This release includes 1 security fix for security teams reviewing exposed deployments.
Topics
+1 more
ReleasePort's take
Moderate signalRelease v2.3.9 hardens Modrinth imports, Telepath uploads, and archive extraction while improving backup migration.
Why it matters: Security hardening of import/export pipelines (severity 90) boosts resilience; backup migration refactor (severity 40) enhances reliability.
Summary
AI summarySecurity hardening of Modrinth imports, Telepath uploads, archive extraction and backup migration improvements.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Security | Critical |
Hardened Modrinth imports, Telepath uploads, and archive extraction Hardened Modrinth imports, Telepath uploads, and archive extraction Source: llm_adapter@2026-07-14 Confidence: high |
— |
| Feature | Medium |
Improved modpack detection, template loading, and live ACL handling Improved modpack detection, template loading, and live ACL handling Source: llm_adapter@2026-07-14 Confidence: high |
— |
| Dependency | Low |
Upgraded amscript to v1.6.1 with new updates to several scripts Upgraded amscript to v1.6.1 with new updates to several scripts Source: llm_adapter@2026-07-14 Confidence: high |
— |
| Bugfix | Medium |
Updated dependencies and fixed issues involving archives, configuration parsing, and server management Updated dependencies and fixed issues involving archives, configuration parsing, and server management Source: llm_adapter@2026-07-14 Confidence: high |
— |
| Refactor | Medium |
Reworked backup migration and renaming for speed, reliability, and configuration compatibility Reworked backup migration and renaming for speed, reliability, and configuration compatibility Source: llm_adapter@2026-07-14 Confidence: high |
— |
Full changelog
Stability and security update for v2.3.8
Welcome to auto-mcs v2.3.9! This release focuses on security hardening, compatibility improvements, and fixes across server management. Some of the highlights include:
- Hardened Modrinth imports, Telepath uploads, and archive extraction
- Reworked backup migration and renaming for speed, reliability, and configuration compatibility
- Improved modpack detection, template loading, and live ACL handling
- Upgraded amscript to v1.6.1 with new updates to several scripts
- Updated dependencies and fixed a range of issues involving archives, configuration parsing, and server management
I am grateful to the community who helped improve this project through testing, feedback, and contributions. Hope you enjoy this update!
MD5 Checksums
Windows (exe):
43af8217a27c21223b027f82f00f40d9
Linux (binary):
25641a981b444b93d0a302eb14283269
macOS (dmg):
9a8fa4e326b673ac2bff462343f6c9a8
Linux ARM64 (binary):
2e197b0676eb1e3910476aa2a34644ca
Security Fixes
- Hardened Modrinth imports, Telepath uploads and archive extraction against extraction vulnerabilities
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]