This release adds 1 notable feature for engineering teams evaluating rollout.
✓ No known CVEs patched in this version
Topics
ReleasePort's take
Light signalAccount recovery token requests now return success even when the user does not exist.
Why it matters: Affects account‑recovery flows; developers must handle empty‑user responses to avoid unintended password‑reset attempts. Performance caching of disk usage improves editing workflow speed.
Summary
AI summaryAccount recovery token requests now succeed even if the user does not exist.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Medium |
also return success on account recovery token requests when user doesn't exist also return success on account recovery token requests when user doesn't exist Source: llm_adapter@2026-05-23 Confidence: low |
— |
| Performance | Medium |
improve editing performance by caching disk usage information improve editing performance by caching disk usage information Source: llm_adapter@2026-05-23 Confidence: high |
— |
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Beta — feedback welcome: [email protected]