Add built-in Slack App integration to the Buildkite Agent Helm chart
Monthly archive for September 2026: product-level counts, tags, and every published update from this month.
Add built-in Slack App integration to the Buildkite Agent Helm chart
pn, pnpx, and pnx now use the pnpm installed alongside them via the new @pnpm/bins.cmd shim, fixing PATH lookup and unintended version usage.
Released version 26.8.9.10 LTS
Release v26.7.13.12 stable
Release note not yet published.
Version 26.8.8.8 LTS released.
Release v26.7.12.6 stable.
Fix various SSR and cleanup issues: cancel deferred event listeners, preserve global CSS, serialize input defaults, and correct setContext after async await.
pnpm now tolerates unknown task settings in workspace.yaml, emitting a warning instead of aborting
Introduce per‑shard VTTablet sizing for Vitess keyspaces via the Shards tab UI.
Added analytics tracking for paywall‑to‑billing funnel, PKI sync filtering, recursive secret syncs, light‑mode UI, unique‑value validation, and limited secret scanning to one project per organization.
Added support for creating external Vitess keyspaces by attaching existing MySQL databases to a production branch
Add ability to manage Neki extensions by name using Terraform and the pscale CLI.
Added panic handlers to matching handler APIs.
Adds a timeline view to track review changes over time
Added object shorthand handling for quoted properties in ignoreConstructors and new rule enhancements (unsafe labeled continue, global cap built‑ins).
Add REST API support for managing the Restrict code coverage repository ruleset
Introduces model selection options for Copilot, allowing users to choose between different AI models.
Deprecate specific GitHub Copilot models across all experiences on Oct 19 2026.
Fixed bug where parent data was not carried in queries into nested relationship fields.
Adds credential testing during test configuration, authenticating like a real user and surfacing all reachable domains as in‑scope URL suggestions.
Fixed net.fetch()/net.request() buffering large streamed request bodies that caused main process delays.
Backported upstream fixes for Chromium, Dawn, PDFium, Skia, and V8.
Backported upstream fixes for Chromium, Dawn, PDFium, Skia, and V8.
Added ARM64 CPU architecture support for Amazon ECS Express Mode services.
Added first‑class Python support: per‑project interpreter selection, store‑based environments, editable installs, multi‑platform pylock.toml and dependency resolution.
Adds support for EKS labels as service input sources, letting teams scope discovered resources using existing Kubernetes labeling conventions.
Added “stage‑only” read/write permission for npm granular access tokens.
automaticDiscounts query and its types are removed in API version 2027-01, causing validation errors if used
Adds configurable Availability Zone affinity for responder gateways, letting partners choose routing by requester AZ or any AZ the gateway spans.
Kimi K3, a 2.8‑trillion‑parameter open‑weight model with native vision and a 1‑million‑token context window, is now generally available on Amazon Bedrock.
Increases SNS message payload limit from 256 KiB to 1 MiB (4× larger).
Critical security fixes: password changes now revoke sessions, password reset clears lockouts, API keys are no longer readable, and tighter controls on external file fetches and upload adapters.
Release v26.8.7.19 LTS
Introduces AgentCore Runtime V2 with elastic memory management that reclaims unused memory, so you pay only for actual usage
Stable release version 26.7.11.16.
Add runtime config to enable replica movement and fix replica snapshot handling for dynamic indexes.
Added UI customization (app title color style) and new access controls: request app access and workspace PAT access for workflows
Introduces selectable deployment channels for the Snyk CLI, allowing users to choose stability levels.
Fixed data encryption key handling to prevent raw instance key storage
Fixed data encryption key handling to correctly use the instance key.
Cloud Load Balancing backend mTLS with managed workload identity is now GA for all Application Load Balancer types, automating certificate management and rotation.
Adds a new "tunnel" VPC endpoint type for PrivateLink, enabling private, secure access to network segments in another VPC or account.
Added server‑side OpenTelemetry tracing for Buildkite PR metadata and job retry details, enabling analysis of manual vs automatic retries.
Breaking changes: module import path moved to github.com/milvus-io/milvus/client/v3, protobuf types upgraded to v3 (incompatible with v2), ExportSnapshot now returns a job ID, and client telemetry is enabled by default.
Elastic CI Stack v7 introduces Buildkite Agent v4 for Linux and Windows, removing deprecated v3 features and making supported behavior default.
Fixed a potential use‑after‑free when a USB device selection handler destroys the requesting webContents.
Fixed potential use‑after‑free when a USB device handler destroys its requesting webContents.
Backported upstream fixes for ANGLE, Chromium, Skia, and V8.
Updated Docker build workflow (manual action and bake.hcl) and added Nexus callback header inspection toggle.
Neon backend is now generally available, offering a full serverless Postgres backend with branching support
Introduces Actions Modules in General Availability, enabling reusable code across multiple Auth0 Actions
Prevent Liquid objects from interrupting paragraph flow
Adds feature engagement metrics to the Copilot impact dashboard.
Adds agentic activity metrics for skills, custom agents, MCP servers, slash commands, and plugins to the usage metrics API
UI extensions using API version 2025-10+ are limited to 64 KB compressed bundles (128 KB for full‑page customer account) and must upgrade to API version 2026-01+ by Oct 1 2026.
Adds support for preserving client source IP via Proxy Protocol v2 when an NLB fronts a Transfer Family SFTP server.
HealthOmics now supports IAM session policies, allowing per‑run permission scoping without creating separate IAM roles.
Introduced CancelJobs, TerminateJobs, and TerminateServiceJobs APIs to cancel or terminate up to 50 jobs in a single call.
Ubuntu 26.04 runner image is now generally available, ending public preview
Adds a CANCELED receive action to the inventory shipments GraphQL API (2026-10) with new totalCanceledQuantity and canceledQuantity fields.
Added ProductVariantContextualPricing.auditTrail field in GraphQL Admin API v2026-10, returning a PricingAuditTrail with ordered price adjustments.
Removed the static session.currentSession.staffMemberId field in API version 2026-10.
Adds a new `marketRelationships` query and parent/child fields on `Market` in GraphQL Admin API v2026-10, enabling direct traversal of a store’s market hierarchy.
Update google.golang.org/grpc to v1.83.2 (and v1.83.1) to address high‑severity security issues.
Workflow execution protections for GitHub Actions are now generally available across GitHub Enterprise, organizations, and repositories
Fixed security issues: ACL revocation bypass in queued transactions and added cluster bus authentication warnings with a protected‑mode option.
Fixed ACL revocation bypass where queued commands could access revoked keys
Fixed ACL revocation bypass where queued transaction commands could access revoked keys
Introduced Lead, an open‑source Postgres full‑text search extension usable in CI, dev, and staging environments (offline).
General availability of low‑cost burstable EC2 T8i instances (nano, micro, small, medium) with 6th‑gen Intel Xeon and Nitro, delivering up to 30% better price performance than T3.
Fixed ACL revocation issue allowing queued commands to access revoked keys
Adds security hardening for the cluster bus: warns on unauthenticated bus ports and introduces a protected mode option to enforce TLS authentication.
Added a pause option for editing scheduled drafts in the structure API.
Introduced JetStream Desired State metalayer with a new reconciliation engine and added cancel‑move, evacuate, and metalayer rescue endpoints for safer stream moves, scaling, and disaster recovery.
Removed fifteen legacy MCP board tools; they can no longer be called.
Introduce iframe embedding for Retool apps, enabling display within other apps, classic apps, and external sites.
Update google.golang.org/grpc to v1.83.1 and v1.83.2 in pkg/push and root modules
Backfill API endpoints no longer disclose backfill IDs across DAGs; unknown or unauthorized IDs now return 404, and auth is enforced only on the path ID (breaking change).
Enabled custom group management via workspace PATs
Fixed numerous bugs across CLI, extensions, permissions, and core (e.g., audit CA store handling, CLI argument handling, node and npm compatibility, permission parsing, and SQLite symlink checks)
Stable release details are available in the main CHANGELOG.md.
