuite in #1823
- Beta by @tscuite in #1824
- feat: update ci by @tscuite in #1825
- v1.15.0 by @tscuite in #1826
- Beta by @tscuite in #1827
- fix: load hook strategy by @st1020 in #1828
- feat: sensitive info pattern use text by @st1020 in #1829
- fix: agent download. by @Bidaya0 in #1830
- fix: patch by @st1020 in #1831
- feat: add new permission. by @Bidaya0 in #1832
- feat: add new permission. by @Bidaya0 in #1833
- fix: load hook strategy by @st1020 in #1834
- fix: modify sensitive info rule status by @st1020 in #1835
- fix: patch log by @st1020 in #1836
- pref: sensitive info rule list by @st1020 in #1837
- Feat/1.15.0 develop by @Bidaya0 in #1843
- Beta by @Bidaya0 in #1844
Full Changelog: v1.14.0...v1.15.0
Release-1.14.1
Full Changelog: v1.14.0...v1.14.1
Release-1.14.0
What's Changed
- feat: update ci by @tscuite in #1637
- feat: update ci by @tscuite in #1638
- fix: fix log filter by @st1020 in #1639
- chore: modify github workflow tests by @st1020 in #1640
- lint: add ruff linter and black formatter by @st1020 in #1643
- refactor: use networkit rewrite vul scan. by @Bidaya0 in #1642
- fix: that a context manager cant be used with FileResponse. by @Bidaya0 in #1645
- refactor: change file place. by @Bidaya0 in #1646
- chore: update batect by @st1020 in #1647
- fix: ruff check by @Bidaya0 in #1648
- feat: change auth to use projects by @st1020 in #1650
- feat: change auth to use projects. by @Bidaya0 in #1649
- chore: update cython by @st1020 in #1651
- chore: add workflow dispatch for nightly by @st1020 in #1652
- Feat/use migrations by @Bidaya0 in #1653
- fix: cython build error by @st1020 in #1654
- feat: change auth to use projects by @st1020 in #1655
- feat: use migrations. by @Bidaya0 in #1656
- chore: fix ci error by @st1020 in #1657
- fix: department token error by @st1020 in #1659
- feat: update ci by @tscuite in #1662
- feat: update ci by @tscuite in #1663
- feat: change agent register. by @Bidaya0 in #1660
- feat: add project permission model by @st1020 in #1661
- feat: change role model name by @st1020 in #1664
- feat: update ci by @tscuite in #1665
- feat: add request type by @st1020 in #1666
- feat: change agent register. by @Bidaya0 in #1667
- feat: modify project group model by @st1020 in #1668
- feat: add m2m fields. by @Bidaya0 in #1669
- feat: change auth to use projects. by @Bidaya0 in #1671
- chore: change Cython build file by @st1020 in #1673
- feat: add deleted field to user model by @st1020 in #1674
- feat: remove unused serializer by @st1020 in #1672
- feat: network scan detect multi path. by @Bidaya0 in #1675
- fix: fix type summary in project_summary. by @Bidaya0 in #1677
- fix: user model get_projects method by @st1020 in #1679
- feat: add project group name field in project list api by @st1020 in #1678
- fix: user model get_projects method by @st1020 in #1680
- fix: disk rate parse . by @Bidaya0 in #1682
- feat: add chinese sca by @st1020 in #1683
- feat: add chinese sca by @st1020 in #1685
- feat: remove outdate api by @st1020 in #1686
- Feat/project metadata by @Bidaya0 in #1687
- feat: add report validated sink config by @st1020 in #1688
- chore(deps): bump cryptography from 41.0.2 to 41.0.3 by @dependabot in #1689
- chore(deps): bump cryptography from 41.0.2 to 41.0.3 by @dependabot in #1690
- fix: migration error by @st1020 in #1691
- feat:add patch point. by @Bidaya0 in #1692
- feat: add hook strategt type in createion. by @Bidaya0 in #1693
- chore: add rate limit to schemathesis by @st1020 in #1684
- feat: add unique constraint to name field by @st1020 in #1694
- feat: user login add is active field. by @Bidaya0 in #1696
- pref: improve projects pref by @st1020 in #1695
- fix: agent register remove department. by @Bidaya0 in #1698
- fix: now its show the selected status vuls. by @Bidaya0 in #1699
- feat: add project group name in project detail. by @Bidaya0 in #1701
