This release patches 2 CVEs for security teams tracking exposure across their dependency inventory.
Published 28d
LLM Frameworks
2 patched CVEs
This release patches 2 known CVEs
CVE-2023-4863
EPSS 93%
CVE-2025-31125
EPSS 83%
2
CVEs patched
Topics
agents
ai
embedders
genkit
llm
multimodal
+1 more
vector-db
Summary
AI summaryPreserve schema for shared struct types when inferring JSON schemas.
Full changelog
What's Changed
- feat(go/plugins/googlegenai): improve model config UX in dev UI by @apascal07 in https://github.com/genkit-ai/genkit/pull/5231
- feat(go/ai): support middleware in dotprompt frontmatter by @apascal07 in https://github.com/genkit-ai/genkit/pull/5229
- feat(go): trace GenerateActionOptions as input for generate calls by @MichaelDoyle in https://github.com/genkit-ai/genkit/pull/5232
- fix(go): eagerly resolve genkit schema references in reflection API by @apascal07 in https://github.com/genkit-ai/genkit/pull/5221
- fix(go): use *Part for GenerateActionResume.Respond and Restart by @apascal07 in https://github.com/genkit-ai/genkit/pull/5226
- fix(prompt): prompt metadata for middleware and tools by @MichaelDoyle in https://github.com/genkit-ai/genkit/pull/5216
- fix(go): preserve schema for shared struct types in InferJSONSchema by @apascal07 in https://github.com/genkit-ai/genkit/pull/5243
Full Changelog: https://github.com/genkit-ai/genkit/compare/go/v1.7.0...go/v1.8.0
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About genkit
Open-source framework for building AI-powered apps in JavaScript, Go, and Python, built and used in production by Google
Related context
Related tools
Beta — feedback welcome: [email protected]