From 5c91a345e930ff6cdd0602a7bac77b7aaa2a7530 Mon Sep 17 00:00:00 2001 From: ildyria Date: Wed, 23 Sep 2026 00:09:25 +0200 Subject: [PATCH 1/3] More fixes & credits --- src/content/docs/docs/getting-started/releases.md | 10 ++++++++++ src/data/releases.ts | 1 + src/pages/support.astro | 7 +++++++ 3 files changed, 18 insertions(+) diff --git a/src/content/docs/docs/getting-started/releases.md b/src/content/docs/docs/getting-started/releases.md index cafaee97..361b3535 100644 --- a/src/content/docs/docs/getting-started/releases.md +++ b/src/content/docs/docs/getting-started/releases.md @@ -11,6 +11,16 @@ sidebar: ## Version 7 +### v7.8.5 + +Released on September 18th, 2026 + +#### Fixes translations not applied + +A race condition was occuring that caused translations not to be applied correctly. + +* `fix` #4757 : Fix language by @ildyria + ### v7.8.4 Released on September 17th, 2026 diff --git a/src/data/releases.ts b/src/data/releases.ts index fe0bafd4..e5e329f9 100644 --- a/src/data/releases.ts +++ b/src/data/releases.ts @@ -8,6 +8,7 @@ export interface Release { // Release data extracted from releases.md export const releases: Release[] = [ + { version: 'v7.8.5', date: 'Sep 18, 2026', title: 'Fixes', type: 'bugfix', highlights: ['Fixes translations not applied'] }, { version: 'v7.8.4', date: 'Sep 17, 2026', title: 'Fixes', type: 'bugfix', highlights: ['Cover for locked albums', 'improved embeddings'] }, { version: 'v7.8.3', date: 'Sep 1, 2026', title: 'Hotfix', type: 'security', highlights: ['Fixes four vulnerabilities reported by researchers from the University of Sydney'] }, { version: 'v7.8.2', date: 'Aug 30, 2026', title: 'Fixes', type: 'bugfix', highlights: ['Fixes missing migration on album configuration for photo ordering'] }, diff --git a/src/pages/support.astro b/src/pages/support.astro index 6f111b37..91075e82 100644 --- a/src/pages/support.astro +++ b/src/pages/support.astro @@ -298,6 +298,13 @@ const metadata = { alt: '5ud0er', }, }, + { + title: 'WojciechCiemski', + image: { + src: 'https://avatars.githubusercontent.com/u/223643001?v=4', + alt: 'WojciechCiemski', + }, + }, { title: 'UmutCPP (Ahmet Umut Oğurlu)', image: { From fc8f22c2b161ef24a453ce31995c77dcaa9301cf Mon Sep 17 00:00:00 2001 From: ildyria Date: Fri, 25 Sep 2026 15:57:10 +0200 Subject: [PATCH 2/3] Version 7.9.0 --- .../docs/docs/getting-started/releases.md | 32 +++++++++++++++++++ src/data/releases.ts | 1 + src/pages/support.astro | 10 ++++-- 3 files changed, 41 insertions(+), 2 deletions(-) diff --git a/src/content/docs/docs/getting-started/releases.md b/src/content/docs/docs/getting-started/releases.md index 361b3535..d01985a4 100644 --- a/src/content/docs/docs/getting-started/releases.md +++ b/src/content/docs/docs/getting-started/releases.md @@ -11,6 +11,38 @@ sidebar: ## Version 7 +### v7.9.0 + +Released on September 25th, 2026 + +#### New Features and security fixes + +As we are getting closer to the next major version, we are not limiting ourselves to simple patch releases as we believe that our contributors deserves their changes to be made available without much delays. As such, this release introduces 3 new features. + +First of all the ability to set a prefix on your S3 buckets paths, this aims to help you sharing the same bucket but having different Lychee backend. Secondly, @haydenmc added the Kanidm OAuth Provider, and finally @matthewbolding added the setting to show the highest-quality image in the full-screen viewer. + +Aside from those, we fixed quite a few vulnerabilities that have been reported to us by @adrbogacz and @ + +* `new` #4759 : Add support for S3 object prefixes by @hyperdefined. +* `new` #4762 : Add Kanidm OAuth Provider by @haydenmc. +* `new` #4780 : Add setting to show highest-quality image in the full-screen viewer by @matthewbolding. +* `fix` #4758 : Fix browser tab title getting stuck on a photo's filename by @matthewbolding. +* `fix` #4761 : Fix map on first sidebar load by @ildyria. +* `fix` #4766 : Do not make