0.38.2
v0.38.2 Release
To update the prebuilt executable you can run
./pocketbase update.
Added
RealtimeConnectRequestEvent.MaxTimeoutfield to specify the absolute max duration a realtime connection can remain open (default to 30mins). This is in addition to theIdeTimeoutof 5mins in order to prevent misuse and to allow the GC to run more regularly.Added extra checks for the connected user IP in the realtime APIs to prevent bruteforce guest subscription update attempts and to serve as an extra protection for the "all-in-one" OAuth2 realtime handler.
Don't reset the records list pagination on record update (#7694).
Updated all
golang.org/x/packages to cover the recent security fixes (none of them should be a critical issue in PocketBase but nonetheless it is advised to update).