This release includes 1 breaking change for platform teams planning a safe upgrade.
✓ No known CVEs patched in this version
Topics
+7 more
Affected surfaces
ReleasePort's take
Light signalThe v4.0.6 release adds an optional AWS region parameter to the S3 connector and introduces several bug‑fixes across integrations.
Why it matters: Developers configuring the S3 connector can now specify a region; bug‑fixes prevent crashes and improve handling of empty LLM responses, anonymous Slack bots, and unknown sandbox backends.
Summary
AI summaryUpdates craft, connectors, and fix across a mixed release.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Low |
Removes skills page from main admin panel. Removes skills page from main admin panel. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Adds optional AWS region parameter to S3 connector. Adds optional AWS region parameter to S3 connector. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Accepts empty choices packet from LLM without error. Accepts empty choices packet from LLM without error. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Tolerates unknown SANDBOX_BACKEND values without crashing. Tolerates unknown SANDBOX_BACKEND values without crashing. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Skips doc‑set and persona access checks for anonymous Slack bot users. Skips doc‑set and persona access checks for anonymous Slack bot users. Source: llm_adapter@2026-06-12 Confidence: high |
— |
Full changelog
Warning
Do not upgrade to this release if you want to preserve your existing indexed documents but have not yet run the document index migration, which can be done from any version v3.x. See additional documentation here.
See the assets to download this version and install.
What's Changed
- fix(connectors): add optional AWS region to S3 connector for non-default partitions (#11676) to release v4.0 by @onyx-cherry-pick[bot] in https://github.com/onyx-dot-app/onyx/pull/11682
- feat(craft): remove skills page from main admin panel (v4.0 cherry-pick) by @rohoswagger in https://github.com/onyx-dot-app/onyx/pull/11747
- fix: accept empty choices packet from LLM (#11752) to release v4.0 by @onyx-cherry-pick[bot] in https://github.com/onyx-dot-app/onyx/pull/11759
- fix(craft): tolerate unknown SANDBOX_BACKEND values instead of crashing (#11746) to release v4.0 by @rohoswagger in https://github.com/onyx-dot-app/onyx/pull/11750
- fix(slack): skip doc-set and persona access checks for anonymous Slack bot users (#11817) to release v4.0 by @justin-tahara in https://github.com/onyx-dot-app/onyx/pull/11821
Full Changelog: https://github.com/onyx-dot-app/onyx/compare/v4.0.5...v4.0.6
Breaking Changes
- Removed the skills page from the main admin panel (craft).
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Onyx Community Edition
Chat UI that works with any LLM. It comes loaded with advanced features like agents, web search, RAG, MCP, deep research, Connectors to 40+ knowledge sources, and more.
Related context
Related tools
Earlier breaking changes
- v4.3.5 Requires running the OpenSearch document index migration before upgrading.
- v4.0.2 Requires running the OpenSearch document index migration before upgrading to v4.0.
- v3.3.7 Environment variable DANSWER_RUNNING_IN_DOCKER renamed to ONYX_RUNNING_IN_DOCKER.
- v3.0.13 OpenSearch enabled as default search backend replacing Vespa
- v3.0.13 License enforcement enabled by default in EE mode
Beta — feedback welcome: [email protected]