Skip to content

genkit

vgo/v1.8.0 Security

This release patches 2 CVEs for security teams tracking exposure across their dependency inventory.

Published 28d LLM Frameworks
2 patched CVEs
Read the diff → Tool health → What is this tool? →
This release patches 2 known CVEs CVE-2023-4863 EPSS 93% CVE-2025-31125 EPSS 83%
2 CVEs patched

Topics

agents ai embedders genkit llm multimodal
+1 more
vector-db

Summary

AI summary

Preserve schema for shared struct types when inferring JSON schemas.

Full changelog

What's Changed

  • feat(go/plugins/googlegenai): improve model config UX in dev UI by @apascal07 in https://github.com/genkit-ai/genkit/pull/5231
  • feat(go/ai): support middleware in dotprompt frontmatter by @apascal07 in https://github.com/genkit-ai/genkit/pull/5229
  • feat(go): trace GenerateActionOptions as input for generate calls by @MichaelDoyle in https://github.com/genkit-ai/genkit/pull/5232
  • fix(go): eagerly resolve genkit schema references in reflection API by @apascal07 in https://github.com/genkit-ai/genkit/pull/5221
  • fix(go): use *Part for GenerateActionResume.Respond and Restart by @apascal07 in https://github.com/genkit-ai/genkit/pull/5226
  • fix(prompt): prompt metadata for middleware and tools by @MichaelDoyle in https://github.com/genkit-ai/genkit/pull/5216
  • fix(go): preserve schema for shared struct types in InferJSONSchema by @apascal07 in https://github.com/genkit-ai/genkit/pull/5243

Full Changelog: https://github.com/genkit-ai/genkit/compare/go/v1.7.0...go/v1.8.0

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track genkit

Get notified when new releases ship.

Sign up free

About genkit

Open-source framework for building AI-powered apps in JavaScript, Go, and Python, built and used in production by Google

All releases →

Related context

Beta — feedback welcome: [email protected]