This release includes 1 security fix for security teams reviewing exposed deployments.
Published 1mo
Communication & Email
✓ No known CVEs patched
This release patches 1 known CVE
Topics
chat-application
llm
conversational-bots
form-builder
nextjs
tailwindcss
Affected surfaces
rce_ssrf
Summary
AI summaryUpdates New features, Content, and Internal across a mixed release.
Full changelog
New features
- 👌 Configure WhatsApp forwarded events (#2528) [c5516cd]
- 👌 Configure WhatsApp webhook forwarding URL (#2529) [3db24c4]
Fixed
- 🐛 Fix landing page Discord URL (#2512) [b4a7aab]
- 🐛 Fix missing result columns in CSV export (#2513) [08cb6ea]
- 🐛 Fix OpenAI audio transcription uploads (#2521) [2fd5510]
- 🐛 Fix OpenAI chat completions endpoint (#2522) [b252a9c]
- 🐛 Fix embedded audio uploads (#2523) [c82ac43]
- 🐛 Ignore expected WhatsApp webhook errors (#2527) [3b321f4]
Security
- 🐛 Block IPv6 unspecified SSRF targets (#2511) [f56c3c3]
Content
- 📝 Add WhatsApp chatbot blog posts (#2505) [8433793]
- 📝 Add blog partner links (#2506) [f420be5]
- 📝 Recommend Neon in self-hosting docs (#2515) [f170033]
- 📝 Move database recommendation in self-hosting docs (#2516) [382a13c]
Internal
- 🔧 Copy skills during Conductor setup (#2514) [a9eac50]
Security Fixes
- Block IPv6 unspecified SSRF targets (#2511)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Beta — feedback welcome: [email protected]