Amazon S3 Express One Zone storage class is now available in 7 additional AWS Regions, expanding to 15 regions total.
Introduces Cluster Mode to run multiple applications on shared EKS infrastructure, lowering per‑application compute costs.
Fix domain‑restricted credential usage in its own node
Enhanced security by validating Databricks JDBC URLs, updating Netty to fix CVE-2026-75595, hardening WebClient usage, and patching client/server dependencies.
Fix core to continue breaking‑change detection even if a rule throws an error
Core: Continue breaking‑change detection even if a rule throws an error.
AWS Builder Center launched as a mobile app for iOS and Android
Added unit testing support for BigQuery pipelines and Dataform actions, now generally available.
Introduces tenant-level deliverability insights in Virtual Deliverability Manager (VDM).
Twilio will start migrating accounts to a new Voice Recording Storage billing system.
Twilio will monitor and may limit US message sending rates during the Heightened Awareness Period (Nov 19 2026 – Jan 4 2027).
Added WhatsApp and SMS support to the Twilio integration with Salesforce Service Cloud Voice.
Added Annotations with chart markers and management UI, and introduced Model Context Protocol (MCP) for read‑only analytics assistants with API key authentication.
Introduces Generate Sheet, allowing users to add a new sheet to an existing analysis via natural language description.
Corretto 27 GA with G1 as default GC, compact object headers, and enhanced pattern matching previews.
Add ability to link existing Figma Design canvas files directly to Weave workflows.
Early Access release of Member Management for My Organization API and embeddable UI, letting admins invite members, assign roles, and control access without custom backend code
Added ability to assign custom user_id during signup via api.user.setUserId() in a pre‑user‑registration Action.
Adds serverless model customization for NVIDIA Nemotron 3.5 Lightning, supporting SFT, DPO, and RFT.
Introduces a consolidated deployment view for Amazon ECS Managed Daemons in the AWS Management Console.
Add per-keyspace setting to limit concurrent shard updates during configuration rollouts
Dagster+ alert policies can now target deployment capacity metrics (queued and in‑progress runs) using rolling‑window aggregations.
Updated core dependencies (thrift, x/crypto, grpc) and bumped Go to 1.26.8 to remediate security vulnerabilities.
Add pscale CLI command `pscale branch vtctld move-tables` to run Vitess MoveTables workflows
Fix Vue render function components failing to build when @astrojs/react is also enabled
Fixed duplicate unhandled rejection logs caused by aborted request bodies in standalone mode (src/fetch.ts).
Fixed skew protection to include the build assets directory in protection.json patterns, preventing duplicate framework instances after redeploy.
Fix build failure when Wrangler config uses the exports field for Durable Object classes
Admins can automatically grant SSO access for existing classic PATs and SSH keys across organizations.
SCIM user objects now include a profileUrl field per RFC 7643
Adds a self‑service flow for users who have exhausted their Copilot AI credits to request a budget increase.
Updated self‑hosted Retool to version 4.34 and stable 4.0
Refactored internal version handling
Language server now uses Biome-powered astro2tsx, improving type checking and editor support for .astro files.
Refactored internal version handling to use a smaller, ESM-native dependency.
Switched to Biome-powered astro2tsx implementation, improving type checking and editor support for .astro files.
Fix crash in React renderer when encountering non-React object components.
Refactored internal version handling and pre‑bundled server entrypoints, boosting dev server startup speed and rendering performance.
Edge release channel now supports Retool 4.58 for self‑hosted organizations
Updated compiler to wrap @for collection expressions before adding non‑null assertions.
Restored Oracle Database account support, added AWS US‑ISO/ISOB KMS region support, and introduced PostHog trial events and PKI certificate audit logs.
Added a generic MAC API and OpenSSL provider discovery for ciphers and hashes, plus new experimental DTLS and Web Workers support.
fields_changed payload now an object with added, updated, and removed arrays instead of a flat list
Added support for macOS 27 Golden Gate in AWS Client VPN client version 6.0+
Simplified sign‑up with social login, no credit card required, and up to $200 free credits for new users
Added tag‑based access control for custom metrics in Amazon Connect Customer
Managers can upload a PDF of an evaluation form and AI automatically recreates it as a draft in Connect Customer
Added Graphics G7 bundles with NVIDIA RTX PRO 4500 Blackwell GPUs for WorkSpaces Personal and Core
Added post‑ad‑decision‑server response hook for monetization functions, invoked after VAST parsing and before ad selection
Amazon ECS adds support for Amazon S3 Files on the EC2 launch type, allowing containers to mount S3 buckets as a shared file system.
Adds seven new API operations (CreateMetric, DeleteMetric, DescribeMetric, ListMetrics, SearchMetrics, UpdateMetricContent, UpdateMetricMetadata) for programmatic custom metric management in Amazon Connect.
Amazon Keyspaces is now generally available in 11 additional AWS regions
GPU constant metrics now reported on a 15‑second static interval for accurate weighted sums
Release v26.8.6.5 LTS.
Introduce TIN, a full-featured full-text search extension for Postgres
Addresses multiple critical security CVEs (e.g., MySQL replay gates, unauthenticated DoS, privilege escalation, SAML DEFLATE leak).
Fix handling of destroy=false around create‑before‑destroy instances.
Integrate the flagsmith‑private edge_control_plane app into the API via edge‑proxy
Fix LTS image build failure caused by Debian 13 package name changes
Stable release v26.7.10.6
AI Scan can now run on pull requests without requiring the CodeQL default setup
Release v26.6.8.7 stable.
GA launch of Amazon Connect Talent, an AI-powered hiring solution offering voice interviews, competency assessments, and a mobile-first candidate portal.
Fixed CLI deployment settings edit to preserve non‑GitHub provider sources, corrected path filter handling, and improved stack retrieval error reporting
Added i18n locale tracking in audit logs and major Media Library enhancements (MCP scaffolding, default new library, folder and asset management tools, banner, beta notice removal)
Release notes have not been published yet.
Security fix for GHSA‑4mh8‑r7rc‑xpvc advisory
High severity security vulnerability addressed in this release.
Updated portabletext dependency to latest version
Add support for Angular 22.2
Added auto‑protection policies for Compute Engine and Persistent Disks, BigQuery migration lineage preview, and new VPC capabilities (Dynamic NICs, App Engine Flow Logs, PSC metadata) as GA/preview features.
Fixed Gateway credits eligibility check to use the correct sub node.
Fixed gateway credits eligibility check to use the correct sub‑node.
Fix: Apply credential allowed domains in declarative node requests
Backup your Metabase application database before upgrading.
Upgrade to Metabase 63.18 with updated Docker image tags and JAR download URLs
Fixed default protocol client APIs falsely returning true on Windows.
Added preview of folder contents for quicker identification
Stream real-time notifications for enterprise connection changes via connection events.
Adds real-time streaming of enterprise connection events to webhooks, EventBridge, or custom pipelines.
Enable publishing of custom Weave tools to the Figma Community
Introduced {{selfEntity}} template variable that resolves to the current dashboard's entity GUID
Catalog API now returns video and 3D model assets in the media array for get_product, lookup_catalog, and search_catalog calls.
Added optional relay support, credential‑less agents, custom X.509 extensions, and a copy‑secrets workflow, plus self‑serve upgrade and time‑unit env vars for secret scanning.
Unified token size limit to 4,096 bytes, removing separate limits for policies and tags
Launched 50+ curated app collections (SEO, seasonal, event spotlights) that drive triple‑digit traffic boosts
Introduces a Detected Anomalies widget for Billing and Cost Management dashboards, showing anomaly count and total cost impact.
Release v16.1.0 of Cypress.
Enterprise admins can now enforce GitHub Advanced Security settings across organizations
Copilot now suggests allowed values when defining custom repository properties
Introduces flat-rate monthly pricing for 10 Gbps and 100 Gbps dedicated connections, eliminating data transfer out charges.
