Skip to content
release
BETA
Releases
Tools
Vendors
Trending
$refs.securityHub.focus())"
:aria-expanded="open"
aria-haspopup="menu"
class="inline-flex items-center gap-1 px-3 py-1.5 rounded text-[13px] font-medium transition-colors text-[var(--text-secondary)] dark:text-[var(--text-muted)] hover:text-[var(--text-primary)] dark:hover:text-[var(--text-primary)] hover:bg-[var(--surface-hover)] dark:hover:bg-[var(--surface-elevated)]"
>
Security
Homelab & Self-Hosted
Self-hosted apps, homelab tools, and home automation platforms.
Subscribe
⚠ Upgrade required
Read the Upgrade Path docs (https://docs.multi-scrobbler.app/updating/upgrade-path/0140/) before upgrading from versions earlier than 0.14.0. Review the 0.14.0 Release Notes (https://github.com/FoxxMD/multi-scrobbler/releases/tag/0.14.0) for detailed migration steps.
Breaking changes
Upgrade to version 0.14.0 requires reading the Upgrade Path documentation due to breaking changes.
No immediate action
Oikos
v0.60.0
Breaking risk
·
14h
Apple Reminders sync
Config change
Auth
Breaking upgrade
Breaking DB & API changes
Review required
dagu
v2.7.8
Breaking risk
·
18h
RBAC
DAG write permission required
Review required
signoz
v0.127.0
Breaking risk
·
21h
Auth
UI improvements, Noz rename, integration defaults
No immediate action
Forge
v0.7.4
Breaking risk
·
23h
Tool-error correction + max‑errors flag
No immediate action
Background-task reliability fix
Config change
Breaking upgrade
Auth
Distributed handling, SYNC_BEHAVIOR, plugins, UI & ICMP fixes
No immediate action
Profile settings + OpenAPI docs
No immediate action
Windows NUL fix + report alignment
Config change
Breaking upgrade
NEXT_PUBLIC_BASE_URL rename
No immediate action
Routine maintenance and dependency updates.
Upgrade now
Auth
Dependencies
Security hardening + disk threshold + video fixes
Config change
Koito
v0.3.2
Breaking risk
·
2d
Breaking upgrade
Cache-key typo + Deezer query
⚠ Upgrade required
Add IDs to Sources/Clients as required by the new configuration schema. Review cache settings before upgrading; migration guide provided in docs. Automatic database backup and migration will run on upgrade; ensure sufficient disk space for the backup.
Breaking changes
Cache configuration simplified; existing cache settings must be reviewed and updated per the upgrade guide.
Notable features
Database structures for historical plays implemented (SQLite/Drizzle). TealFM now playing support via `fm.teal.alpha.actor.status`. LastFM bypasses scrobble rejection for tracks under 30 seconds.
No immediate action
Insights page removal
No immediate action
Runtime degradation recovery
Config change
Auth
"Remember Me" removal
⚠ Upgrade required
After upgrading to v0.8.1, re‑apply all Agent CRs so existing Agents pick up explicit values for the new requestTimeoutSeconds and requestTurnTimeoutSeconds fields.
Breaking changes
Agent.spec.requestTimeoutSeconds now represents a loop-wide wall-clock budget (default 3600) instead of per-request HTTP timeout; the former behavior is moved to Agent.spec.requestTurnTimeoutSeconds (default 120). Re‑apply Agent CRs after upgrade.
Notable features
**inferenceservice:** adds typed spec.ropeScaling for RoPE/YaRN context extension
Forge
v0.7.3
Breaking risk
·
2d
⚠ Upgrade required
Update any scripts or configs using `--mode` to use `--backend-capability native` or remove the flag for default behavior Ensure backend capability selection matches backend support (prompt capability now rejected loudly for ollama, vllm, anthropic)
Breaking changes
Flag `--mode {native,prompt}` renamed to `--backend-capability {native,prompt}`; no deprecation alias – migration required (drop flag for native default or explicitly set `--backend-capability`) Runtime `auto` function‑calling mode removed from LlamafileClient
Notable features
Added OpenAICompatClient for arbitrary OpenAI‑compatible endpoints Added configurable `--backend-timeout` proxy option (default 300s) Native function calling now transparent passthrough, forwarding client tools/messages verbatim
Upgrade now
Breaking upgrade
Portainer deployment fix + CI port update
↳
v0.1.4
(3d)
—
asurascans fix + 18+ badges + MU explicit detection
Config change
Auth
Missing user ID fix
Upgrade now
RCE / SSRF
RCE prevention + icon change + UI exec conditions
Config change
Auth
Mobile UI enhancements + config requirements
Review required
Auth
Dependencies
Refresh token deletion
⚠ Upgrade required
Upgrade requires manual migration steps; see the changelog upgrade notes before deploying. Minimum Bun runtime version unspecified but required for workspace support.
Breaking changes
Removed single SvelteKit‑server deployment; replaced with separate Hono API (`apps/api`) and SvelteKit SPA (`apps/web`). Datastore migrated from SQLite to PostgreSQL.
No immediate action
Notification emails + Bulgarian support
No immediate action
Trending lanes + explicit badges
Config change
Breaking upgrade
Docker compose update
Subscribe to this feed
Get Homelab & Self-Hosted releases in your personal feed.
Sign in to subscribe
Get this as a security brief.
Track Homelab & Self-Hosted releases straight to your inbox.
© 2026 releaseport. All rights reserved.
Feed
Tools
Feeds
Security
Brief
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for " "
⌘K to open
↑↓ navigate
⏎ open