- feat: add unique constraint by @st1020 in #1697
- feat: add unique to project metadata. by @Bidaya0 in #1702
- fix: remove department. by @Bidaya0 in #1704
- refactor: vul engine by @st1020 in #1703
- Feat/validate tag by @Bidaya0 in #1706
- feat: project summary add project group name. by @Bidaya0 in #1705
- fix: modify agent config api by @st1020 in #1707
- build(deps): bump certifi from 2023.5.7 to 2023.7.22 by @dependabot in #1658
- fix: project vul_count with status filter. by @Bidaya0 in #1710
- feat: agent register and heartbeat. by @Bidaya0 in #1711
- fix: permission fix in strategy create. by @Bidaya0 in #1712
- fix: add hook rule field validate message. by @Bidaya0 in #1713
- feat: allow inactive user login. by @Bidaya0 in #1714
- feat: update ci by @tscuite in #1716
- pref: add index to db by @st1020 in #1709
- feat: add role and group name limit. by @Bidaya0 in #1717
- pref: improve package vul pref by @st1020 in #1715
- Feat/add project name limit by @Bidaya0 in #1718
- feat:add user login massage by @Bidaya0 in #1720
- feat:add user login massage by @Bidaya0 in #1721
- fix: test error by @st1020 in #1722
- fix: package vul error by @st1020 in #1719
- feat: project add create project user rel. by @Bidaya0 in #1723
- fix: project report export. by @Bidaya0 in #1724
- Fix/uniform branches models part by @Bidaya0 in #1725
- fix:data update by @Bidaya0 in #1726
- fix: engine hook rule modify. by @Bidaya0 in #1727
- build(deps): bump tornado from 6.3.2 to 6.3.3 by @dependabot in #1728
- fix: package vuls error by @st1020 in #1729
- feat: update 1.14.0 strategy. by @Bidaya0 in #1730
- fix: delete session if user disable by @st1020 in #1732
- feat: update 1.14.0 by @Bidaya0 in #1731
- fix: delete session if user disable by @st1020 in #1733
- feat: deploy uwsgi change process number. by @Bidaya0 in #1734
- fix: remove dockerignore by @Bidaya0 in #1735
- build(deps): bump certifi from 2023.5.7 to 2023.7.22 by @dependabot in #1736
- feat: update permission. by @Bidaya0 in #1737
- feat: update ci by @tscuite in #1738
- feat: update ci by @tscuite in #1740
- pref: do not check user in protocol api by @st1020 in #1741
- v1.14.0 by @tscuite in #1743
- Beta by @tscuite in #1744
Full Changelog: v1.13.0...v1.14.0
Release-1.13.0
What's Changed
- feat: add project id and project version id in project add api. by @Bidaya0 in #1544
- fix: api route parameter not correct record with multi method case. by @Bidaya0 in #1545
- feat/new_api_route_upload by @Bidaya0 in #1546
- Revert "feat/new_api_route_upload" by @Bidaya0 in #1548
- fix: fix heartbeat handler save fail by @st1020 in #1551
- fix: remove not reliable api data. by @Bidaya0 in #1552
- fix: type hint error by @st1020 in #1553
- feat: add project status update task by @st1020 in #1554
- feat: add project stauts filter by @st1020 in #1556
- faet: add project warning time config by @st1020 in #1557
- Update dongtai-pr.yaml by @tscuite in #1558
- Update dongtai-pr.yaml by @tscuite in #1559
- feat: add project exclude vul status filter by @st1020 in #1560
- feat: remove some vul status by @st1020 in #1561
- Update README.md by @Bidaya0 in #1563
- feat: change API log by @st1020 in #1562
- deps: add shortuuid as deps . by @Bidaya0 in #1564
- doc: add tags to api extend_schema. by @Bidaya0 in #1565
- feat: merge changes by @st1020 in #1566
- feat: remove some api by @st1020 in #1567
- refactor: remove match statement by @st1020 in #1568
- fix: agent status log by @st1020 in #1569
- feat: remove some api by @st1020 in #1570
- fix: type hint error by @st1020 in #1572
- fix: log filte by @st1020 in #1573
- feat: add new patch by @st1020 in #1574
- feat: cython parallel compilation by @st1020 in #1576
- fix: project add error by @st1020 in #1578
- fix: project add error by @st1020 in #1580
