Skip to content

zwave-js-ui

v11.20.0 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

Published 1mo Home Automation
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

control-panel mqtt ui vue zwave zwave-js-ui
+1 more
zwavejs

Affected surfaces

auth

Summary

AI summary

Updates 🐛 Bug Fixes, ✨ Features, and 🔧 Chores across a mixed release.

Full changelog

11.20.0 (2026-06-17)

✨ Features

🐛 Bug Fixes

  • api: apply imported node metadata across wrapped and legacy nodes.json formats (#4636) (87c89da)
  • api: reduce default JSON request body size limit (#4663) (b965182)
  • api: require authentication for the snippet listing endpoint (#4661) (dc129d3)
  • config: enforce a strong session secret (#4664) (c570f60)
  • gateway: apply numeric postOperation scaling directly (#4662) (fb73508)
  • hass: add LZW45 to Inovelli RGBW Home Assistant discovery template (#4669) (3c2d62f)
  • ui: keep node index map consistent after node removal (#4667) (58ba24e), closes #4666 #4639

🔧 Chores

  • add concurrency settings to Docker release workflow to prevent failures during releases (82792a9)

Security Fixes

  • Enforce a strong session secret in config

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track zwave-js-ui

Get notified when new releases ship.

Sign up free

About zwave-js-ui

Full featured Z-Wave Control Panel UI and MQTT gateway. Built using Nodejs, and Vue/Vuetify

All releases →

Related context

Beta — feedback welcome: [email protected]