Skip to content

Releases: cloudreve/cloudreve

4.19.1

Choose a tag to compare

@HFO4 HFO4 released this 18 Sep 12:44
  • Fixed Cannot send Emails in some cases (#3575)
  • Fixed WOPI apps stopped working (#3577)

4.19.0

Choose a tag to compare

@HFO4 HFO4 released this 16 Sep 02:08
  • Added [Pro] "Shared with me" can be configured to view all shared files based on ACL (#3553)
    • Details image
  • Added [Pro] New "List" permission setting to precisely control directory sharing permissions
    • Details image
  • Added [Pro] Support for adding multiple third-party authentications of the same type (#3510)
    • Details image
  • Added [Pro] Archive and delete audit logs (#3556)
  • Added [Pro] Manually complete and fulfill pending orders in the admin panel (#3509)
  • Added New magic variables {$theme} and {$dark} in custom file apps to distinguish dark mode (cloudreve/frontend#347 @krom)
  • Optimized Force disable parallel chunk uploads when "Pre-allocate disk space" is not enabled (#3501 @YUDONGLING)
  • Fixed Queue Worker count setting not taking effect (#3566)
  • Fixed Handling of WebDAV MOVE operations with duplicate names does not comply with specifications (#3537)
  • Fixed [Pro] Other users cannot upload files in shared directories when using a load-balancing storage policy (#3533)
  • Fixed Incomplete input validation when editing user information in the admin panel (#3563)
  • Fixed A security vulnerability; details will be disclosed in 30 days. Thanks to @akinerkisa for reporting.

4.18.0

Choose a tag to compare

@HFO4 HFO4 released this 15 Jul 08:49
  • New: One-click empty recycle bin (#3473)
    • Details image
  • New: [Pro] Pin shared folders or files to a user's sidebar via group settings
    • Details image
  • New: Optionally use __ as the separator when overriding configuration items with environment variables (#3498)
  • Improved: Automatically clear the input after an incorrect CAPTCHA entry (cloudreve/frontend#343 @jcbl1)
  • Fixed: [Community Edition] Thumbnails could not be generated when accessed via share links (#3495)
  • Fixed: Uploads failed on the local storage policy after enabling parallel chunked uploads
  • Fixed: Multiple security vulnerabilities. Full details will be disclosed after 30 days. Thanks to @newugly, @de3erve-hunter, and @tonghuaroot for reporting.

4.17.0

Choose a tag to compare

@HFO4 HFO4 released this 26 Jun 05:04
  • New: Enable displaying thumbnails in list view (#3453)
    • Details image
  • New: [Pro] Configure initial user group mapping for OIDC login (#3434)
    • Details image
  • New: Global toggle to expose or hide registered users' email addresses (#2930)
  • New: Arabic localization (#337 @ahmed-0011 @YUDONGLING)
  • Enhancement: Clickable site LOGO (#3457)
  • Fix: Multiple security vulnerabilities; detailed information will be disclosed in 30 days. Thanks to @riodrwn and @DavidCarliez for reporting.
  • Fix: Desktop client and other OAuth clients unable to use all API endpoints (#3471)

4.16.1

Choose a tag to compare

@HFO4 HFO4 released this 06 Jun 04:04
  • Fix: Multiple security vulnerabilities. Full details will be disclosed one month after this release. Thanks to @EaEa0001, @baradika, and @riodrwn for the responsible disclosures.

4.16.0

Choose a tag to compare

@HFO4 HFO4 released this 10 May 03:45
  • Added: Indicate download progress when batch downloading files to a local directory (cloudreve/frontend#332 @OnAirGame)
    Details
    image
  • Optimized: File list query speed when sorting by creation date
  • Optimized: Error handling for unexpected S3 Meta API responses (#3394)
  • Fixed: Invalid Cap CAPTCHA static resource URL (cloudreve/frontend#331 @1332881954)
  • Fixed: Page crashed when scrolling down with cursor pagination (cloudreve/frontend#330 @YUDONGLING)
  • Fixed: Page crashed when creating a "rating" type custom property (cloudreve/frontend#334 @YUDONGLING)
  • Fixed: No error prompt displayed when accessing an invalid share shortcut in the Community Edition (cloudreve/frontend#336 @AnranYus)
  • Fixed: Unable to send emails using email services such as Tencent Cloud SES (#3372 @WittF)
  • Fixed: Sorting by creation date did not respect the actual creation date of the files (#3437 @yindaheng98)
  • Fixed: Unable to copy exported images in the DrawIO editor (#3448)
  • Fixed: Incorrect display of the right-click menu when clicking on a file in full-text search results (#3385)
  • Fixed: Full-text search results included files from the recycle bin (#3386)

