- requirements.txt: bump floors past known CVEs (flask>=2.3.2 fixes CVE-2023-30861, requests>=2.32.0 fixes CVE-2023-32681 + CVE-2024-35195, redis>=5.0 fixes CVE-2023-28858/9). - LICENSE: add MIT text (README claimed MIT but the file was missing). - /api/1/debug/redis-keys: require auth. Was unauthenticated info-disclosure on the LAN/AP side. |
||
|---|---|---|
| .. | ||
| routes | ||
| __init__.py | ||
| app.py | ||
| auth.py | ||
| config.py | ||
| db.py | ||
| forwarder.py | ||
| redis_client.py | ||