Skip to content
release
BETA
Releases
Tools
Vendors
Trending
$refs.securityHub.focus())"
:aria-expanded="open"
aria-haspopup="menu"
class="inline-flex items-center gap-1 px-3 py-1.5 rounded text-[13px] font-medium transition-colors text-[var(--text-secondary)] dark:text-[var(--text-muted)] hover:text-[var(--text-primary)] dark:hover:text-[var(--text-primary)] hover:bg-[var(--surface-hover)] dark:hover:bg-[var(--surface-elevated)]"
>
Security
Tools
/
immich
IM
immich
Media Servers
High performance self-hosted photo and video management solution.
TypeScript
·
Latest v2.7.5 · 1mo ago
Security brief →
Features
Upload, view, and manage photos and videos
Auto‑backup with duplicate prevention and selective album backup
Facial recognition, metadata search, and map view
v2.7.5
Bug fix
·
1mo
Minor fixes and improvements.
v2.7.4
Bug fix
·
1mo
Addresses mobile image rendering issues, including iOS image loading pipeline refactoring and Flutter cache eviction fixes.
v2.7.3
Bug fix
·
1mo
Bug fixes for large database import failures, image loading cancellation, people search with short queries, empty search result caching, backup page async handling, and SSR Open Graph tag generation.
v2.7.2
Bug fix
·
1mo
Fixed issues with the default helmet.json file, ML containers on older CPUs, and importing external libraries. Resolved CSP quotes, downgraded numpy in ML, and adjusted library import batch size on the server.
v2.7.0
Mixed
·
1mo
⚠ Upgrade required
To enable the default CSP policy, set the environment variable IMMICH_HELMET_FILE=true. Custom CSP can be configured by providing a path to a valid helmet configuration file via IMMICH_HELMET_FILE.
Security fixes
Fixed XSS vulnerability in Panorama Photo Viewer via HTML escaping
Notable features
Content Security Policy (CSP) support via IMMICH_HELMET_FILE Server-side deduplication logic with automatic metadata synchronization New keyboard shortcuts for the web editor (rotate, save, close)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Releases per month
Releases per month, last 12 months.
Cadence
0.7 / wk
Last release
51d
Tracked
14
Security score
6.5/10
OpenSSF
—
Open CVEs
0
SECURITY.md
Active maintainer
Community
GitHub stars
102,564
Forks
5,785
Contributors 90d
49
Open issues
669
Open PRs
200
Stars/wk velocity
0.0
HN peak
757
About
Languages
TypeScript
·
Dart
·
Svelte
Downloads/week
1,865
↑27%
View on GitHub
View on npm
Homepage
Live demo
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
About
Languages
TypeScript
·
Dart
·
Svelte
Downloads/week
1,865
↑27%
View on GitHub
View on npm
Homepage
Live demo
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
© 2026 releaseport. All rights reserved.
Feed
Tools
Feeds
Security
Brief
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for " "
⌘K to open
↑↓ navigate
⏎ open