chore(deps): update adguard/adguardhome docker tag to v0.107.79 - #59
Open
renovate[bot] wants to merge 1 commit into
Open
chore(deps): update adguard/adguardhome docker tag to v0.107.79#59renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
Contributor
Trivy misconfiguration findings (HIGH + CRITICAL)✅ No HIGH or CRITICAL misconfigurations detected. |
Contributor
CVE deltaNo changes. Every image's CVE set is identical to the previous scan. |
renovate
Bot
force-pushed
the
renovate/adguard-adguardhome-0.x
branch
from
July 17, 2026 08:58
d891897 to
4e3365a
Compare
renovate
Bot
force-pushed
the
renovate/adguard-adguardhome-0.x
branch
from
August 21, 2026 20:07
4e3365a to
1808a58
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v0.107.76→v0.107.79Release Notes
AdguardTeam/AdGuardHome (adguard/adguardhome)
v0.107.79Compare Source
See also the v0.107.79 GitHub milestone.
Security
Go version has been updated to prevent the possibility of exploiting the Go vulnerabilities fixed in 1.26.6.
AdGuard Home is now more resistant to resource exhaustion attacks when using DNS-over-QUIC.
This is GHSA-w6v6-f44j-3rj2. We thank @ATinyShoe for reporting this security issue.
Added
Bootstrap servers configuration now supports comments.
New property
"language"inPOST /control/install/check_configandPOST /control/install/configureHTTP APIs.The user is able to remove the static lease's hostname via the HTTP API.
Changed
edgechannel has been switched to the new UI and versioning scheme.Deprecated
strict_sni_checkis now deprecated.Fixed
DNS64 treating unresolved
CNAME/DNAMEanswers as the end of resolution chain (#7514).Blocked requests without an EDNS(0) OPT record (#8183).
v0.107.78Compare Source
See also the v0.107.78 GitHub milestone.
Security
AdGuard Home is now more resistant to JIGGLE attacks.
This is GHSA-p5f5-3p5g-rfjw. We thank @Nora-Qiu for reporting this security issue.
AdGuard Home now validates responses from DoH upstreams more strictly.
This is GHSA-4qjf-2hgm-92q6. We thank @wallace0409 for reporting this security issue.
QUIC connections are now protected from unbounded reads.
This is GHSA-qr92-rwvw-mhgh and GHSA-cccx-2r6r-m9r4. We thank @wallace0409 for reporting this security issue.
AdGuard Home now validates responses from DNSCrypt upstreams more strictly.
The H2C connection establishment via HTTP/1.1 request upgrade is no longer supported. See RFC 9113.
Go version has been updated to prevent the possibility of exploiting the Go vulnerabilities fixed in 1.26.5.
The size of rulelists is limited. This is necessary to prevent a user's machine from becoming overloaded if the filter source misbehaves.
We thank Damir (@Evelynkaz) for reporting this security issue.
Added
Changed
0and8760(365 days) in the configuration file.Configuration changes
The
filteringobject of the YAML configuration now includes a new property,max_http_size, which defines the maximum size of the HTTP request for rulelists. To disable the limitation, set a large size, such as1 TB.Invalid AA flag in DNS responses (#7955).
The parsing of the
echparameter in DNS rewrite rules for the HTTPS record type (#8276).Validation of the
answerfield in DNS rewrite rules in case it is represented as CNAME.Blocked services check on the Custom filtering rules page does not work properly without specifying of a client.
v0.107.77Compare Source
See also the v0.107.77 GitHub milestone.
Security
Authorization in GLiNET mode is no longer vulnerable to path traversal attacks.
NOTE: This is CVE-2026-41448. We thank @djnnvx for reporting this security issue.
Added
reasonquery parameter inGET /control/querylog. Seeopenapi/openapi.yamlfor the full description.Deprecated
response_statusinGET /control/querylogis now deprecated. Use newreasonquery parameter instead.Configuration
📅 Schedule: (in timezone Europe/Bratislava)
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.