- fix: validator not working in validate command and tag. by @Bidaya0 in #1579
- fix: max recursive error. by @Bidaya0 in #1577
- feat: update patch by @st1020 in #1581
- feat: cut out vul list by @st1020 in #1582
- feat: update Pipfile by @tscuite in #1583
- feat: update ci by @tscuite in #1584
- Feat/celery project timestamp update by @Bidaya0 in #1585
- feat: add metrics by @tscuite in #1586
- feat: add metrics by @tscuite in #1587
- fix: disable branch search. by @Bidaya0 in #1588
- feat: change default strategy template when add strategy by @st1020 in #1589
- feat: del metrics by @tscuite in #1591
- feat: project version timestamp update. by @Bidaya0 in #1592
- fix: vul status error in heartbeat by @st1020 in #1590
- feat: add healthcheck by @tscuite in #1593
- pref: improve projects performance by @st1020 in #1594
- feat: update helm by @tscuite in #1595
- fix: celery connection error by @Bidaya0 in #1596
- pref: improve strategy types performance by @st1020 in #1597
- feat: update ci by @tscuite in #1599
- pref: improve hook rules performance by @st1020 in #1598
- fix: update project status error by @st1020 in #1600
- feat: update ci by @tscuite in #1601
- feat: update ci by @tscuite in #1602
- feat: update ci by @tscuite in #1603
- feat: update ci by @tscuite in #1604
- feat: update ci by @tscuite in #1605
- feat: update ci by @tscuite in #1606
- feat: update ci by @tscuite in #1607
- fix: agent download template id. by @Bidaya0 in #1608
- feat: update ci by @tscuite in #1609
- feat: disable drf spectacular log by @st1020 in #1610
- feat: update ci gevent by @tscuite in #1611
- feat: update ci timeout by @tscuite in #1612
- feat: update 1.13.0 strategy. by @Bidaya0 in #1613
- feat: update 1.13.0 params. by @Bidaya0 in #1614
- feat: update 1.13.0 strategy. by @Bidaya0 in #1615
- feat: change init schema log level by @st1020 in #1616
- feat: update ci by @tscuite in #1617
- feat: update 1.13.0 strategy. by @Bidaya0 in #1618
- fix: api documents fix. by @Bidaya0 in #1619
- fix: add miss api vul_recheck_payload by @st1020 in #1621
- fix: schema error by @st1020 in #1620
- fix: new graph check node exists. by @Bidaya0 in #1622
- docs: change schema to chinese by @st1020 in #1624
- feat: update ci by @tscuite in #1625
- fix: logstash prase json error. by @Bidaya0 in #1627
- fix: logstash prase json error. by @Bidaya0 in #1628
- fix: logstash prase json error. by @Bidaya0 in #1629
- build(deps): bump cryptography from 41.0.0 to 41.0.2 by @dependabot in #1623
- fix: source method repeated. by @Bidaya0 in #1631
- build(deps): bump cryptography from 41.0.0 to 41.0.2 by @dependabot in #1630
- docs: change schema to chinese by @st1020 in #1626
- feat: add ci by @tscuite in #1632
- fix/logstash_parse_json_error by @Bidaya0 in #1633
- docs: fix schema error by @st1020 in #1634
- beta by @tscuite in #1635
- Beta by @tscuite in #1636
New Contributors
Full Changelog: v1.12.0...v1.13.0
Release-1.12.0
What's Changed
- Release-1.11.0 by @Bidaya0 in #1453
- Release-1.11.0 by @Bidaya0 in #1454
- Feat/optimise auth use cache by @Bidaya0 in #1455
- feat: search method pool cache. by @Bidaya0 in #1457
- Ci/update deps celery by @Bidaya0 in #1460
- feat: optimise agent upload. by @Bidaya0 in #1462
- feat: optimise agent upload. by @Bidaya0 in #1463
- feat: use gevent as default. by @Bidaya0 in #1464
- fix: gevent using error. by @Bidaya0 in #1465
- build(deps): bump requests from 2.25.1 to 2.31.0 by @dependabot in #1461
- feat: rotate use cache. by @Bidaya0 in #1458
- feat: project timestamp update use async singlton task. by @Bidaya0 in #1467
- feat: project timestamp update use async singlton task. by @Bidaya0 in #1468
- Bugfix/agent id in replay queue by @Code-Agitator in #1470
- Update README.md by @Bidaya0 in #1471
- fix: agent heartbeat cache update. by @Bidaya0 in #1472
- Feat/new sca impl by @Bidaya0 in #1475
