Skip to content

Releases: AikidoSec/firewall-php

v1.5.2

20 Feb 14:33
1db4fa8

Choose a tag to compare

  • Refactor environment loading and handling for FrankenPHP
  • Added AIKIDO_DISABLE checks for all hooked sinks

v1.5.1

19 Feb 10:05
52df146

Choose a tag to compare

  • Added support for FrankenPHP, both classic and worker mode
  • Added support for PHP ZTS (Zend Thread Safety)

v1.4.15

11 Feb 14:13
a085a22

Choose a tag to compare

  • Upgraded Zen Internals library to v0.1.60

v1.4.14

09 Feb 14:29
efd1d6f

Choose a tag to compare

  • Fix SSRF bypass via curl callback
  • Upgraded Go version to 1.25
  • Added Symfony EventSubscriber example for request blocking

v1.4.13

08 Jan 12:51
62addb8

Choose a tag to compare

  • Fixed post-request effective hostname handling for SSRF detection

v1.4.12

06 Jan 11:30
37fabf1

Choose a tag to compare

  • Fixed bypassed IP handling to be excluded from all blocking scenarios

v1.4.11

12 Dec 16:15
55a9866

Choose a tag to compare

  • Added support for blocking outbound domains

v1.4.10

05 Dec 12:06
515c5f5

Choose a tag to compare

  • Increased gRPC max message size from 4MB to 10MB to allow propagation of bigger cloud configs

v1.4.9

04 Dec 15:46
695e2c3

Choose a tag to compare

  • Added attack wave samples
  • Added support for custom route parameters

v1.4.8

25 Nov 11:21
eb180b5

Choose a tag to compare

  • Added support for PHP 8.5
  • Reloading config until a valid token is obtained
    • Fixes cases when .env is updated via zero downtime deployments: Envoyer/Forge
  • Fix the limit number of reported attack wave detections