chore(deps): update houndarr to v1.12.0 #7287
Reference in New Issue
Block a user
Delete Branch "renovate/unified-houndarr"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
This PR contains the following updates:
1.11.0→1.12.0v1.11.0→v1.12.0Release Notes
av1155/houndarr (av1155/houndarr)
v1.12.0Compare Source
Added
/api/v1/widgetendpoint returns API-key-protected dashboard totals, backed by schema v19widget_api_keystorage. (#604)/api/v1/widget,X-Api-Key, and Settings > Admin > API key rotation. (#606)Enable missing searchtoggle that pauses the missing-search pass per instance; existing instances stay enabled after the v18 migration. (#619)Tag Filter · IncludeandTag Filter · Excludefields that scope searches to (or away from) items tagged in the upstream *arr, resolved against/tageach cycle. Schema v20 adds the two columns with empty defaults. (#637)Changed
Fixed
upgrade pool fetch failedlog row each upgrade cycle. (#620)Security
urllib3bumped to 2.7.0, closing two upstream advisories on decompression-bomb safeguards and sensitive-header forwarding through proxied redirects. Houndarr exercises neither path; the bump clearspip-auditand Trivy alerts. (#623)idnabumped to 3.15; closes CVE-2026-45409 (oversized input incheck_labelbefore contextual-rule processing). Houndarr does not pass attacker-controlled hostnames through the IDN encoder; the bump clearspip-auditand Trivy alerts. (#639)Configuration
📅 Schedule: (in timezone America/Chicago)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about these updates again.
This PR has been generated by Mend Renovate.
554576d435to4be90e6d104be90e6d10to093104b377093104b377tode78d89bc1