unvalidated photos downloadable by @ildyria. +* `fix` #4767 : Fix Editing photos from the unsorted which are not your own by @ildyria. +* `fix` #4765 : Fix remaining links when removing an Access Permission by @ildyria. +* `fix` #4778 : Fix IODR on Webauthn aliases by @ildyria. +* `fix` #4777 : Implement search v3 + fixes search v2 by @ildyria. +* `fix` #4783 : Fix leaky rss by @ildyria. + +First we would like to thank @WojciechCiemski and @adrbogacz for reporting a vulnerabilies in our eco-system. +We are working hard to keep Lychee secure and their invisible help is greatly appreciated. + +#### New Contributors +* @hyperdefined made their first contribution in https://github.com/LycheeOrg/Lychee/pull/4759 +* @haydenmc made their first contribution in https://github.com/LycheeOrg/Lychee/pull/4762 + + ### v7.8.5 Released on September 18th, 2026 diff --git a/src/data/releases.ts b/src/data/releases.ts index e5e329f9..cd5f6e83 100644 --- a/src/data/releases.ts +++ b/src/data/releases.ts @@ -8,6 +8,7 @@ export interface Release { // Release data extracted from releases.md export const releases: Release[] = [ + { version: 'v7.9.0', date: 'Sep 25, 2026', title: 'Features and fixes', type: 'feature', highlights: ['Added support for S3 object prefixes', 'Kanidm OAuth Provider', 'Setting to show highest-quality image in full-screen viewer'] }, { version: 'v7.8.5', date: 'Sep 18, 2026', title: 'Fixes', type: 'bugfix', highlights: ['Fixes translations not applied'] }, { version: 'v7.8.4', date: 'Sep 17, 2026', title: 'Fixes', type: 'bugfix', highlights: ['Cover for locked albums', 'improved embeddings'] }, { version: 'v7.8.3', date: 'Sep 1, 2026', title: 'Hotfix', type: 'security', highlights: ['Fixes four vulnerabilities reported by researchers from the University of Sydney'] }, diff --git a/src/pages/support.astro b/src/pages/support.astro index 91075e82..bb3c36bd 100644 --- a/src/pages/support.astro +++ b/src/pages/support.astro @@ -416,8 +416,14 @@ const metadata = { src: 'https://avatars.githubusercontent.com/u/91473103?v=4', alt: '7thParkk', }, - } - + }, + { + title: 'adrbogacz', + image: { + src: 'https://avatars.githubusercontent.com/u/9935142?v=4', + alt: 'adrbogacz', + }, + }, ]} /> From 4ce5e3ef609d73abf14eef0513f3124fea5ba397 Mon Sep 17 00:00:00 2001 From: ildyria Date: Fri, 25 Sep 2026 16:16:28 +0200 Subject: [PATCH 3/3] fixes --- src/content/docs/docs/getting-started/releases.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/content/docs/docs/getting-started/releases.md b/src/content/docs/docs/getting-started/releases.md index d01985a4..ff0cce55 100644 --- a/src/content/docs/docs/getting-started/releases.md +++ b/src/content/docs/docs/getting-started/releases.md @@ -17,11 +17,11 @@ Released on September 25th, 2026 #### New Features and security fixes -As we are getting closer to the next major version, we are not limiting ourselves to simple patch releases as we believe that our contributors deserves their changes to be made available without much delays. As such, this release introduces 3 new features. +As we are getting closer to the next major version, we are not limiting ourselves to simple patch releases as we believe that our contributors deserve their changes to be made available without much delay. As such, this release introduces 3 new features. First of all the ability to set a prefix on your S3 buckets paths, this aims to help you sharing the same bucket but having different Lychee backend. Secondly, @haydenmc added the Kanidm OAuth Provider, and finally @matthewbolding added the setting to show the highest-quality image in the full-screen viewer. -Aside from those, we fixed quite a few vulnerabilities that have been reported to us by @adrbogacz and @ +Aside from those, we fixed quite a few vulnerabilities that have been reported to us. They will be published shortly with their respective GHSA. * `new` #4759 : Add support for S3 object prefixes by @hyperdefined. * `new` #4762 : Add Kanidm OAuth Provider by @haydenmc.