- Feat/new sca impl scan by @Bidaya0 in #1476
- feat: new sca impl. by @Bidaya0 in #1477
- feat: new sca impl. by @Bidaya0 in #1478
- feat: new sca impl. by @Bidaya0 in #1479
- feat: new sca impl api fix . by @Bidaya0 in #1480
- feat: new sca impl api add field. by @Bidaya0 in #1481
- feat: new sca impl api add field. by @Bidaya0 in #1483
- fix: doc fix. by @Bidaya0 in #1484
- fix: project time stamp update task. by @Bidaya0 in #1485
- fix: old scan util type check. by @Bidaya0 in #1482
- feat: new sca impl api add field. by @Bidaya0 in #1486
- feat: new sca impl api fix version. by @Bidaya0 in #1487
- build(deps): bump cryptography from 39.0.1 to 41.0.0 by @dependabot in #1488
- build(deps): bump cryptography from 39.0.1 to 41.0.0 by @dependabot in #1489
- fix: sca summary. by @Bidaya0 in #1490
- fix: type infer in license. by @Bidaya0 in #1491
- fix: type infer in license. by @Bidaya0 in #1492
- fix: type infer in license. by @Bidaya0 in #1493
- fix relation projects. by @Bidaya0 in #1494
- Feat/add route cover count by @Bidaya0 in #1495
- feat: vul status wont change in the final state. by @Bidaya0 in #1496
- feat: add rate limit by @Bidaya0 in #1497
- fix/dast_vul_filter-failed by @Bidaya0 in #1498
- fix/dast_vul_filter-failed by @Bidaya0 in #1499
- fix: fix sca scan when package_publish_time empty. by @Bidaya0 in #1501
- fix: summary type in sca. by @Bidaya0 in #1502
- fix: new asset risk level. by @Bidaya0 in #1503
- fix: new asset risk summary. by @Bidaya0 in #1504
- fix: new asset risk summary. by @Bidaya0 in #1505
- fix: remove update all status. by @Bidaya0 in #1506
- feat: add new tag. by @Bidaya0 in #1507
- feat: add new package vul level api. by @Bidaya0 in #1509
- feat: add new package vul level api. by @Bidaya0 in #1510
- feat: add new strategy. by @Bidaya0 in #1508
- fix: sca scan_data transform. by @Bidaya0 in #1511
- fix: vul_level match count. by @Bidaya0 in #1513
- feat: project vul filter by uri. by @Bidaya0 in #1515
- development: add silk as profiler. by @Bidaya0 in #1512
- fix: sca scan typing. by @Bidaya0 in #1518
- Development/add silk as profiler p2 by @Bidaya0 in #1517
- feat: mirgate api route gather to celery task. by @Bidaya0 in #1519
- feat: hook profile download queries optimise. by @Bidaya0 in #1520
- fix: agent download replace jar to zip. by @Bidaya0 in #1521
- fix: scan utils typing check. by @Bidaya0 in #1522
- fix: scan utils typing check. by @Bidaya0 in #1523
- fix: scan utils typing check. by @Bidaya0 in #1524
- feat: add new strategy . by @Bidaya0 in #1525
- fix stack_recognize white list not working by @Bidaya0 in #1526
- feat: add new strategy . by @Bidaya0 in #1527
- feat: add new startegy 1.12.0 by @Bidaya0 in #1528
- feat: package relative version query change. by @Bidaya0 in #1529
- feat: package relative version query change. by @Bidaya0 in #1530
- feat: package relative project query change. by @Bidaya0 in #1531
- change query in sca relation query by @Bidaya0 in #1532
- build: add deps by @Bidaya0 in #1533
- feat: update images by @tscuite in #1534
- fix: update images version by @tscuite in #1535
- v1.12.0 by @tscuite in #1536
- Beta by @tscuite in #1537
- feat: update somaxconn by @tscuite in #1538
- v1.12.0 by @tscuite in #1539
- Beta by @tscuite in #1540
- feat: update new strategy. by @Bidaya0 in #1541
- v1.12.0 by @tscuite in #1542
- Beta by @tscuite in #1543
New Contributors
- @Code-Agitator made their first contribution in #1470
Full Changelog: v1.11.0...v1.12.0
Release-1.11.0
Feature
- Increase the location display of dangerous methods and user code identification
- Add code black and white list configuration
- Add custom rule configuration items
- Add agent list data display
- Added hard-coded vulnerability display
- The call chain search is modified to include matches, and a search timeout reminder is added.
