This release fixes issues for SREs watching stability and regressions.
Published 3mo
File Storage & Sync
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
aes-256-gcm
docker
encryption
end-to-end-encryption
file-sharing
privacy
+5 more
react
s3-storage
self-hosted
typescript
zero-knowledge
Affected surfaces
breaking_upgrade
Summary
AI summaryFixed HTTP/2 chunked upload stalls and rate‑limiter path matching causing false 429 errors.
Full changelog
Critical Bug Fixes for Chunked Uploads in HTTP/2 Proxied Environments
- server: Fixed rate limiter path matching - the regex anchor (
^) prevented chunk requests from being recognized through the/apisub-router, causing 429 errors despite the exemption - server: Fixed HTTP/2 flow-control deadlock that caused uploads to stall at 0-1% in Chrome, Firefox, Brave, and Edge through reverse proxies - the server now reads each chunk body immediately instead of deferring reads in a promise chain, preventing proxy flow-control backpressure from blocking the connection
🐳 Docker
- Image:
skyfay/skysend:v2.2.3 - Also tagged as:
latest,v2 - Platforms: linux/amd64, linux/arm64
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]