This release includes 1 security fix for security teams reviewing exposed deployments.
Topics
+12 more
Affected surfaces
Summary
AI summaryUpdates fix, deps, and feat across a mixed release.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Security | High |
Perform security audit and harden the codebase. Perform security audit and harden the codebase. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Feature | Medium |
Build libheif 1.21.2 from source for iPhone HEIC support. Build libheif 1.21.2 from source for iPhone HEIC support. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Feature | Low |
Provide pre-built release archives and fix AI installation issues. Provide pre-built release archives and fix AI installation issues. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Feature | Low |
Introduce Docker _FILE secret convention for sensitive environment variables. Introduce Docker _FILE secret convention for sensitive environment variables. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Feature | Low |
Achieve WCAG 2.2 AA accessibility compliance. Achieve WCAG 2.2 AA accessibility compliance. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Dependency | Low |
Bump actions group with 5 updates. Bump actions group with 5 updates. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Dependency | Low |
Upgrade node from e3ca095 to 1031993 in Docker image. Upgrade node from e3ca095 to 1031993 in Docker image. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Dependency | Low |
Update production‑deps group with 15 updates. Update production‑deps group with 15 updates. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Dependency | Low |
Upgrade nvidia/cuda from 12.6.3 to 12.9.2 in Docker. Upgrade nvidia/cuda from 12.6.3 to 12.9.2 in Docker. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Dependency | Low |
Bump dev‑deps group and fix vitest 3.2.6 mock resolution. Bump dev‑deps group and fix vitest 3.2.6 mock resolution. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Bugfix | Medium |
Correct Italian abbreviation IA in i18n. Correct Italian abbreviation IA in i18n. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Bugfix | Medium |
Correct Docker image name in compose files. Correct Docker image name in compose files. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Bugfix | Medium |
Enable tiling in Real‑ESRGAN to prevent CUDA OOM on 8 GB GPUs. Enable tiling in Real‑ESRGAN to prevent CUDA OOM on 8 GB GPUs. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Bugfix | Medium |
Add retry logic to HuggingFace model downloads. Add retry logic to HuggingFace model downloads. Source: llm_adapter@2026-06-08 Confidence: high |
— |
| Bugfix | Medium |
Resolve file library Open File bug, improve upload reliability, and adjust SSE proxy timeouts. Resolve file library Open File bug, improve upload reliability, and adjust SSE proxy timeouts. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Bugfix | Medium |
Resolve 7 bugs identified in QA sweep. Resolve 7 bugs identified in QA sweep. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
| Bugfix | Low |
Recover SSE connections when mobile tabs become visible again. Recover SSE connections when mobile tabs become visible again. Source: granite4.1:30b@2026-06-08-audit Confidence: low |
— |
Full changelog
What's Changed
- fix(i18n): use correct Italian abbreviation IA by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/196
- chore(deps): bump the actions group with 5 updates by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/186
- chore(deps): bump node from
e3ca095to1031993in /docker by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/184 - chore(deps): bump the production-deps group across 1 directory with 15 updates by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/195
- chore(deps): bump nvidia/cuda from 12.6.3-cudnn-runtime-ubuntu24.04 to 12.9.2-cudnn-runtime-ubuntu24.04 in /docker by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/185
- chore(deps-dev): bump dev-deps group + fix vitest 3.2.6 mock resolution by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/197
- fix: correct Docker image name in compose files by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/198
- fix: build libheif 1.21.2 from source for iPhone HEIC support by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/199
- fix: enable tiling in Real-ESRGAN to prevent CUDA OOM on 8GB GPUs by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/200
- fix: add retry logic to HuggingFace model downloads by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/201
- feat: pre-built release archives + AI install fixes by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/202
- fix: resolve file library Open File bug, upload reliability, and SSE proxy timeouts by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/203
- fix: recover SSE connections on mobile tab visibility change by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/204
- feat: add Docker _FILE secret convention for sensitive env vars by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/205
- fix(security): security audit and hardening by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/207
- fix: resolve 7 bugs from QA sweep by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/208
- feat(a11y): WCAG 2.2 AA accessibility compliance by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/209
Full Changelog: https://github.com/snapotter-hq/SnapOtter/compare/v1.17.1...v1.17.2
Security Fixes
- Security audit and hardening in fix(security)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]