- Fixed the situation where an error was reported in a certain scenario in the vulnerability search part
- Fix the problem of getting the wrong url corresponding to the api in the case of redirection
- Fixed the markdown parsing problem of vulnerability description and repair plan
- Fixed the problem of incorrect calculation of the number of agents in the project list interface
- Fixed the bug that the number of connections surged due to connection reuse that conflicted with celery
- Fixed the problem that the resource usage of excel report export was too high
- Adjusted the verification of webhook, now as long as the receiving end returns a 200 status code, it can pass
What's Changed
- fix: remove departured urls. by @Bidaya0 in #1426
- fix: stack recognize trie match by @Bidaya0 in #1428
- fix/agent_count_in_project_list by @Bidaya0 in #1429
- feat:agent allow upload by @Bidaya0 in #1427
- fix: agent list args validation. by @Bidaya0 in #1430
- fix: ci codeql update. by @Bidaya0 in #1431
- fix: project summary typing fix. by @Bidaya0 in #1432
- fix: engine method pool change to contains. by @Bidaya0 in #1433
- fix: agnet register allow report by @Bidaya0 in #1434
- fix: string parsing error in lookup . by @Bidaya0 in #1435
- fix: engine method pool change to contains p2. by @Bidaya0 in #1436
- feat: agent_v2_allow_report_filter by @Bidaya0 in #1437
- fix: add method_pool search timeout . by @Bidaya0 in #1438
- fix: pep lint fix. by @Bidaya0 in #1441
- fix: get real uri in redirect case . by @Bidaya0 in #1443
- build(deps): bump django from 3.2.18 to 3.2.19 by @dependabot in #1442
- build(deps): bump django from 3.2.18 to 3.2.19 by @dependabot in #1444
- fix: project id in recognize api . by @Bidaya0 in #1447
- fix: project delete in recognize api . by @Bidaya0 in #1448
- fix: project delete in recognize api . by @Bidaya0 in #1449
- fix: project delete in recognize api . by @Bidaya0 in #1450
- fix: recognize rule project id range fix. by @Bidaya0 in #1451
- feat: new strategy rules . by @Bidaya0 in #1452
Full Changelog: https://github.com/HXSecurity/DongTai/commits/v1.11.0
Release-1.10.0
Feature
- SAST integration: Support SAST scanner to push vulnerabilities to scan vulnerabilities under the project
- SAST integration: supports the association of instrumented vulnerabilities and SAST scanning vulnerabilities
- Project configuration: Add project level modification log level and switch
- Custom rules: Added two options: Ignore Internal Call and Ignore Blacklist
- Fixed an issue where replay association based on file path similarity failed
- Fixed the problem that the original URL address for extracting vulnerabilities was invalid
- Fix the problem of highlight failure caused by abnormal data
- Fixed SSRF false positives not being properly excluded in the engine
- Fix the problem that the number of statistical items in the vulnerability display is incorrect due to the Agent being deleted
- Fixed the wrong binding problem caused by projects with the same name in multiple departments during Agent registration
- Updated the text of some vulnerability descriptions
What's Changed
- adopt develop branch again. by @Bidaya0 in #1324
- fix/bandit-tarfile-temp-fix by @Bidaya0 in #1325
- feat: update CI by @tscuite in #1329
- feat: update CI by @tscuite in #1330
- feat: update CI by @tscuite in #1331
- Develop by @tscuite in #1334
- feat: add beta、develop by @tscuite in #1335
- feat: add beta、develop by @tscuite in #1336
- feat: add beta、develop by @tscuite in #1337
- feat: add pr by @tscuite in #1338
