Skip to content

SnapOtter

v1.17.2 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

Published 1mo Media Servers
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

ai airgap audio-processing compliance docker file-conversion
+12 more
file-processing self-hosted image-editor image-processing media-processing on-premise pdf privacy rest typescript video video-processing

Affected surfaces

auth

Summary

AI summary

Updates fix, deps, and feat across a mixed release.

Changes in this release

Security High

Perform security audit and harden the codebase.

Perform security audit and harden the codebase.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Feature Medium

Build libheif 1.21.2 from source for iPhone HEIC support.

Build libheif 1.21.2 from source for iPhone HEIC support.

Source: llm_adapter@2026-06-08

Confidence: high

Feature Low

Provide pre-built release archives and fix AI installation issues.

Provide pre-built release archives and fix AI installation issues.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Feature Low

Introduce Docker _FILE secret convention for sensitive environment variables.

Introduce Docker _FILE secret convention for sensitive environment variables.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Feature Low

Achieve WCAG 2.2 AA accessibility compliance.

Achieve WCAG 2.2 AA accessibility compliance.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Dependency Low

Bump actions group with 5 updates.

Bump actions group with 5 updates.

Source: llm_adapter@2026-06-08

Confidence: high

Dependency Low

Upgrade node from e3ca095 to 1031993 in Docker image.

Upgrade node from e3ca095 to 1031993 in Docker image.

Source: llm_adapter@2026-06-08

Confidence: high

Dependency Low

Update production‑deps group with 15 updates.

Update production‑deps group with 15 updates.

Source: llm_adapter@2026-06-08

Confidence: high

Dependency Low

Upgrade nvidia/cuda from 12.6.3 to 12.9.2 in Docker.

Upgrade nvidia/cuda from 12.6.3 to 12.9.2 in Docker.

Source: llm_adapter@2026-06-08

Confidence: high

Dependency Low

Bump dev‑deps group and fix vitest 3.2.6 mock resolution.

Bump dev‑deps group and fix vitest 3.2.6 mock resolution.

Source: llm_adapter@2026-06-08

Confidence: high

Bugfix Medium

Correct Italian abbreviation IA in i18n.

Correct Italian abbreviation IA in i18n.

Source: llm_adapter@2026-06-08

Confidence: high

Bugfix Medium

Correct Docker image name in compose files.

Correct Docker image name in compose files.

Source: llm_adapter@2026-06-08

Confidence: high

Bugfix Medium

Enable tiling in Real‑ESRGAN to prevent CUDA OOM on 8 GB GPUs.

Enable tiling in Real‑ESRGAN to prevent CUDA OOM on 8 GB GPUs.

Source: llm_adapter@2026-06-08

Confidence: high

Bugfix Medium

Add retry logic to HuggingFace model downloads.

Add retry logic to HuggingFace model downloads.

Source: llm_adapter@2026-06-08

Confidence: high

Bugfix Medium

Resolve file library Open File bug, improve upload reliability, and adjust SSE proxy timeouts.

Resolve file library Open File bug, improve upload reliability, and adjust SSE proxy timeouts.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Bugfix Medium

Resolve 7 bugs identified in QA sweep.

Resolve 7 bugs identified in QA sweep.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Bugfix Low

Recover SSE connections when mobile tabs become visible again.

Recover SSE connections when mobile tabs become visible again.

Source: granite4.1:30b@2026-06-08-audit

Confidence: low

Full changelog

What's Changed

  • fix(i18n): use correct Italian abbreviation IA by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/196
  • chore(deps): bump the actions group with 5 updates by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/186
  • chore(deps): bump node from e3ca095 to 1031993 in /docker by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/184
  • chore(deps): bump the production-deps group across 1 directory with 15 updates by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/195
  • chore(deps): bump nvidia/cuda from 12.6.3-cudnn-runtime-ubuntu24.04 to 12.9.2-cudnn-runtime-ubuntu24.04 in /docker by @dependabot[bot] in https://github.com/snapotter-hq/SnapOtter/pull/185
  • chore(deps-dev): bump dev-deps group + fix vitest 3.2.6 mock resolution by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/197
  • fix: correct Docker image name in compose files by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/198
  • fix: build libheif 1.21.2 from source for iPhone HEIC support by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/199
  • fix: enable tiling in Real-ESRGAN to prevent CUDA OOM on 8GB GPUs by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/200
  • fix: add retry logic to HuggingFace model downloads by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/201
  • feat: pre-built release archives + AI install fixes by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/202
  • fix: resolve file library Open File bug, upload reliability, and SSE proxy timeouts by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/203
  • fix: recover SSE connections on mobile tab visibility change by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/204
  • feat: add Docker _FILE secret convention for sensitive env vars by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/205
  • fix(security): security audit and hardening by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/207
  • fix: resolve 7 bugs from QA sweep by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/208
  • feat(a11y): WCAG 2.2 AA accessibility compliance by @snapotter-hq in https://github.com/snapotter-hq/SnapOtter/pull/209

Full Changelog: https://github.com/snapotter-hq/SnapOtter/compare/v1.17.1...v1.17.2

Security Fixes

  • Security audit and hardening in fix(security)

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track SnapOtter

Get notified when new releases ship.

Sign up free

About SnapOtter

Image manipulator and converter

All releases →

Beta — feedback welcome: [email protected]