4.15.0

Choose a tag to compare

@HFO4 HFO4 released this 14 Mar 02:49
  • Added: [Pro] Generate direct links for directories, allowing access to all child files by appending their relative paths to the directory's direct link URL (#3174)
    Details
    image
    Note: This requires enabling the corresponding permissions in the user group settings.
  • Added: Set a specific file application as the global default opening method (#2304)
    Details
    image
  • Added: Batch edit custom props for multiple selected files in the list view (#3322)
  • Fixed: Automatically generated client secrets were invalid when creating OAuth applications (#3337)
  • Fixed: Page crashed when the number of deleted files exactly matched the pagination size (#3329)
  • Fixed: [Pro] Gift code usage status did not roll back after a verification failure (#3339)
  • Fixed: Incomplete file list displayed on the web interface under certain conditions when using the Windows client (#3330)
  • Fixed: Directories were incorrectly imported as 0-byte files under certain storage policies (#3347 @YUDONGLING)
  • Fixed: Unable to delete users under specific edge cases (#3354)
  • Fixed: Incorrect API response when batch deleting shares (#3350 @scholar7r)
  • Fixed: Inconsistent text descriptions on the settings page (cloudreve/frontend#328 @YUDONGLING)

4.14.1

Choose a tag to compare

@HFO4 HFO4 released this 15 Feb 01:39
  • Fix: incorrect document link for full-text search
  • Fix: panic when trying to transfer files in slave node

4.14.0

Choose a tag to compare

@HFO4 HFO4 released this 14 Feb 06:05
  • Full-Text Search and AI Semantic Search (#2895)
  • New: Edit custom file propertities directly in the list view (#3254)
    • Details image
  • New: Rename files directly in list or grid view
    • Details image
  • New: Option to configure clicking behavior on folders (enter folder or select folder) (#3266)
    • Details image
  • New: Rename files using the F2 shortcut (#3266)
  • Fix: Newly created OAuth applications missing openid scope (#3274)
  • Fix: [Pro] Storage policy relocation tasks in the admin dashboard fail to display the policy name (#3197)
  • Improvement: Admin dashboard Blob list tooltips no longer block the mouse cursor (cloudreve/frontend#326 @YUDONGLING)
  • Improvement: Added v4 tag to Docker images (#3284)

4.13.0

Choose a tag to compare

@HFO4 HFO4 released this 05 Feb 12:53

Caution

This release contains critical security updates for CVE-2026-25726; please update as soon as possible.
Updating to this version will cause the following unavoidable side effects:

  • All active login sessions will be invalidated;
  • Existing direct links for non-redirected local storage policies will become invalid (URLs containing ?sign=xxx);
  • Other signed temporary links that have not yet expired will become invalid (URLs containing ?sign=xxx).

  • If your database was first initialized with Cloudreve version >= 4.10.0, this security vulnerability does not affect you.
  • Specific details will be disclosed 60 days after this release.
  • Fix: Use cryptographically secure random number generator for sensitive fields (Kudos to @orenyomtov)
  • Improvement: File list tooltips should no longer obstruct downward mouse movement (#3170)
  • Improvement: Performance optimization for drag-selection of files
  • Fix: Unable to drag and drop files in list view (#2937)
  • Fix: Inaccessible direct links for newly created empty files (#3239)
  • Fix: 500 error when uploading to SeaweedFS S3 storage policies (#3265)
  • Fix: OAuth endpoint handling of code_challenge inconsistent with documentation (#3261)