- Develop by @tscuite in #1339
- feat: add pr by @tscuite in #1340
- fix: projecttemplate update . by @Bidaya0 in #1342
- fix: fix typing check in filepath handler. by @Bidaya0 in #1326
- fix: change logging level to reduce log cost. by @Bidaya0 in #1341
- fix: celery issue 7091. by @Bidaya0 in #1327
- feat: update release by @tscuite in #1343
- Test/add xss example data into testcase by @Bidaya0 in #1332
- fix: change logging level to reduce log cost. by @Bidaya0 in #1344
- Feat/integrate with dast by @Bidaya0 in #1345
- feat: integrate with dast. by @Bidaya0 in #1346
- Feat/integrate with dast fix 3 by @Bidaya0 in #1347
- Feat/integrate with dast fix 4 by @Bidaya0 in #1348
- feat: integrate with dast. by @Bidaya0 in #1349
- fix: endpoint api log . by @Bidaya0 in #1351
- fix/url_location_with_original_path by @Bidaya0 in #1353
- feat: vul_relation by @Bidaya0 in #1352
- Feat/vul relation manage by @Bidaya0 in #1354
- Feat/vul relation curd by @Bidaya0 in #1358
- Feat/project level log by @Bidaya0 in #1359
- Feat/project level log p2 by @Bidaya0 in #1361
- fix: add new level by @Bidaya0 in #1362
- fix: add new level by @Bidaya0 in #1363
- fix: fix unit test in dastvul . by @Bidaya0 in #1364
- Fix/new sca lib p4 by @Bidaya0 in #1366
- build(deps): bump redis from 3.5.3 to 4.5.3 by @dependabot in #1365
- Fix/unittest runs/4539246532/jobs/7998939141 by @Bidaya0 in #1367
- Feat/hook strategy data by @Bidaya0 in #1368
- fix: project level log by @Bidaya0 in #1371
- feat:add new hook_strategy field. by @Bidaya0 in #1370
- fix: fix vul_datail graph missing when highlight indexerror. by @Bidaya0 in #1373
- fix: agent config 500 when agent not found by @Bidaya0 in #1369
- Fix/ssrf fix and testcase add by @Bidaya0 in #1372
- Fix/normal vuln distinct by @Bidaya0 in #1374
- Fix/dast vul relation bind by @Bidaya0 in #1375
- fix: dast vul relation bind by @Bidaya0 in #1376
- Fix/dast vul relation bind p2 by @Bidaya0 in #1377
- Fix/dast vul relation bind p2 by @Bidaya0 in #1380
- fix: dast vul relation bind by @Bidaya0 in #1381
- Fix/dast vul relation bind p3 by @Bidaya0 in #1382
- fix: project_count error after agent delete by @Bidaya0 in #1383
- feat: new project version and api search by @Bidaya0 in #1388
- Feat/new vul descrition by @Bidaya0 in #1389
- fix: bug in /4592842052/jobs/8110235340 by @Bidaya0 in #1390
- fix: fix vul_datail graph missing when highlight indexerror. by @Bidaya0 in #1379
- Fix/ssrf fix and testcase add by @Bidaya0 in #1378
- Fix/action/runs/4593781591/jobs/8112057145 by @Bidaya0 in #1392
- Fix/parse response header by @Bidaya0 in #1393
- fix: agent bind project error when project department change by @Bidaya0 in #1395
- fix: agent bind project error when project department change by @Bidaya0 in #1396
- fix: agent bind project error when project department change by @Bidaya0 in #1398
- build(deps): bump redis from 3.5.3 to 4.4.4 by @dependabot in #1386
- feat/update-strategy-1.10 by @Bidaya0 in #1402
- build(deps): bump redis from 3.5.3 to 4.4.4 by @dependabot in #1403
Full Changelog: v1.9.3...v1.10.0
Release-1.9.3
Feature
- Add project template function
- Add department and project related settings when installing agent
- Fixed the regular check when detecting sensitive information
- Fix agent start and stop bug
- Optimize the query in the search part of the api
- Fixed the display bug in the component part
- Fixed log deletion bug
What's Changed
- lint(pep8): apply pycodestyle. by @Bidaya0 in #1178
- fix: typing in config_settings. by @Bidaya0 in #1181
- fix(build): update deps. by @Bidaya0 in #1187
