Cameri on Nostr: ATTENTION ALL NOSTREAM RELAY OPERATORS: CRITCAL SECURITY VULNERABILITY FIX RELEASED ...
ATTENTION ALL NOSTREAM RELAY OPERATORS:
CRITCAL SECURITY VULNERABILITY FIX RELEASED IN THIS VERSION.
Please update your Nostream relay to 1.22.2 ASAP.
I can’t reach to each Nostream relay operator individually cause y’all don’t set your pubkey on your settings.
Details about the vulnerability will be disclosed soon.
A patch version of nostream has been released. Current version is 1.22.2
## [1.22.2](
https://github.com/Cameri/nostream/compare/v1.22.1...v1.22.2) (2023-02-10)
### Bug Fixes (Vulnerability not included here)
* instructions to run locally
* upgrade axios from 1.2.2 to 1.2.3
* upgrade knex from 2.4.0 to 2.4.1
Security vulnerability reported by
Peter (npub1pe5…w0zr)Thanks Peter!
Published at
2023-02-10 21:09:00Event JSON
{
"id": "1144c725a904e62289ea4f4dcc63c1206a78eee7480f977b52784e68384d3344",
"pubkey": "00000000827ffaa94bfea288c3dfce4422c794fbb96625b6b31e9049f729d700",
"created_at": 1676063340,
"kind": 1,
"tags": [
[
"p",
"0e6802d8b7caf0206b1df7b81d2421a27b2dd5a3396f74bfcfe5bae8997c959a"
]
],
"content": "ATTENTION ALL NOSTREAM RELAY OPERATORS:\n\nCRITCAL SECURITY VULNERABILITY FIX RELEASED IN THIS VERSION.\n\nPlease update your Nostream relay to 1.22.2 ASAP.\n\nI can’t reach to each Nostream relay operator individually cause y’all don’t set your pubkey on your settings.\n\nDetails about the vulnerability will be disclosed soon.\n\nA patch version of nostream has been released. Current version is 1.22.2\n## [1.22.2](https://github.com/Cameri/nostream/compare/v1.22.1...v1.22.2) (2023-02-10)\n\n### Bug Fixes (Vulnerability not included here)\n\n* instructions to run locally\n* upgrade axios from 1.2.2 to 1.2.3\n* upgrade knex from 2.4.0 to 2.4.1\n\nSecurity vulnerability reported by #[0]\n\nThanks Peter!",
"sig": "6f7b632ee9a7d44b779b1b9b5345fc1edcd145d3facaea2b091c433675135dfe07ae6f9ccb93400149da64d07328edadaa7eb06645fb9cb7254b73f9923f7969"
}