This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
Summary
AI summaryFixed media proxy returning 404 for valid remote media mislabeled as application/octet-stream or binary/octet-stream by sniffing magic bytes.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Bugfix | Medium |
Fixes media proxy returning 404 for valid remote media with octet-stream MIME types. Fixes media proxy returning 404 for valid remote media with octet-stream MIME types. Source: llm_adapter@2026-05-25 Confidence: low |
— |
| Bugfix | Low |
Media proxy now sniffs magic bytes to determine correct MIME type for octet-stream payloads. Media proxy now sniffs magic bytes to determine correct MIME type for octet-stream payloads. Source: granite4.1:30b@2026-05-25-audit Confidence: low |
— |
Full changelog
Released on May 25, 2026.
- Fixed a bug where the media proxy returned
404 Not Foundfor remote media whose upstream server labeled the payload asapplication/octet-streamorbinary/octet-streameven though the bytes were valid image, video, or audio data. The proxy now sniffs magic bytes to recover the real MIME type in these cases. [#498]
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Beta — feedback welcome: [email protected]