- build(deps): bump setuptools from 65.5.0 to 65.5.1 by @dependabot in #1185
- feat: update deploy by @tscuite in #1189
- Update deploy-dongtai-server-test.yml by @tscuite in #1190
- fix(typing): fix argument typing with OrderedDict. by @Bidaya0 in #1191
- fix(scan): fix engine scan in branch. by @Bidaya0 in #1193
- feat(policy): update new ssrf policy. by @Bidaya0 in #1194
- feat: Add gitignore vscode by @tscuite in #1196
- fix(vul): fix originClassName display. by @Bidaya0 in #1198
- feat(display): add agent event time. by @Bidaya0 in #1200
- Feat/agent event time v2 by @Bidaya0 in #1201
- fix(lint): fix pycodestyle check. by @Bidaya0 in #1202
- fix(lint): fix pycodestyle check. by @Bidaya0 in #1203
- fix(lint): fix pycodestyle check. by @Bidaya0 in #1204
- fix(lint): fix pycodestyle check. by @Bidaya0 in #1205
- fix: update api_route by @tscuite in #1206
- Feat/project template p2 by @Bidaya0 in #1208
- fix: update data clean by @tscuite in #1207
- Feat/project template p3 by @Bidaya0 in #1210
- feat-project-template-p3 by @Bidaya0 in #1211
- feat/project-template-p5 by @Bidaya0 in #1212
- feat(projecttemplate): fix none safe. by @Bidaya0 in #1213
- feat/project-template-p6 by @Bidaya0 in #1214
- Update base.py by @Bidaya0 in #1216
- feat/project-template-p7 by @Bidaya0 in #1217
- feat/project-template-p8 by @Bidaya0 in #1218
- feat/project-template-p9 by @Bidaya0 in #1219
- feat/project-template-p10 by @Bidaya0 in #1220
- feat/project-template-p11 by @Bidaya0 in #1221
- feat: No user ID is required when querying project versions by @tscuite in #1222
- feat : sca new query after using department. by @Bidaya0 in #1225
- feat: Vulnerability acquisition page summary added language by @tscuite in #1223
- build(deps): bump django from 3.2.16 to 3.2.17 by @dependabot in #1224
- feat: Update Vulnerability Queries by @tscuite in #1227
- feat: new sca select query change. by @Bidaya0 in #1226
- fix: fix sca department id change . by @Bidaya0 in #1228
- fix: fix sca department id change . by @Bidaya0 in #1229
- fix(pr): Update Vulnerability Queries by @tscuite in #1230
- fix: fix api route change . by @Bidaya0 in #1231
- fix(pr): Update Vulnerability Queries by @tscuite in #1232
- fix(pr): Update Vulnerability Queries by @tscuite in #1233
- fix: fix project summary . by @Bidaya0 in #1234
- fix(pr): Update Vulnerability Queries, add department_id by @tscuite in #1235
- fix: fix sca summary es query. by @Bidaya0 in #1236
- fix(pr): Update Vulnerability Queries, mysql del department_id by @tscuite in #1237
- fix: fix sca summary es query. by @Bidaya0 in #1238
- fix: fix sca summary es query. by @Bidaya0 in #1239
- fix(pr): Update Vulnerability Queries, mysql del department_id by @tscuite in #1240
- build(deps): bump cryptography from 38.0.3 to 39.0.1 by @dependabot in #1241
- fix: fix sca summary es query. by @Bidaya0 in #1242
- fix: fix sca summary es query. by @Bidaya0 in #1243
- fix: fix admin auth. by @Bidaya0 in #1244
- fix: fix vul details. by @Bidaya0 in #1245
- fix(pr): Update agent to enable pause logic by @tscuite in #1246
- fix(pr): Update agent state by @tscuite in #1247
- feat: idea api modification by @tscuite in #1248
- fix: scan_strategys. by @Bidaya0 in #1250
- fix: scan_strategys. by @Bidaya0 in #1251
- fix: add init by @Bidaya0 in #1253
- fix: auth. by @Bidaya0 in #1254
- fix: asset query. by @Bidaya0 in #1255
- feat: idea api modification by @tscuite in #1256
- fix: bugfix scan project add change . by @Bidaya0 in #1257
- feat: new strategy 1.9.2 . by @Bidaya0 in #1259
