- Fixed several auth/cert OCSP handling issues, including proper issuer validation, caching, and allowing login when OCSP servers are unreachable
- Updated core to Go 1.21.8, upgraded the enterprise raft snapshot agent, and added OpenAPI type fixes and support for OCSP responses without NextUpdate
- Resolved bugs such as a login deadlock with user lockout, corrected the UI roles tab for Kubernetes auth, and fixed OpenAPI rekey response fields