Skip to content

TradeTally

v2.5.2 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

Published 3mo Productivity & Wikis
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

api journal stocks trading

Affected surfaces

deps

Summary

AI summary

Fixed CSV import correctness for completed-trade exports with opening/closing columns, day‑first timestamps, fractional seconds, lot quantities, and net P&L values.

Full changelog

TradeTally v2.5.2

Released: April 27, 2026

TradeTally v2.5.2 is a patch release focused on CSV import correctness, preserving execution-level trade data during edits, and clearing current dependency vulnerability findings.

Fixes

  • Fixed generic CSV imports for completed-trade exports that include opening and closing columns, day-first timestamps, fractional seconds, lot-based quantities, and net P&L values.
  • Fixed Tradovate execution preservation when editing trades so execution-level data is retained instead of being collapsed or lost.
  • Updated vulnerable backend and frontend dependencies flagged by Snyk, including axios, uuid, hyperid, and postcss.

Upgrade Notes

  • This release is backward-compatible and does not introduce intended breaking changes.

Security Fixes

  • Updated vulnerable dependencies (axios, uuid, hyperid, postcss) per Snyk findings

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track TradeTally

Get notified when new releases ship.

Sign up free

About TradeTally

Advanced financial trade tracking and analytics

All releases →

Related context

Beta — feedback welcome: [email protected]