RATATOSKRATATOSK
로그인

OpenFGA

v1.20.0Security
2026년 9월 8일

ACTION 1OTHER 1

보안 관련 구성 요소 업데이트와 `ListUsers` 동작 오류 수정이 포함된 유지 보수 릴리스입니다. 운영 환경의 보안 설정과 사용자 목록 조회 동작에 영향을 줄 수 있습니다.

조치 필요 (1)

  • securitycriticalGo 도구 모음과 이미지의 go1.26.8 업데이트

    Go 도구 모음과 이미지를 go1.26.8을 사용하도록 업데이트했습니다. CVE-2026-39821GO-2026-5026과 관련된 보안 문제가 수정됩니다.

    CVE-2026-39821openfga#3287

그 외 기록된 변경 1건 전체fixes 1

fixes (1)

  • - Fixed a deadlock in ListUsers that caused a timeout with partial results when the number of union/intersection operands exceeded OPENFGA_RESOLVE_NODE_BREADTH_LIMIT and the operands each resolved to more than one user. Thank you to [@fabianluque](https://github.com/fabianluque) for the discovery and detailed report! [#3284](https://github.com/openfga/openfga/pull/3284)
OpenFGA 스택에 추가

조치가 필요한 릴리스가 나왔을 때 주간 메일로 알려드립니다. 이번 릴리스의 보안 패치 같은 것들입니다.

스택에 추가