From c0aa379b20c4f289f1632dfe614eaeabc8298062 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" Date: Mon, 2 Feb 2026 01:08:03 +0000 Subject: [PATCH] =?UTF-8?q?bump:=20version=200.2.3=20=E2=86=92=200.3.0=20[?= =?UTF-8?q?skip=20ci]?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- CHANGELOG.md | 9 +++++++++ Cargo.lock | 2 +- Cargo.toml | 2 +- 3 files changed, 11 insertions(+), 2 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index ae742ba..b3045e7 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,6 +5,15 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). +## v0.3.0 (2026-02-02) + +### Fix + +- Upgraded AWS dependencies to address CWE-20 +- A critical security flaw was discovered that essentially had all local secrets be encrypted with an all-zero key +- Addressed XNonce::from_slice deprecation warning +- Secrets are now stored exactly as passed without newlines stripped + ## v0.2.3 (2025-10-14) ### Refactor diff --git a/Cargo.lock b/Cargo.lock index 5314083..834ba3f 100644 --- a/Cargo.lock +++ b/Cargo.lock @@ -1637,7 +1637,7 @@ checksum = "0cc23270f6e1808e30a928bdc84dea0b9b4136a8bc82338574f23baf47bbd280" [[package]] name = "gman" -version = "0.2.3" +version = "0.3.0" dependencies = [ "anyhow", "argon2", diff --git a/Cargo.toml b/Cargo.toml index 1ebf575..4bc379a 100644 --- a/Cargo.toml +++ b/Cargo.toml @@ -1,6 +1,6 @@ [package] name = "gman" -version = "0.2.3" +version = "0.3.0" edition = "2024" authors = ["Alex Clarke "] description = "Universal command line secret management and injection tool"