This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
+6 more
Affected surfaces
Summary
AI summaryFixes LDAP user lookup failures, graceful handling of empty OAuth whitelists and label-provider init errors.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Bugfix | Medium |
Abstain when OAuth whitelist is empty in ACLs Abstain when OAuth whitelist is empty in ACLs Source: llm_adapter@2026-07-17 Confidence: high |
— |
| Bugfix | Medium |
Don't fail app on label provider initialization failure Don't fail app on label provider initialization failure Source: llm_adapter@2026-07-17 Confidence: high |
— |
| Bugfix | Medium |
Fix LDAP user lookup in basic-auth Fix LDAP user lookup in basic-auth Source: llm_adapter@2026-07-17 Confidence: high |
— |
Full changelog
Tinyauth v5.1.1
Small patch fix release, contains fixes for #1011 and #1009.
Fixes
- Abstain when OAuth whitelist is empty in ACLs @wwhsaber
- Don't fail app on label provider initialization failure
- Fix LDAP user lookup in basic-auth @tsushanth
New Contributors
- @wwhsaber made their first contribution in https://github.com/tinyauthapp/tinyauth/pull/1010
- @tsushanth made their first contribution in https://github.com/tinyauthapp/tinyauth/pull/1015
Full Changelog: https://github.com/tinyauthapp/tinyauth/compare/v5.1.0...v5.1.1
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About tinyauth
The tiniest authentication and authorization server you have ever seen.
Related context
Related tools
Beta — feedback welcome: [email protected]