Introduces SKU‑scoped pricing rules allowing custom rate and usage‑tier configurations for AWS services.
Step Functions now automatically adds SDK integrations for new AWS services within weeks of release, starting with Lambda MicroVMs and Lambda Core.
Adds instance preference lists for SageMaker training and processing jobs, letting users specify a prioritized set of instance types and counts
Release 9.4.7 of Elasticsearch.
Patch release for Elasticsearch 9.5.4
Fixed a renderer crash when an iframe is removed immediately after loading with nodeIntegrationInSubFrames enabled and sandbox disabled (e.g., Meta Pixel).
Fixed a main process crash when loadURL() is called immediately after a failed load.
Added initiatorOrigin APIs (webRequest, protocol handlers, DownloadItem) and a trailing frame argument to will-download and preconnect session events.
Amazon Q Console now integrates with CloudTrail, enabling natural‑language queries of trails, log groups, and event data stores.
GitHub disabled SHA-1 support for HTTPS on September 15 2026.
Shopify admin UI receives a refreshed design on Sep 15, 2026; Admin UI and App Home UI extensions automatically adopt the new styles.
family_name is now optional in shipping_address and billing_address for B2B orders.
MetafieldsSet mutation now uses dynamic complexity costing based on distinct resource owners instead of a flat 10‑point cost.
Adds shift bidding where agents rank preferred shifts via CSV upload or random ranking.
Check the official React Router changelog for v8.4.0 details.
Release v26.8.5.13 LTS version
Update Source library to v1.7.5
Added JetStream compatibility for the new desired‑state metalayer with aggregated snapshot deletions and faster pending calculations
Release v7.18.4.
Fixed several UI bugs including reference input blink, popover placement issues, and document banner handling
Added a Mercure broadcast driver with install command support and introduced copyToDisk/moveToDisk methods for the filesystem adapter, plus enum support in queue pause/resume and an isManagedQueue flag for CloudManager.
Added cancellation support for AI builds and consolidated build cancellation with self‑hosted MCP packaging.
CartDeliveryOption now includes a metafield field, allowing Functions to read metafields attached to delivery options in the cart.
Release version v26.7.9.12 marked as stable.
Fix multiple security vulnerabilities (CVE‑2026‑15815, CVE‑2026‑76154, CVE‑2026‑79656).
Release v26.6.7.18 marked as stable.
Patched multiple security vulnerabilities (CVE-2026-12704, CVE-2026-15815, CVE-2026-76154, CVE-2026-79656).
Fixed multiple CVEs (2026-15815, 2026-76154, 2026-79656).
Fix multiple CVEs (2026-15815, 2026-76154, 2026-79656)
Added multivariate demo flag and segment‑membership seeding improvements
Security fixes prevent executable shims from hijacking other packages and stop GitHub Actions links from leaking credentials.
Fix editor issue preventing users from revoking end‑user credentials.
Introduces self‑hosted email policies (API and console) and supports alphanumeric Twilio sender IDs.
Fix shifted weaviate_module_error_total metric labels and prevent panic on nil OpenAI QnA responses.
Zero-ETL integrations now capture archived Salesforce records, exposing an isArchived field for full data replication.
Fix Kafka processing end hook execution in microservices
Includes medium to high severity security fixes
Hardened the TCP transport in @nestjs/microservices to resist hostile peers
Added preview support for Conda packages in Artifact Registry and a public‑preview C4N machine type with large SSDs; introduced reinforcement‑learning fine‑tuning for Gemini and a Grok match_all option in SecOps parsers.
Addresses medium to high severity security vulnerabilities
Mattermost Platform Extended Support Release 11.7.11 delivers security fixes spanning low to high severity levels.
New Relic Lens is now generally available
Introduces New Relic Ground Truth, giving AI tools and agents secure, governed access to operational intelligence
Introduces shared agent skills that can be used by the entire team
Removed v1 HTTP endpoints (breaking change) and introduced optional ai.mcp config block;
Removed multiple deprecated APIs (e.g., AggregationTemporality, AddScraper, ZapOptions, WithForceUnmarshaler, DefaultMetricsBuilderConfig, ConfigWatcher, LoggingOptions), introducing breaking changes.
Contentful will rotate its SAML SP signing certificate on September 21, 2026 (delayed from September 16).
Add per-keyspace control to enable or disable the tablet throttler
Root user sign-in is now served across US East (N. Virginia), US East (Ohio), and US West (Oregon) with traffic distributed among them.
Added node‑level query admission control feature
Fixed microservices handling of unserializable patterns to prevent crashes.
Fixed node-level query admission control (P1b) issue
Added NVIDIA Qwen3.6-35B-A3B-NVFP4 model to SageMaker JumpStart, offering agentic coding, multimodal reasoning, and long-context MoE capabilities with reduced memory footprint.
Added Ministral-3-3B-Instruct-2512 and Ministral-3-8B-Instruct-2512 models to Amazon SageMaker JumpStart
Gemma-4-31B-it-assistant and Gemma-4-31B-IT-NVFP4 models are now available on Amazon SageMaker JumpStart for easy deployment.
Added granite-speech-4.1-2b, kanana-2-30b-a3b-instruct, and OpenFold3 models to SageMaker JumpStart, expanding the foundation model catalog.
Introduce three auto model selection tiers: efficiency, balance, and intelligence.
Release v26.8.4.11 LTS
Added OpenAI GPT-6 Astra as a new core model in the Box AI API.
Add cancellation support: flows can transition from paused to cancelling and can be cancelled after a pause timeout.
Release version v26.7.8.15 marked as stable.
Fixed numerous bugs across microservices, core, common, and platform layers (e.g., handler stream stability, signal listener cleanup, UUID validation, and Fastify response handling).
Release v26.6.6.15 marked as stable.
Added many new features including single‑click Slack install, PDF landscape mode, tool configuration modal, Slack thread support, Teams package download, duplicate button actions, tenant validation middleware, role‑based access control, ...
Security updates: upgraded Go builder to 1.27.1, fixed vmauth JWT authorization bypass, and escaped server‑side errors to prevent XSS on the relabeling UI.
Upgrade Go builder to 1.26.7 and properly escape server‑side errors to prevent XSS on the relabeling UI.
Upgrade Go builder to 1.26.7 and address critical security issues: JWT auth bypass, XSS via metric relabel debug, and proper escaping of server‑side errors.
Detects table property conflicts when multiple zero-ETL integrations target the same table
All Argo CD container images are now signed with cosign and include SLSA Level 3 provenance for verification.
Fix editor issue preventing some users from revoking end‑user credentials.
Fixed exchange deletion not cleaning bindings, quorum queue replica over‑allocation, malformed UUID handling, and numerous management API error responses.
Added Model Context Protocol (MCP) endpoints, TLS 1.3, root CA rotation, forward‑proxy support for AI policies, and Private Service Connect for semantic caching; introduced several preview capabilities (BigQuery Graph metadata, aggregate...
Adds support for dynamic, interactive WhatsApp flows that can be built with templates or custom JSON schemas
Adds automatic failover to the next best number in phone pools when SMS delivery is impacted.
All Argo CD container images are now signed with cosign and include SLSA Level 3 provenance for images and CLI binaries.
Released version 26.8.3.105 LTS.
Release version v26.7.7.92 marked as stable.
Release version v26.6.5.120 (stable).
Updated upstream dependencies to the latest versions.
Added global nodeDownloadMirrors config and new trustPolicyExcludePrune setting to prune unused trust‑policy entries.
MediaLive adds Video Aligned Locking, allowing frame‑accurate pipeline synchronization without source timecode using visual signatures
Profiles now display the highest tier earned for multi‑level achievements on GitHub profiles
Add usage metrics for the dedicated VS Code Agents window in Copilot
Copilot code review now auto‑resolves its own comments once they’re addressed
Fixed next/image disk cache handling by skipping zero‑byte entries and rejecting empty images
X2idn memory‑optimized instances now available in the Asia Pacific (Hong Kong) region
Adds model caching to SageMaker HyperPod inference, pre‑loading model weights and container images to cut cold‑start times from minutes to seconds.
