Security update for bugwarden
This update for bugwarden fixes the following issues: Changes in bugwarden: - Update to 0.5.0: * Let the environment set allowed hosts and the auth header * Require a bearer token on the HTTP transport * Export audit records and diagnostics to an OTLP collector * Handle SIGTERM so container stop is graceful * Refuse unparsable allowed-hosts at startup * Normalize tool schemas for Gemini/Vertex clients, and recurse portable_schema into all draft-2020-12 positions - Vendored h2 bumped to 0.4.16 for RUSTSEC-2026-0258 / GHSA-q83h-524g-xf6h (h2 unbounded empty DATA frames lead to denial of service) - Ship the worked OpenTelemetry collector example as documentation
Security update for bugwarden
Description
This update for bugwarden fixes the following issues: Changes in bugwarden: - Update to 0.5.0: * Let the environment set allowed hosts and the auth header * Require a bearer token on the HTTP transport * Export audit records and diagnostics to an OTLP collector * Handle SIGTERM so container stop is graceful * Refuse unparsable allowed-hosts at startup * Normalize tool schemas for Gemini/Vertex clients, and recurse portable_schema into all draft-2020-12 positions - Vendored h2 bumped to 0.4.16 for RUSTSEC-2026-0258 / GHSA-q83h-524g-xf6h (h2 unbounded empty DATA frames lead to denial of service) - Ship the worked OpenTelemetry collector example as documentation
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- SUSE Product Security Team
- Advisory Id
- openSUSE-SU-2026:21613-1
- Cve Count
- 0
Threat ID: 6aab496155bf5e2cf5990aff
Added to database: 09/17/2026, 01:58:57 UTC
Last updated: 09/17/2026, 01:58:57 UTC
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.