Skip to content

chore(deps): update adguard/adguardhome docker tag to v0.107.79 - #59

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/adguard-adguardhome-0.x
Open

chore(deps): update adguard/adguardhome docker tag to v0.107.79#59
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/adguard-adguardhome-0.x

Conversation

@renovate

@renovate renovate Bot commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Update Change
adguard/adguardhome (source) patch v0.107.76v0.107.79

Release Notes

AdguardTeam/AdGuardHome (adguard/adguardhome)

v0.107.79

Compare Source

See also the v0.107.79 GitHub milestone.

Security
  • Go version has been updated to prevent the possibility of exploiting the Go vulnerabilities fixed in 1.26.6.

  • AdGuard Home is now more resistant to resource exhaustion attacks when using DNS-over-QUIC.

    This is GHSA-w6v6-f44j-3rj2. We thank @​ATinyShoe for reporting this security issue.

Added
  • Bootstrap servers configuration now supports comments.

  • New property "language" in POST /control/install/check_config and POST /control/install/configure HTTP APIs.

  • The user is able to remove the static lease's hostname via the HTTP API.

Changed
  • The edge channel has been switched to the new UI and versioning scheme.
Deprecated
  • strict_sni_check is now deprecated.
Fixed
  • DNS64 treating unresolved CNAME/DNAME answers as the end of resolution chain (#​7514).

  • Blocked requests without an EDNS(0) OPT record (#​8183).

v0.107.78

Compare Source

See also the v0.107.78 GitHub milestone.

Security
  • AdGuard Home is now more resistant to JIGGLE attacks.

    This is GHSA-p5f5-3p5g-rfjw. We thank @​Nora-Qiu for reporting this security issue.

  • AdGuard Home now validates responses from DoH upstreams more strictly.

    This is GHSA-4qjf-2hgm-92q6. We thank @​wallace0409 for reporting this security issue.

  • QUIC connections are now protected from unbounded reads.

    This is GHSA-qr92-rwvw-mhgh and GHSA-cccx-2r6r-m9r4. We thank @​wallace0409 for reporting this security issue.

  • AdGuard Home now validates responses from DNSCrypt upstreams more strictly.

  • The H2C connection establishment via HTTP/1.1 request upgrade is no longer supported. See RFC 9113.

  • Go version has been updated to prevent the possibility of exploiting the Go vulnerabilities fixed in 1.26.5.

  • The size of rulelists is limited. This is necessary to prevent a user's machine from becoming overloaded if the filter source misbehaves.

    We thank Damir (@​Evelynkaz) for reporting this security issue.

Added
  • Improved updater logging to give users more insight into the problem with version updating (#​8410).
Changed
  • The interval of filter updates can now be set to any number of hours between 0 and 8760 (365 days) in the configuration file.
Configuration changes
  • The filtering object of the YAML configuration now includes a new property, max_http_size, which defines the maximum size of the HTTP request for rulelists. To disable the limitation, set a large size, such as 1 TB.

  • Invalid AA flag in DNS responses (#​7955).

  • The parsing of the ech parameter in DNS rewrite rules for the HTTPS record type (#​8276).

  • Validation of the answer field in DNS rewrite rules in case it is represented as CNAME.

  • Blocked services check on the Custom filtering rules page does not work properly without specifying of a client.

v0.107.77

Compare Source

See also the v0.107.77 GitHub milestone.

Security
  • Authorization in GLiNET mode is no longer vulnerable to path traversal attacks.

    NOTE: This is CVE-2026-41448. We thank @​djnnvx for reporting this security issue.

Added
  • New reason query parameter in GET /control/querylog. See openapi/openapi.yaml for the full description.
Deprecated
  • Query parameter response_status in GET /control/querylog is now deprecated. Use new reason query parameter instead.

Configuration

📅 Schedule: (in timezone Europe/Bratislava)

  • Branch creation
    • "after 6am and before 10am on monday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the renovate label Jun 8, 2026
@renovate
renovate Bot enabled auto-merge (squash) June 8, 2026 04:48
@github-actions

github-actions Bot commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

Trivy misconfiguration findings (HIGH + CRITICAL)

✅ No HIGH or CRITICAL misconfigurations detected.

@github-actions

github-actions Bot commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

CVE delta

No changes. Every image's CVE set is identical to the previous scan.

@renovate
renovate Bot force-pushed the renovate/adguard-adguardhome-0.x branch from d891897 to 4e3365a Compare July 17, 2026 08:58
@renovate renovate Bot changed the title chore(deps): update adguard/adguardhome docker tag to v0.107.77 chore(deps): update adguard/adguardhome docker tag to v0.107.78 Jul 17, 2026
@renovate
renovate Bot force-pushed the renovate/adguard-adguardhome-0.x branch from 4e3365a to 1808a58 Compare August 21, 2026 20:07
@renovate renovate Bot changed the title chore(deps): update adguard/adguardhome docker tag to v0.107.78 chore(deps): update adguard/adguardhome docker tag to v0.107.79 Aug 21, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants