- Critical remote authentication bypass (CVE‑2025‑49825) fixed in SSH certificate authority handling.
- Multiple bug fixes across components (DynamoDB inventory duplication, integration deletion, pagination APIs, desktop MFA redirects, Kubernetes memory leak, tbot auth handling, Windows installer path, etc.).
- New features added: SSO MFA for desktop access, tsh db exec with single MFA prompt, AWS KMS multi‑region key support, Oracle SCAN support, and UI view for active bot instances.