Added node‑level query admission control and made shard optional for HFresh reassignment, enhancing security and flexibility.
Lambda now allows explicit enable/disable of direct read for S3 Files, independent of function memory size
Run dequeuing is now much faster when using concurrency pools, reading pool state once per pass.
Fixed type declarations that broke TypeScript compilation under Node-only tsconfig.
Added Japanese ZIP code validation for request signing
Added Japanese ZIP code validation to request signing in boxsdkgen.
Added is_collaborated_content_available_when_owner_inactive property
Fixed null chunk generation when a file size is an exact multiple of the multipart upload part size.
Added is_collaborated_content_available_when_owner_inactive property to boxsdkgen
Added Japanese ZIP code validation to request signing
Added is_collaborated_content_available_when_owner_inactive property to the SDK.
Add Japanese ZIP code validation to request signing
Release Box Java SDK v5.15.1 with bug fixes
Fix type declarations that broke tsc under Node‑only tsconfig
Added Japanese ZIP code validation to request signing
Added Japanese ZIP code validation to request signing
Upgrade BouncyCastle library to newer version
Added `is_collaborated_content_available_when_owner_inactive` property to the SDK.
Fixed stripping of Authorization header on cross‑host redirects in the Swift SDK
Standalone Activities are now GA with defaults enabled, adding operator APIs, batch operations, and default eager execution for activities.
Added TwelveLabs Marengo 3.0 embedding model to Amazon Bedrock Managed Knowledge Base, enabling multimodal embeddings for video, audio, and image content.
AWS DevOps Agent can be @mentioned in any connected Slack private channel to start and steer investigations.
Introduces real-time run metrics for HealthOmics workflows, covering CPU, GPU, memory, storage, I/O, and network usage.
Revamped the validation rule API and added PKI certificate profile management.
Fixed several UI and validation bugs, including Safari spinner stability, document revert targets, form gutter handling, light/dark mode preservation, and custom slug uniqueness.
Added S3‑compatible storage endpoint and autogravity image preview service, plus new OAuth2 providers (TikTok, Kakao) and Resend scope.
Fixed version mismatch in fastify.js
Fix execution of MCP toolkit members on workers
Fix execution of MCP toolkit members on workers
Agent Tracing is now generally available (GA)
Added native ODBC connection support in SageMaker Unified Studio, enabling Power BI and other ODBC‑compatible analytics tools to connect via the Amazon Athena ODBC driver.
AWS PCS adds custom GRES configuration, hardware topology support, and upgrades to Slurm 26.05.
Added support for Supplemental Patch Bundle (SPB) for the July 2026 Release Update on Amazon RDS for Oracle 19c and 26ai.
Introduced multiple new features: API Gateway can now act as a Model Context Protocol server, AlloyDB audit‑log pipeline monitoring, GKE Agent Substrate for scalable agent workloads, CCaaS 6.12 rollout, cold‑transfer auto‑resume, HubSpot...
Adds a Buildkite VS Code extension to browse/manage pipelines, view agents, stream logs, receive notifications, and validate pipeline YAML directly in VS Code
Introduced Claimable Neon, enabling agents to provision Neon resources that developers can claim during builds
Added Jira integration to the Copilot app
No specific changes listed in this entry; refer to the external changelog for details.
Introduces a refreshed repository-level pull request listing page in public preview
Added REST API endpoints to enable or disable AI Scan for pull requests at organization and repository levels.
API Gateway execution logs now support up to 1 MB events and configurable delivery to multiple destinations (CloudWatch Logs, S3, Kinesis Data Firehose).
Introduces recursive loop detection for AWS Lambda functions in Europe Sovereign Cloud.
AWS Transform for .NET now auto‑generates unit tests for modernized business logic and controller classes.
AWS Lambda durable functions now integrates with Pydantic AI, adding automatic checkpointing and resume capability for AI agents.
Amazon MQ adds support for RabbitMQ 4.3 with quorum queue enhancements such as compaction, 32 priority levels, native delayed retries, and per‑protocol consumer timeouts.
AWS announces GA of second‑generation single‑rack Outposts, a 42U self‑contained unit integrating compute, storage, and networking.
Fixed component/query ID-to-name resolution with operators and resolved multiple widget bugs, including number input and widget test contract documentation.
Add a new `cache-mode` option to GitHub Actions for least‑privilege cache access.
Fixed install failures on filesystems that reject hard links or clones, including Android and hoisted nodeLinker, with graceful fallback to copying
Adds Amazon OpenSearch Serverless integration to Vercel v0, enabling full‑stack search and RAG applications via natural‑language prompts
MAI-Code-1-Flash model is deprecated across all GitHub Copilot experiences as of September 10, 2026.
Adds support for ecs:task-cpu and ecs:task-memory IAM condition keys on RunTask and StartTask APIs.
The Discounts Allocator Function API preview is closed and its mutations and docs have been removed.
Amazon Redshift RG (Graviton) instances are now available in the Europe (Zurich) region across four sizes (rg.large, rg.xlarge, rg.4xlarge, rg.12xlarge).
Added Xcode 27 runner image for GitHub‑hosted macOS runners, now supporting macOS 27
Added warning type to Banner component and several UI enhancements (preview URL handling, @swc/helpers dependency, render‑loop guard).
Fix audience card spacing and dark theme border issues in experiments UI, and add handling for null values from Influx queries.
Fixed audience card spacing and dark theme border issues in experiments, and added handling for null values from Influx.
Added support for GPT 5.4 Mini and GPT 5.4 Nano models.
Update all non‑major dependencies to their latest patch versions.
Added support for importing `pulumi:index:Stash` resources, expanded Automation API project settings to any language runtime, and now redacts secret values in plan violation errors.
Added build optimization to avoid settling seen preload dependencies for better performance
Release Box Java SDK v5.15.1 with bug fixes
Add Japanese ZIP code validation to request signing in boxsdkgen.
Added is_collaborated_content_available_when_owner_inactive property to the SDK
Added `is_collaborated_content_available_when_owner_inactive` property to SDK generation.
Added Google Gemini 3.8 Flash and 3.7 Flash core models to the Box AI API
Bumped BouncyCastle library version to incorporate security updates.
Added is_collaborated_content_available_when_owner_inactive property to the SDK
Added is_collaborated_content_available_when_owner_inactive property
Fix null chunk issue when uploading files whose size is an exact multiple of the part size.
Synthetic monitors now include a Network Health Indicator for paths that traverse Transit Gateway inter‑Region peering
Added initiatorOrigin to webRequest, protocol handlers, DownloadItem, and a trailing frame argument to session events; introduced ELECTRON_DEBUG_DRAGGABLE_REGIONS env var for debugging draggable regions.
Performance improvement: bound peak memory during source control push.
Bounded peak memory consumption during source control push operations
Added A/B forensic watermarking support to MediaLive, producing two synchronized output variants with distinct transparent watermarks
Introduces Dynamic Multiview in MediaPackage, enabling on‑demand tiled layouts of multiple live sources without re‑encoding
MediaTailor adds Yield Optimization to automatically fill unused ad inventory with Amazon Ads during server‑side ad insertion for live streams, at no extra cost.
Adds support for Low‑Latency HLS (LL‑HLS) ad insertion using HLS Interstitials.
Added real-time contextual metadata generation for live video streams via AWS Elemental Inference, extracting taxonomy categories, brand‑suitability signals, objects, actions, and scene descriptions.
Adds FIPS 140-3 validated PrivateLink endpoints for Amazon S3 File Gateway, enabling private, FIPS‑compliant traffic.
Amazon EVS is now available in APAC (Osaka, Taipei), Europe (Spain), and Israel (Tel Aviv) regions.