- feat: strategy 1.9.2 . by @Bidaya0 in #1260
- feat: Update configurations such as vulnerability verification by @tscuite in #1258
- fix: fix user login. by @Bidaya0 in #1249
- Update entrypoint.sh by @tscuite in #1261
- fix: Changelog export by @tscuite in #1263
- fix: relation by @Bidaya0 in #1262
- feat: new plugin api. by @Bidaya0 in #1265
- build(deps): bump django from 3.2.17 to 3.2.18 by @dependabot in #1266
- fix: field limit in projecttemplate by @Bidaya0 in #1267
- deps: unlock types deps version. by @Bidaya0 in #1268
- fix: regex validation in groups limitation remove. by @Bidaya0 in #1269
- ci: add bandit and flake8. by @Bidaya0 in #1271
- ci: add bandit and flake8. by @Bidaya0 in #1273
- ci: add bandit and flake8. by @Bidaya0 in #1272
- ci: add bandit and flake8. by @Bidaya0 in #1274
- fix: README-zh.md by @UzJu in #1270
- fix: agent status ids update. by @Bidaya0 in #1275
- fix: agent status ids update. by @Bidaya0 in #1276
- fix: query optimise. by @Bidaya0 in #1277
- fix: vul accepet by @Bidaya0 in #1278
- fix: vul accepet by @Bidaya0 in #1279
- fix: strategy update by @Bidaya0 in #1280
- fix: agent list time filter . by @Bidaya0 in #1282
- fix: agent list time filter . by @Bidaya0 in #1283
- Fix/typing check fix by @Bidaya0 in #1284
- Fix/narmal vul upload and header vul by @Bidaya0 in #1285
- fix: project template update . by @Bidaya0 in #1287
- Feat/new project vul del api by @Bidaya0 in #1286
- fix: narmal vul upload fix by @Bidaya0 in #1288
- fix: log delete in. by @Bidaya0 in #1289
- fix: normal vul handler. by @Bidaya0 in #1290
- fix: project del. by @Bidaya0 in #1291
- fix: hook rule goblal. by @Bidaya0 in #1292
- fix: hook rule g...
Release-1.9.2
What's Changed
- fix: update dtctl by @tscuite in #1140
- fix: update dtctl by @tscuite in #1141
- feat: update mysql:8.0 by @tscuite in #1142
- feat: Do not upgrade mysql8.0 on the main branch for the time being by @tscuite in #1143
- fix: update pip by @tscuite in #1146
- build(deps): update numpy and pycryptome by @Bidaya0 in #1149
- fix:except action fix by @Bidaya0 in #1150
- build(deps): update jq by @Bidaya0 in #1151
- build(deps): update uwsgi by @Bidaya0 in #1152
- build(deps): bump certifi from 2020.11.8 to 2022.12.7 by @dependabot in #1148
- build(deps): update uwsgi by @Bidaya0 in #1153
- build(deps): update uwsgi by @Bidaya0 in #1154
- build(deps): update uwsgi by @Bidaya0 in #1155
- feat(validate): add status 7 validate failed. by @Bidaya0 in #1156
- feat:update-strategy-20221213 by @Bidaya0 in #1157
- feat:update-strategy-202212131821 by @Bidaya0 in #1158
- feat: new agent status. by @Bidaya0 in #1159
- Feat/agent display by @Bidaya0 in #1161
- Update Dockerfile by @tscuite in #1162
- feat: add event and service. by @Bidaya0 in #1163
- feat/new-agent-event-and-service-addr-display-fix by @Bidaya0 in #1164
- feat/new-agent-event-and-service-addr-display-fix-2 by @Bidaya0 in #1165
- feat: method pool delete after scan by @Bidaya0 in #1160
- feat: add celery retry on redis-lost. by @Bidaya0 in #1166
- feat: strategy update 1.9.2. by @Bidaya0 in #1167
- fix: service addr display. by @Bidaya0 in #1168
- fix: remove config application and jvm. by @Bidaya0 in #1169
- fix: celery fix pep8 lint. by @Bidaya0 in #1170
- feat: remove-config-application-and-jvm-metric-p2 by @Bidaya0 in #1172
- Feat/remove config application and jvm metric p4 by @Bidaya0 in #1174
- feat: remove-config-application-and-jvm-metric-p3 by @Bidaya0 in #1173
- feat: release add arm by @tscuite in #1175
- feat: add qemu buildx by @tscuite in #1177
Full Changelog: v1.9.1...v1.9.2