Skip to content

budibase

v3.39.0 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

ai-app-builder ai-applications crud-app crud-application data-application data-apps
+12 more
internal-tools it-workflows low-code low-code-no-code low-code-platform no-code no-code-platform rest-api-framework sql-gui workflow-apps workflow-automation workflow-engine

Affected surfaces

auth

Summary

AI summary

[Security] Require consent for chat identity links

Changes in this release

Security Medium

Require consent for chat identity links

Require consent for chat identity links

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: low

Feature Medium

Update email received trigger to support OAuth2 connections

Update email received trigger to support OAuth2 connections

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: high

Feature Medium

Add Slack pending releases summary

Add Slack pending releases summary

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: low

Feature Medium

Add setting to suppress frontend error notifications

Add setting to suppress frontend error notifications

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: low

Bugfix Medium

Fix automation branch edge routing

Fix automation branch edge routing

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: high

Bugfix Medium

Fix condition drawer bindable inputs

Fix condition drawer bindable inputs

Source: granite4.1:8b-q6_K@2026-05-20

Confidence: high

Bugfix Low

Issue fresh token on first authentication failure

Issue fresh token on first authentication failure

Source: granite4.1:30b@2026-05-20-audit

Confidence: low

Full changelog

What's Changed

  • Update automation builder node layout by @melohagan in https://github.com/Budibase/budibase/pull/18651
  • Chore/automation tests by @melohagan in https://github.com/Budibase/budibase/pull/18716
  • Chore/automation tests by @melohagan in https://github.com/Budibase/budibase/pull/18815
  • fix: fresh token on first fail by @Dakuan in https://github.com/Budibase/budibase/pull/18796
  • Add Slack pending releases summary by @melohagan in https://github.com/Budibase/budibase/pull/18811
  • Fix automation branch edge routing by @melohagan in https://github.com/Budibase/budibase/pull/18816
  • Update email recieved trigger to support oauth2 connections by @PClmnt in https://github.com/Budibase/budibase/pull/18789
  • [Security] Require consent for chat identity links by @PClmnt in https://github.com/Budibase/budibase/pull/18793
  • add setting to suppress frontend error notifications by @ConorWebb96 in https://github.com/Budibase/budibase/pull/18764
  • Fix condition drawer bindable inputs by @melohagan in https://github.com/Budibase/budibase/pull/18822

Full Changelog: https://github.com/Budibase/budibase/compare/3.38.5...3.39.0

Security Fixes

  • [Security] Require consent for chat identity links

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track budibase

Get notified when new releases ship.

Sign up free

About budibase

AI agents that run your operations. Model agnostic.

All releases →

Related context

Beta — feedback welcome: [email protected]