BigQuery preview adds ML.CORRELATION, ML.METRICS, and AI.CAUSAL_EFFECT functions for advanced analytics.
No new features or changes were listed for this release.
Upgrade to Metabase 58.33 and back up the application database before proceeding.
Upgrade to Metabase 63.17 with new Docker images and JAR downloads for both Open Source and Enterprise editions
Derive cookie signing key from KMS root key for stronger security
Updated numerous dependencies (k8s.io group to 0.37.0, Go to 1.26, many Go modules and GitHub actions).
Introduces Projects to manage large bodies of work over extended periods.
Introduces Neki, a horizontally sharded Postgres product, now available in platform preview.
Added new Helm functions (duration) and engine improvements: debug logging for empty lookups, ownership verification before resource deletion, and support for SOURCE_DATE_EPOCH in chart archives.
Adds a 72‑hour temporary security hold after a successful recovery‑code sign‑in for all npm accounts.
Added Linux ARM64 support for CodeQL analysis
Sellers now get demo and private offer requests instantly, with customer use‑case details, via an automated workflow.
Managers can define separate concurrency limits for different task and email workload types.
Compiler improvements: support @property declarations in namespaces and avoid false positives on zero‑parameter callables in track function checks
Admins can centrally define policies for Copilot agent operations (block, require approval, or allow automatically)
Updated Domino to the latest version on the platform server.
GA of AWS‑managed .NET modernization transformation accessible via a single‑line CLI command, usable interactively or in pipelines.
Updated Domino to the latest version on the platform server.
Updated self‑hosted Retool to version 4.34, aligning with the 4.0 stable release.
- Add <ViewTransition/> with addTransitionType API, support refs on <Fragment/>, and introduce browser() API for client‑only rendering in Suspense boundaries.
Adds support for Graviton5-powered C9g, C9gd, M9g, and M9gd instances in Lambda Managed Instances.
Adds a 90‑minute function timeout for asynchronous and event source mapping invocations on Lambda Managed Instances, a six‑fold increase over the previous 15‑minute limit.
Appsmith AI is deprecated: new AI datasource connections are disabled and all existing ones will stop working after Sep 30 2026; migrate to OpenAI, Anthropic, or Google AI.
Expanded self‑serve GitHub Advanced Security trial to a broader set of Enterprise Cloud customers.
Repository rulesets can now block pull requests that introduce exposed secrets from being merged
Edge release channel now supports self‑hosted organizations with Retool 4.54
Deprecate Server.prototype.listen2 in node:net and update documentation accordingly.
Added CheckIngestedDocumentAcl and GetIngestedDocumentAcl APIs for debugging and auditing document-level ACLs in Amazon Bedrock Managed Knowledge Base.
Introduces always‑on cloud agents that run scheduled tasks and monitoring even when devices are offline.
Amazon Quick activity feed is now available on iOS and Android mobile apps, letting users view and act on prioritized items on the go
Added new BiDi capabilities such as browsing‑context screencast support, derived field names/enums in the schema, and fixed missing fields and proxy property name mismatches in .NET bindings
Bumped @rocket.chat/meteor to the latest version
Amazon Quick desktop app is now generally available on macOS and Windows, integrating with local files and background calendar/email/business apps.
Added support for selecting stability levels via multiple deployment channels for the Snyk CLI
Updated many dependencies (e.g., @sanity/cli, @sanity/client, pnpm, UI libraries) and upgraded tooling versions
Added an Export Audit Logs button and recorded content release actions in audit logs.
Introduces a native Confluence Data Center connector for Amazon Bedrock Managed Knowledge Base, allowing direct crawling of blogs and pages.
Fix panic during module installation caused by invalid module calls
Added `shopify store` commands (create dev, delete, list, info) for managing development stores directly from the CLI or AI coding agent.
Fixed billing bug where fast network path tests were incorrectly charged
Release of version 26.3.33.24 LTS.
Introduces agentic autofix to automatically remediate code quality findings
Added experiment conversion rate and conversions‑over‑time charts and introduced targeted audience selection for experiment rollouts.
Added experiment conversion rate and conversions‑over‑time charts plus targeted audience selection for experiment rollouts
Fixed core error reporting to retain the original job error when the job key is missing.
Core: Preserve original job error when the job key is missing
Added support for array values in query parameters for Microsoft SQL integration.
Adds a 40,000 expanded fragment spread limit per GraphQL request; exceeding it returns HTTP 400 with a specific error code.
EBS Volume Clones now support cross‑account volume copying with re‑encryption using a KMS key in the target account.
Added multi‑model build support with EE integration and exposed selected map markers.
Adds per-record confidence scores for ML matching workflows, replacing the previous group-level score
Systems Manager now diagnoses six additional issue categories (IAM permissions, SSM Agent version, instance status checks, OS configuration, default host management config, hybrid activation) beyond network connectivity.
Customer Profiles now emits segment membership events (joined or left) to a Kinesis Data Stream.
AWS Private CA Connector for Kubernetes is now offered as a managed Amazon EKS add‑on, enabling simple install, configuration, and lifecycle management via the EKS console, CLI, and API.
Added REST v2 snapshot management APIs, async restore, and TEXT field support in the Go client and RESTful API.
ElevenLabs voices added to Say in public beta
Added new distance‑measure options to Apigee SemanticCacheLookup (removing the 0‑to‑1 threshold limit) and expanded BigQuery generative AI to support multiple Gemini models; Cloud Monitoring charts can now override dashboard time‑range (...
Added enterprise‑managed sandbox policies for Copilot in JetBrains IDEs.
Added ability to restrict which AI models each agent can use
General availability of OpenAI GPT-6 Astra on Amazon Bedrock, offering up to 1 million token context and advanced reasoning, writing, design, and computer/browser capabilities.
Added APIs for step uploads, build failure summaries, and cluster secret management, enabling agents to query uploads, failures, and secrets without exposing secret values.
Added support for custom Python plugins that run on managed InfluxDB 3 Core and Enterprise clusters in response to triggers.
GitHub Enterprise Server 3.22 is now generally available.
- Updated the crypto subsystem: root certificates to NSS 3.126, added STORE‑loader support for private keys, upgraded OpenSSL to 3.5.8 and removed legacy BoringSSL shims;
Introduced feature-level writes allowing partial updates of individual features within a record.
AWS Transform is now available in the AWS GovCloud (US‑West) Region, extending migration capabilities to government and regulated workloads.
Added Node.js 24 to the supported engine range.
Added ELECTRON_DEBUG_DRAGGABLE_REGIONS env var to visualize and log draggable regions for debugging custom title bars.
API Gateway can now present ACM‑managed certificates to backend services, enabling mutual TLS for API‑to‑backend connections.
Launched a redesigned support portal at help.github.com
- Fixed file system access permission scoping, reset behavior, and write access in in‑memory sessions.
Adds a new `barcodes` connection on ProductVariant, allowing up to 20 barcodes per variant with type validation (UPC, EAN, ISBN, GTIN, ASIN).
Release v2.21.4 provides built wheel distribution (2.45 MB) and source tarball (3.39 MB) artifacts.
Release v2.20.9 provides updated build artifacts for ansible core
Release v2.19.13 provides updated distribution packages (wheel and source tarball) for ansible core 2.19.13.
Added a new Basic subscription plan.
Added a new countryCode field (ISO 3166-1 alpha-2) to CustomerAddressInput and CustomerAddress objects.
Introduces IngestData API for direct long-term memory ingestion without creating a short‑term event
Added support for MariaDB community minor versions 10.6.28, 10.11.19, 11.4.13, 11.8.9, and 12.3.3 in Amazon RDS.
Introduces a resource fallback directive for WDL workflows to specify an ordered list of preferred accelerator types with optional CPU fallback.
Escape dynamic <script>/<style> content in MDX, requiring set:html to render raw markup.
Fixes script/style rendering in MDX by escaping dynamic content instead of rendering it raw.
