This release includes 1 breaking change for platform teams planning a safe upgrade.
✓ No known CVEs patched in this version
Topics
+11 more
Affected surfaces
Summary
AI summaryUpdates v3.24.0, https://github.com/error311/FileRise/compare/v3.23.1...v3.24.0, and zip across a mixed release.
Full changelog
Changes 07/26/2026 (v3.24.0)
release(v3.24.0): require authentication for portal details
Fixed
- The FileRise Pro portal-detail endpoint now requires an authenticated session before returning internal folder, client-contact, form, or upload-policy metadata.
- The deliberately public portal metadata endpoint remains available for anonymous portal-login branding and continues returning only its curated public fields.
- Existing administrators and dedicated non-admin portal users retain access after signing in.
Upgrade notes
- No configuration, portal, account, Docker volume, or stored-data migration is required.
- Integrations that directly requested
/api/pro/portals/get.phpwithout an authenticated FileRise session must use/api/pro/portals/publicMeta.phpfor public branding fields or authenticate before requesting full portal details.
v3.24.0
Full Changelog
SHA-256 (zip)
ab0b88b47324c910000cc3c301bb318c139c073f1d9d3396236356e158997886 FileRise-v3.24.0.zip
Breaking Changes
- The FileRise Pro portal-detail endpoint (/api/pro/portals/get.php) now requires an authenticated session to return internal metadata.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About FileRise
FileRise – lightweight, self-hosted file manager & storage hub with granular ACLs, resumable uploads, encrypted folders, WebDAV & SSO. Fully Docker / Unraid compatible.
Related context
Related tools
Beta — feedback welcome: [email protected]