Skip to content

Release history

paperless-ngx releases

A community-supported supercharged document management system: scan, index and archive all your documents

All releases

16 shown

Review required
v3.0.3 Bug fix
Auth

Gotenberg + email + search fixes

Upgrade now
v3.0.2 Bug fix
Breaking upgrade

Fix broken migration

Upgrade now
v3.0.1 Breaking risk
Breaking upgrade

Migration issue

Review required
v3.0.0 Breaking risk
Auth RBAC Breaking upgrade

Breaking changes — review before upgrading.

v2.20.15 Security relevant
Security fixes
  • GHSA-8c6x-pfjq-9gr7
Full changelog

paperless-ngx 2.20.15

[!NOTE]
This release addresses a security issue (GHSA-8c6x-pfjq-9gr7) and is recommended for all users. Our sincere thank you to the community members who reported this.

Bug Fixes

  • Fix: use only allauth login/logout endpoints @shamoon (#12639)
  • Fix: correctly scope mail account enumeration @shamoon (#12636)
  • Fix: prevent intermediate change event when CustomFieldQueryAtom operator changes type @ggouzi (#12597)
  • Fix: reject invalid requests to API notes endpoint @ggouzi (#12582)

All App Changes

4 changes
  • Fix: use only allauth login/logout endpoints @shamoon (#12639)
  • Fix: correctly scope mail account enumeration @shamoon (#12636)
  • Fix: prevent intermediate change event when CustomFieldQueryAtom operator changes type (#12597)
  • Fix: reject invalid requests to API notes endpoint (#12582)
v2.20.13 Bug fix

Minor fixes and improvements.

Full changelog

paperless-ngx 2.20.13

Bug Fixes

  • Fix: suggest corrections only if visible results
  • Fix: require view permission for more-like search
  • Fix: validate document link targets
  • Fix: enforce permissions when attaching accounts to mail rules
v2.20.11 Security relevant
Security fixes
  • GHSA-59xh-5vwx-4c4q
Notable features
  • Cascade dropdown selections when parent toggled
  • Improved tag display on small cards
  • Fixed dark mode dropdown colors
v2.20.10 Bug fix

Fixed string coercion in filepath templates, tag ordering, and database field path limits. Addresses bugs from v2.20.7 that affected storage path templates; users can run document_renamer command to correct paths.

v2.20.7 Breaking risk
Breaking changes
  • Filename template rendering now uses restricted safe document context; templates relying on undocumented properties will fall back to default formatting
Security fixes
  • GHSA-x395-6h48-wr8v
Notable features
  • Performance improvements for object retrieval in large installs
v2.20.6 Security relevant
Security fixes
  • GHSA-jqwv-hx7q-fxh3
  • GHSA-w47q-3m69-84v8
Notable features
  • Performance improvement for treenode inefficiencies
v2.20.5 Bug fix

Fixed UI rendering for long tag names and explicit ordering of workflow actions to prevent sorting issues.

Beta — feedback welcome: [email protected]