Updated @astrojs/markdown dependency to satteri@0.4.1
Fix script/style rendering in MDX so only literal content is treated as trusted markup.
Fix build crash caused by exporting Durable Object classes alongside prerendered pages in a custom worker entrypoint.
Added permission‑gated variant deletion, enhanced diagnostics (styled‑components size reporting, sheet updates) and new global query result typings.
Added enhanced smart cropping with custom label detection and multi‑method detection (faces, text, logos, custom models)
Set a default `memoryExceededExitCode` for Cloud commands.
Added new Queue capabilities: totalSize method, JobInterrupted event, cluster‑safe Redis driver, and devServerUrl() for Vite.
Added upgrade impact notes for v0.165.7.
Upgrade BouncyCastle library to a newer version
Added is_collaborated_content_available_when_owner_inactive property
Fixed null chunk issue when uploading files whose size is an exact multiple of the part size.
Added is_collaborated_content_available_when_owner_inactive property to boxsdkgen.
Added is_collaborated_content_available_when_owner_inactive property to the SDK
Release Box Java SDK v5.15.1.
Added new property `is_collaborated_content_available_when_owner_inactive` to the SDK.
Legacy read/write board tools will be deprecated and cease functioning on September 14, 2026.
pnpm can now manage npm, Python (pyproject.toml) and Cargo dependencies in a single workspace, with new add commands and unified install/run support
Added a "New in Unleash" page for Open Source and a creator filter in the flags overview.
Added new AI model providers (Moonshot, MiniMax, Qwen Cloud) and expanded AI Builder features such as credits display, tool call events, and agent artifact handling.
Amazon EMR extends free support for older releases, giving customers more time to migrate without extra cost.
Launches Nx Plugin for AWS v1.0, adding generators that scaffold full‑stack applications (AI agents, APIs, websites, databases) with CDK or Terraform support.
Add recovery email for self‑service password reset and account recovery
Added support for the latest cumulative and GDR updates for SQL Server 2016‑2025 on Amazon RDS.
Added preview AI‑driven predictive modeling in BigQuery (AI.PREDICT) and delayed‑execution pricing for Cloud Run jobs; Gemini Enterprise now offers semantic search in Marketplace.
Introduces a public beta Webhook Configuration API for per‑URL webhook authentication and delivery settings.
Introduces event holds for S3 Object Lock, enabling variable, event‑triggered WORM retention periods.
Added updated PCI Attestation of Compliance (AoC) and Report on Compliance (RoC) for PCI DSS v4.0.1.
Add Deny All rule to Tenant ACL using match_all:true attribute
Added LDAP sync support for multiple Linux/Windows targets and a PAM break‑glass access request feature.
Adds selectable stability levels by deploying the Snyk CLI to multiple channels, with documentation updates.
Update github.com/klauspost/compress and golang.org/x/crypto to patched versions, addressing security vulnerabilities.
Corrected outbound agent card typing to use the CardElement protocol instead of a generic Record.
Fixed HTML component scrollbar always being visible in the app viewer (now only appears on hover).
Introduced the new generative-meta module for Meta AI generation.
Bumped @novu/nextjs version to align with other projects
Add startNewConversation to useWebChat to prevent new chats from remounting
Emit socket disconnect events so clients can detect drops
Added debug endpoint for vector reassignment and improved hfresh clustering with full‑precision vectors
Add explicit license overrides for two packages in the 2.37 release image
Add explicit license overrides for two packages in the 2.37 release image
Added structured reference selection, a debug endpoint for vector reassignment, and cluster posting split support for full‑precision vectors.
Adds Data Spillage Exposure Radius Report feature
Fixed task replication latency, stop‑word highlighting, and exactness ranking bugs
Added extensive Analysis API enhancements, including support for companion block members, extensions, KMP interop, new Ka* symbols, type building API, and improved publishing structure.
Added conversion‑over‑time rows to experiment results
Added conversion‑over‑time rows to experiment results (experimentation feature).
Cap task runner timeouts to fit the graceful shutdown window and stop the task broker before task runner processes during shutdown.
Added Slack integration enhancements (single‑click install, thread support, missing scope fix) and a Teams package download feature.
Fixed CVE-2026-65107 affecting the Slurm sbcast tool in both Cluster Director and Cluster Toolkit; mitigation details provided in security bulletins.
Added tag-based grouping for catalogs
Added workspace: protocol support for catalog resolution and new trust‑lockfile options for pnpm remove/update, plus CI validation of package versions against workspace.yaml bands.
Release v26.3.32.14 LTS
Introduced preview case playbooks to run actions across an entire case container, streamlining investigations
Release v26.3.31.5 LTS (long‑term support)
Release 6.3.99 of Google SecOps SOAR is now generally available across all regions.
Add Windows installation instructions for Bun v1.4.2
Adjusted auto‑refresh behavior for scans and installations during active scans
Introduced test locks to serialize tests sharing a named lock across files, workers, and projects; added visible‑only locators and step subtitles/params for richer reporting.
MWAA Serverless is now available in AWS GovCloud (US-East and US-West) regions
Added user-managed (3LO) authentication for SharePoint, OneDrive, and Confluence in Bedrock Managed Knowledge Base, allowing sign‑in with existing credentials
Added support for setting a custom Authorization header on webhooks.
Introduces a native ServiceNow connector for Amazon Bedrock Managed Knowledge Base, eliminating the need for custom ingestion pipelines.
Added model selection options and enhanced content protection in GitHub Copilot.
Introduces automatic sync scheduling (daily, weekly, monthly) for data source connectors in Amazon Bedrock Managed Knowledge Base.
Added support to send region information to the license server.
AMI owners can now declare allowed or disallowed EC2 instance types for their AMIs
GPT-6 Astra is now generally available in GitHub Copilot
Rebuilt Console (Console IV) with new navigation, integrated Terminal and Explorer, plus Google, Cloudflare, Resend OAuth and custom MFA support.
Updated documentation (removed e2e references, refreshed footer community link, and added new app connections screenshots)
Introduces Custom Detection Rules library with 35 prebuilt, opt‑in CloudTrail detection rules.
Adds Early Success Criteria to ECS rolling deployments, letting you set a healthy‑percent threshold to mark a deployment successful before all tasks are running.
Adds a new REST API endpoint to retrieve repository star growth over time
Introduces a serverless diagnostic mode in AWS MCP Server for AI coding agents to troubleshoot Lambda functions and their linked services.
Storefront discovery profiles now advertise support for UCP version 2026-08-25
Added d and v regex flags to no-unexpected-multiline and enhanced Object.prototype property name checks and class field/static block handling
Fixed ENOENT error when concurrent installs share a store
Improved dependency resolution speed in large workspaces
C8g instances are now available in AWS Asia Pacific (Taipei, New Zealand) and GovCloud (US‑East) regions
Security hardening: prevent basic‑auth user enumeration, deny opaque request targets, redact duplicate TLS certificates, and other security‑related fixes.
Release v26.3.30.9 LTS version.
Read the migration guide before upgrading.
Release 2.37.10 (2026‑09‑04) contains no listed changes.
Release contains only an auto‑generated placeholder description.
Significant performance boosts: faster quantized scoring, SIMD 4-bit TurboQuant, batch HNSW searches, memory reporting, and improved shard transfer handling.
Added Windows installation instructions for Bun v1.4.1.
Patched multiple security advisories (GHSA-9q9j..., GHSA-hwr6..., GHSA-p68q..., GHSA-667r...).
Added support for EC2 G6e instances (up to 8 NVIDIA L40S GPUs) for SageMaker Batch Transform jobs.
Connectors now keep file transfers running while SFTP credentials are rotated
Introduces the Incentives page in Cloud Billing for tracking spend‑based milestone credits and other conditional incentives, replacing the old Spend‑based Milestones tab.
