The English version of quarkus.io is the official project site. Translated sites are community supported on a best-effort basis.

Quarkus 1.0.1.Final released - Important security fix

We just released 1.0.1.Final to fix an important security issue introduced in CR2 and still present in 1.0.0.Final.

Please upgrade to this version as soon as possible if you are using our security layer.

What’s new?

Security issue fix

If you are using our security annotations (e.g. @RolesAllowed) and also other annotations (such as Bean Validation annotations) on the parameters of your secured methods, the security checks would entirely be bypassed.

This issue was originally reported here: https://github.com/quarkusio/quarkus/issues/5763 .

1.0.1.Final fixes this issue and upgrade is highly recommended.

Registro completo de cambios

Únete a nosotros

Valoramos mucho tus comentarios, así que por favor reporta errores, solicita mejoras…​ ¡Construyamos algo grandioso juntos!

Si eres un usuario de Quarkus o simplemente tienes curiosidad, no seas tímido y únete a nuestra acogedora comunidad: