ToolJet/plugins/packages
Adish M 6ddbb7fedc
feat: implement SSRF protection with URL validation across plugins (#14257)
* feat: implement SSRF protection with URL validation across plugins

* refactor SSRF protection to focus on cloud metadata endpoints and improve configuration options

* remove legacy whitelist functionality and streamline SSRF validation process

* enhance SSRF protection by adding configurable blocked schemes and validation checks

* enhance SSRF protection by integrating configurable options across services

* replace dns.lookup with dns.lookup from dns module for improved clarity

* refactor: enhance SSRF protection by merging request options and improving IP format normalization

* Fix: update comments for clarity and enhance IP normalization in SSRF protection

* enhance SSRF protection by validating URL and applying protection options in GraphqlQueryService

* enhance SSRF protection with detailed validation for redirects and URL schemes
2026-02-23 17:25:13 +05:30
..
airtable [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
amazonses Migrated aws-sdk v2 to v3 (#15023) 2026-02-04 17:27:17 +05:30
appwrite [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
athena Migrated aws-sdk v2 to v3 (#15023) 2026-02-04 17:27:17 +05:30
azureblobstorage [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
baserow [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
bigquery [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
clickhouse [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
common feat: implement SSRF protection with URL validation across plugins (#14257) 2026-02-23 17:25:13 +05:30
cosmosdb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
couchdb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
databricks Fix: Capitalisation inconsistencies in labels (#14174) 2025-10-22 13:59:18 +05:30
dynamodb Migrated aws-sdk v2 to v3 (#15023) 2026-02-04 17:27:17 +05:30
elasticsearch [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
firestore [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
gcs [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
googlesheets Feat: GoogleSheets 2.0 Marketplace Plugin (#14813) 2026-01-29 22:00:29 +05:30
googlesheetsv2 Feat: GoogleSheets 2.0 Marketplace Plugin (#14813) 2026-01-29 22:00:29 +05:30
graphql feat: implement SSRF protection with URL validation across plugins (#14257) 2026-02-23 17:25:13 +05:30
grpc [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
grpcv2 Fix: Use loadSync for gRPC filesystem proto loading and add lightweight service discovery (#15225) 2026-02-17 17:52:48 +05:30
influxdb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
mailgun [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
mariadb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
minio [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
mongodb fixed in operation json (#15206) 2026-02-09 22:44:47 +05:30
mssql [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
mysql [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
n8n sync marketplace and tooljet database changes 2024-10-28 23:37:40 +05:30
nocodb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
notion [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
openapi feat: implement SSRF protection with URL validation across plugins (#14257) 2026-02-23 17:25:13 +05:30
oracledb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
postgresql [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
redis [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
restapi feat: implement SSRF protection with URL validation across plugins (#14257) 2026-02-23 17:25:13 +05:30
rethinkdb [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
s3 Migrated aws-sdk v2 to v3 (#15023) 2026-02-04 17:27:17 +05:30
saphana [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
sendgrid [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
slack [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
smtp [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
snowflake [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
stripe [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
twilio [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
typesense [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
woocommerce [Vulnerability] package upgrades (#14861) 2026-01-08 17:46:51 +05:30
zendesk sync marketplace and tooljet database changes 2024-10-28 23:37:40 +05:30