Added compliance-based blocking for International Call Forwarding to Spain and France
Fixed several crashes: pending net.request reads, menu.popup with offscreen frames, ASAR integrity violations, high IPC volume, and native addon GC aborts
Audit no longer aborts when a vulnerable package has no safe version, updating what it can and listing remaining issues
Fixed application crash after a large number of IPC messages from renderers
Added a badge property to MenuItem on macOS 14+ and a caretBrowsingEnabled toggle for WebContents.
Added Neon backend support in AWS Europe (Frankfurt) region
C9g and C9gd Graviton5 instances are now available in the Asia Pacific (Tokyo) region
Adds support for configuring ECS Managed Daemons as non‑critical, preventing daemon failures from blocking instance registration or task placement.
Added several UI and deployment enhancements, including tag suggestions, parameter overrides, id fields for automation models, jitter in critical service loops, and various UI polish fixes.
M9g and M9gd Graviton5‑based instances are now available in EU (Ireland) and APAC (Singapore, Sydney, Tokyo) regions.
Adds support for multiple trusted publishing configurations per npm package.
Added a new REST API to report runner version deprecations, improving visibility into upcoming runner updates.
Asset backfills now fail when partitions lack materialization status, and wiping/deleting dynamic partitions supports multi‑partitioned assets.
Added new features including PAM account password viewing with access requests, OIDC auth template support, Daytona secret sync, IdP‑authoritative user sync, and PAM heartbeats.
Deprecate specific GitHub Copilot models across all experiences (Chat, inline edits, ask, agent modes, code completions).
Amazon EC2 P6‑B200 instances with NVIDIA Blackwell GPUs are now available in the Asia Pacific (Hyderabad) region (and other listed regions).
The PGP signing key for GitHub CLI Linux package repositories expires on September 5, 2026.
P6‑B300 instances with 8× NVIDIA Blackwell Ultra GPUs are now available in the Asia Pacific (Jakarta) region
Gemini 3.8 Flash model is now integrated into GitHub Copilot.
Add API, CLI, SDK, CloudFormation, and CDK support for subscribing to and managing CloudFront flat‑rate pricing plans programmatically.
Introduces Quick Max plan with 5× the usage and storage of Plus for power users
GWLB can now send TCP Reset packets when a target becomes unhealthy, is deregistered, or its idle timeout expires, cutting connection downtime from minutes to seconds
Adds support for Graphics G7 instances powered by NVIDIA RTX PRO 4500 Blackwell GPUs and 6th‑gen Intel Xeon Scalable processors.
Integrated AI builder recovery across ToolJet
rg.large instances now support single-node clusters on patch version P204 or later.
Aurora MySQL 8.4 now supports MySQL 8.4.8 with security enhancements and bug fixes.
Added multi-source replication, letting a single Aurora MySQL cluster replicate from multiple source databases simultaneously for data consolidation
Added AI visibility page for Enterprise to track credit and token consumption.
Added paymentInstrumentSendAddEmail mutation (API version 2026-10) to email customers a link for adding a payment method to a subscription, order, or draft order.
Adds variant link handling so links to specific variants open directly on that variant.
Added PythonOperator and BashOperator to SageMaker Unified Studio Workflows, enabling custom Python functions and shell commands in serverless visual workflows.
Added built‑in monitoring dashboard on MWAA environment detail page showing key CloudWatch metrics with optional warning range overlays.
Gradually reopening sign-ups for Copilot Business and Enterprise customers paying via credit card or PayPal.
Adds support for Go 1.27 in CodeQL analysis.
Fixes an error that prevented projects using astro:assets from starting or building.
Introduced a Data Security provider that scans monitored PostgreSQL databases and forwards findings via the event platform, enabled with data_security.enabled and shared library check.enabled.
Restores mutating array methods (e.g., push, pop) on $json data within expressions
Restored mutating array methods on $json data within expressions, enabling push/splice and similar operations.
Fixed a miscompilation bug in rustc when generating vtables, ensuring correct virtual method dispatch.
Added concurrent rendering support for experimental.incrementalBuild and restored caching when build.concurrency > 1, reducing serialization overhead for large prerendered pages.
Added an ignore lock flag to astro preview, enabling multiple preview servers to run simultaneously for testing workflows.
Updated the development image service to forward all received arguments to Astro's Sharp service.
Elasticsearch 9.5.3 release announced
Public preview of Amazon Linux 2027 released, built on AL2023 baseline with kernel 7.1+, SELinux enforcing by default, AWS‑LC crypto acceleration, and updated toolchains and runtimes.
Fixed plan hint wording when no billing period is set
Fixed plan hint wording when no billing period is set
Release entry contains only an auto‑generated placeholder with a link, no functional changes described.
Enhanced the Key Value component.
Added preview VPC Service Controls feature to retrieve and update service perimeters containing deleted IAM principals.
Adds native S/MIME signing support using certificates stored in AWS Certificate Manager.
Adds AWS PrivateLink support for FIPS‑validated S3 endpoints, enabling secure VPC‑bound access with FIPS 140‑3 cryptography.
AWS Transform now supports Amazon FSx for NetApp ONTAP as a generally available storage target for block workloads.
Improved diagnostics and validation (signal alias checks, SVG animation attribute validation)
Improved install speed in large workspaces by caching workspace link anchors, hashing paths by raw bytes, and running lockfile verification in parallel.
Job logs now have a default size cap of 1 GiB; exceeding it cancels the job and records a Log Size Limit Exceeded event
Add ability to update opacity at scale through the variables modal
Added self‑service configuration for third‑party app access and Cross‑App Access (XAA) via the My Organization API and embeddable UI components (early access).
Added support for recurring Pix Automático mandates to accept subscription payments in Brazil.
Add ability for enterprise admins to set a default GitHub Copilot model via managed settings
Updated key dependencies (click, packaging, typer, coolname, pytz, croniter) to newer compatible versions.
Copilot app and CLI now respect content exclusion policies set by enterprise, organization, and repository admins.
Web Search tool now available in AWS GovCloud (US‑West) for compliance‑sensitive workloads
Introduced on‑canvas visual editing for AI code components.
Added side‑by‑side breakpoint view in the editor for real‑time cascade visibility.
Add Webflow components directly into rich text fields
Updated self-hosted Retool to versions 4.34, 3.334, and 4.0 stable
Added generative AI‑powered automated performance evaluations for human and AI agents in Malay, with justifications in the manager’s chosen language.
Added state migration callbacks and new Pulumi env setup for OIDC trust across AWS, Azure, and GCP.
Added per‑tool enable/disable settings for connectors, letting admins control which tools are available.
Edge release channel added for self-hosted organizations
Global commands (node, deno, bun, shims) are now native executables, preserving environment variables with non‑shell‑identifier names and migrating older shims.
Introduces Agentic CX Designer, a no‑code visual canvas for building AI‑powered voice and digital experiences
Second‑generation AWS Outposts racks are now available in AWS GovCloud (US‑East) and (US‑West) regions.
Adds contract tests v2 via the --v2 flag, enabling deeper test scenarios across all handler operations.
Introduces Source by Webflow, a new platform for marketing teams and AI agents to collaboratively build and optimize digital experiences.
Adds automatic generation of agent instruction drafts (Brand Guidelines, Design System, Asset Guidelines, CMS Guidelines) directly from the site
Adds support for 60 new AWS resource types across services such as Bedrock, EC2, SageMaker, and Organizations.
Fixed CLI pause after task failure with pending policy evaluations
Deprecate flat keepalive fields in client and server configs in favor of the new keepalive section (deprecation, breaking).
Fix admin filter/search handling of special characters and improve upload handling (MIME sniffing, immediate asset display, folder tree UI, name retention on replace).
Adds AWS PrivateLink support for Amazon MemoryDB in GovCloud (US-West and US-East) regions
- Introduced a new “skills” architecture for agentic workflows and added the `storybook skills` CLI command with bindings for agent tools/skills.
UXC is now available in all commercial AWS Regions, expanding from its previous single‑region availability
Added is_collaborated_content_available_when_owner_inactive property
Added is_collaborated_content_available_when_owner_inactive property to boxsdkgen
Added is_collaborated_content_available_when_owner_inactive property to the SDK.
Upgrade BouncyCastle library to the latest version
Fix null chunk issue in boxsdkgen when file size is an exact multiple of part size
Added new fields to Hubs API definitions.
Added is_collaborated_content_available_when_owner_inactive property
Fix null chunk issue when uploading files whose size is an exact multiple of the multipart part size.
Released LTS version 26.3.29.7
Add ability to manually add files in the app builder
Added uppercase trait keys, new cohort sync UI (CSV view, sync keys, provider modals), exposed sync state with update capability, and a generic cohort sync webhook.
Added support for uppercase characters in trait keys and expanded cohort sync features (detail view, CSV resync, sync state updates, generic webhook, UI modals).
AWS Lambda adds SnapStart support for container image functions, cutting cold‑start latency to sub‑second.
Fix CVE‑2026‑14199 and CVE‑2026‑19475 security vulnerabilities
No changelog details provided for this release.
No changelog details provided in this release note.
Fixed multiple CVEs (2026-12704, 2026-14199, 2026-19475).
Fixed multiple security vulnerabilities (CVE‑2026‑12704, CVE‑2026‑14199, CVE‑2026‑19475)
Added an AI agent skill that automatically generates deployment manifests with least‑privilege IAM guidance and environment variable substitution.
Update browserslist to version 4.28.7
Fix two security vulnerabilities (CVE‑2026‑12704 and CVE‑2026‑14199).
Added limit pushdown and runtime project support for AlloyDB real‑time BigQuery access; introduced Workforce Identity Federation authentication for Cloud SQL (MySQL & PostgreSQL) and Intel TDX on Confidential VMs.
Added support for 18 new SQL Server trace flags via RDS parameter groups
Buildkite GitHub App now requests read‑only access to Actions, Variables, and Environments permissions
Java Helper Library 13.0.0 now ignores unknown fields in nested response objects, preventing deserialization crashes.
Custom SMS/RCS and Voice message templates are now generally available
Hot‑reload editor canvas and add extensive personal access token support (internal API, workspace users, MCP, theme management) with a related race‑condition fix.
Introduces support for self‑hosted machines, allowing tool execution within your own network.
Early Access release of a redesigned Dashboard navigation with a new sidebar, breadcrumbs, and modern visual design.
Added classification banners for ABAC rooms, forced end‑to‑end encryption for new private rooms, and status visibility controls.
Enterprise Live Migrations (ELM) is now generally available.
Add warning prompt before forcing deactivation of the previous root encryption key
Add connection and queue info to WorkerStopping and introduce new Eloquent builder (insertOrIgnoreReturning) and schema blueprint (dropVectorIndex) methods
GA release of Amazon Quick enabling no-code app creation via natural language descriptions
Fixed TypeError in userFromRecaller() when the recaller matches no user
Introduces a managed consent portal for AgentCore Identity, eliminating the need for custom OAuth callback infrastructure
Upgrade to Metabase 63.16 with new Docker images and JAR downloads for both open‑source and enterprise editions
Backup the Metabase application database before upgrading.
Backup the Metabase application database before upgrading.
Upgrade to Metabase 60.27 after backing up the application database.
Added PKI sync for Windows/Linux and GCP Certificate Manager, exposing latest certificate renewal for agents.
Backup your Metabase application database before upgrading
Reminds users to back up the Metabase application database before upgrading.
Add optional expiration date to individual user budgets, with automatic removal on that date
Adds native support for publishing and sharing Deadline Cloud job bundles directly to a queue.
Copilot can now signal when a pull request is ready for approval.
Adds optional DryRun parameter to API calls for permission and input validation without executing the operation.
Adds support for monitoring self‑managed PostgreSQL databases on EC2 via CloudWatch Database Insights
Fixed chrome.tabs.query to return tab URL and title only when appropriate permissions are granted, aligning behavior with tabs.get.
Fixed chrome.tabs.query() to return URL and title only for extensions with proper permissions, matching tabs.get behavior.
AWS Marketplace now waives the listing fee (0%) for professional services when bundled in a qualifying multi‑product solution.
AWS Backup now supports backing up more than 1,000 Amazon S3 buckets per account, matching the S3 bucket quota.
Fixed chrome.tabs.query to return URL and title only for extensions with proper permissions, aligning behavior with tabs.get.
Version 16.0.0 released.
Introduces compact mode for analytics dashboards, increasing data density and reducing scrolling.
Add ability to block/unblock users directly from discussion comments in personal repositories.
Added is_collaborated_content_available_when_owner_inactive property to the iOS SDK.
Release of Box Java SDK v5.15.1.
Added is_collaborated_content_available_when_owner_inactive property to the SDK
Added is_collaborated_content_available_when_owner_inactive property for handling inactive owners.
Fixed broken link in the README documentation.
Added new fields to Hubs in the SDK
Fix null chunk issue when uploading files whose size is an exact multiple of the part size.
Added `is_collaborated_content_available_when_owner_inactive` property to Box SDK generator.
Added two missing event types to boxsdkgen
Add React tag details screen for managing tags
Added new CLI capabilities: asset source view definition, typed view helpers, and web worker helpers.
Added OneNote integration
Amazon MWAA now supports Apache Airflow 3.3.1, adding stateful tasks, multi‑language SDK, and other new features
Introduces auto‑renewal for private offers, letting sellers define renewal terms and pricing behavior
Security updates: upgraded etcd client to v3.7.1 and pkcs12 to v0.7.2, plus Go bump to 1.26.7 to address known vulnerabilities.
Claude Fable 5.1, Anthropic's latest Mythos model, is now generally available in GitHub Copilot.
Claude Fable 5.1 is now generally available on Amazon Bedrock in AWS GovCloud (US) for regulated‑industry customers.
Claude Fable 5.1 is now generally available on AWS, delivering frontier‑level intelligence for coding, scientific research, and enterprise workflows with better reasoning and fewer confident errors.
Disable HTML rendering by default in exception page tooltips to mitigate XSS risks.
Improve performance by avoiding quadratic wildcard rule expansion and add several queue enhancements (worker stop reason, createPayloadUsing, totalXSize methods, visibility handling for fallback disks).
Elasticsearch version 8.19.21 released.
Elasticsearch 9.4.6 release is now available.
Adds repeatable --attach flag to upload local images or videos
Release v26.3.28.5 LTS
Added new AI model providers (Moonshot, MiniMax, Qwen Cloud) and background execution mode for sub‑agent delegation, plus UI enhancements like credential status strip, adaptive chat input, floating markdown toolbar, and a Contact Support...
LTS release v26.8.2.7
Added warm-up period configuration for metric and log alarms to delay evaluation after creation
Release version v26.7.6.57 marked as stable.
Added support for SQL Server 2019 CU32+GDR (RDS version 15.00.4480.2.v1) and SQL Server 2022 CU25+GDR (RDS version 16.00.4262.2.v1) in Amazon RDS Custom.
Buildkite Agent v4 becomes the default stable release for new installs and upgrades on the latest/stable channels.
GA of Go 1.27 runtime for App Engine and Cloud Run, new AlloyDB backup vault with CMEK and cross‑region backup support, and Cloud Run Agent Identity preview for secure AI agent authentication.
Release version v26.6.4.55 marked as stable.
Adds SSH access to running Linux hosted jobs via the Buildkite CLI (bk job ssh).
Restored the pnpm executable target without a file extension on POSIX systems, allowing seamless upgrades from pnpm 12.1 and earlier to newer pnpm 12 releases.
Adds support for resolving workspace dependencies via the `workspace:` protocol in catalogs.
Added support for animations and interactions in custom generative plugins and shaders
Logs and metrics are now enabled by default
General Availability of Advanced MFA Configurations, letting customers fully customize MFA journeys.