# open-webui changelog > open-webui release notes. - Vendor: open-webui - Category: Developer Tools - Official site: https://github.com/open-webui/open-webui/releases/tag/v0.10.2 - Tracked by: What's New (https://whatsnew.fyi/product/open-webui) - Harvested from: GitHub (open-webui/open-webui) - Entries below: 10 (newest first) What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. ## Releases ### v0.11.0 - Date: 2026-07-27 - Version: v0.11.0 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.11.0 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.11.0 - **added** โ€” Redesigned interface with narrower conversation column, lighter typography, tidier spacing, consistent menus and dropdowns, clearly outlined text boxes, and rearranged settings - **added** โ€” Sub-agents that allow a model to hand parts of a task to background helper agents with their own tool-driven conversations, configurable through ENABLE_SUBAGENTS setting and concurrency, iteration, and system-prompt settings - **added** โ€” Folder pages where opening a folder takes you to its own page with paginated chat loading, sorting by title or last updated, and ability to start a new chat from the folder - **added** โ€” Chat timers that allow the assistant to set a timer bringing a prompt back into the conversation later after a delay or at a set time, with automatic dismissal if you read the chat or reply before it fires ###### Added - ๐ŸŽจ **Redesigned interface.** Open WebUI has been visually rebuilt from the ground up. All aspects of the User Interface, from the chat view to the admin panel. Now with a narrower conversation column, lighter typography, tidier spacing, consistent menus and dropdowns, clearly outlined text boxes, and settings rearranged. [Commit](https://github.com/open-webui/open-webui/commit/aedb6bef4e2eb12234c02085a545ff395d96db18), [Commit](https://github.com/open-webui/open-webui/commit/b3255a36569f295766271b8a2b0bd969b4083b9f), [Commit](https://github.com/open-webui/open-webui/commit/ba067258dea2229a9956077b3b0d7b1c68b56f66), [Commit](https://github.com/open-webui/open-webui/commit/8dd862d3383978f21111e63fb2d6029711abed9a), [Commit](https://github.com/open-webui/open-webui/commit/263bbc77d803e83b9af4b04c0cae29705af5f072), [Commit](https://github.com/open-webui/open-webui/commit/f8ea15b84a274712dca33daa970f63ed7368043e), [Commit](https://github.com/open-webui/open-webui/commit/9f17c5960a0e47a09773da4bba12997a31222fc8), [Commit](https://github.com/open-webui/open-webui/commit/6772b1cb4f4e0d3dc166956014e6e7b9bddc721a), [Commit](https://github.com/open-webui/open-webui/commit/d3fd860c131846a9458888f9c256a9a29f3767f2), [Commit](https://github.com/open-webui/open-webui/commit/f1584b5a3764f72de2de6caad507e7c39ad19c23), [Commit](https://github.com/open-webui/open-webui/commit/2e8d92c7b1a9bb8d35f4a27ba3c73368d735c480), [Commit](https://github.com/open-webui/open-webui/commit/e58a4633b15ae53d33fc3b46cb97c76d86be325f), [Commit](https://github.com/open-webui/open-webui/commit/04b146f2cec7e6a01e9d3590eb83655c128fa3c7), [Commit](https://github.com/open-webui/open-webui/commit/e5e2cd78769639b2df83776f1b991966f922f8b4), [Commit](https://github.com/open-webui/open-webui/commit/3316ba76aabe5429596ffd130fd36be4d5c3aa6c), [Commit](https://github.com/open-webui/open-webui/commit/6fcb38fe2e0aded9b85f655cd8f3279e9f4e765e), [Commit](https://github.com/open-webui/open-webui/commit/421da674468f638f72cc5266c5a3874aa3bca3b7), [Commit](https://github.com/open-webui/open-webui/commit/d0bea60581eaa07d41f92ad8f86007e83247e061), [Commit](https://github.com/open-webui/open-webui/commit/21e180182a5096481d4cbb1a8f94212c0a515a40), [Commit](https://github.com/open-webui/open-webui/commit/d027a32ed134ae104f2f142ba45ff38e56215c5f), [Commit](https://github.com/open-webui/open-webui/commit/437c06c4795a72700295d7690d5fd65d1153372c), [Commit](https://github.com/open-webui/open-webui/commit/1bf05ebc7d135d74969438824778c9f73243ba8d), [Commit](https://github.com/open-webui/open-webui/commit/fd07e3a8e3e619f3712067765b416f0925fa80d3), [Commit](https://github.com/open-webui/open-webui/commit/d3ea51fd466a8741afc4dfd4f0d0f2f77fb6467f), [Commit](https://github.com/open-webui/open-webui/commit/4da2ff2655d9abb851805da127cf60b4d9ad1aa7), [Commit](https://github.com/open-webui/open-webui/commit/2fcb36267f034f2b83f936bfacedc20b680a2710), [Commit](https://github.com/open-webui/open-webui/commit/1428a4ddce4998cb3664a5ce37e176442dd426fa), [Commit](https://github.com/open-webui/open-webui/commit/bc8d24c951e9a2c973fc2dd1f2832a2b0855bc0e), [Commit](https://github.com/open-webui/open-webui/commit/704d07e9a20a830aad7bfc5131b0d92621cf0691), [Commit](https://github.com/open-webui/open-webui/commit/e88d2e053c2a63cce3823c9b6006f4a184c4fef2), [Commit](https://github.com/open-webui/open-webui/commit/6940297486d4a5de127efd1a5148b0adcebe87e3), [Commit](https://github.com/open-webui/open-webui/commit/9ca8cf528af1c49da3f0a2bc3c6ca95c1dedbcf5), [Commit](https://github.com/open-webui/open-webui/commit/c4efa81d08c425678c810c51b4d62716e1e57117), [Commit](https://github.com/open-webui/open-webui/commit/bb12b1a18b77d80829cedb2d5bf965808222415b), [Commit](https://github.com/open-webui/open-webui/commit/49abfbdd155dc22882fdcb09989e4f4964db16ee), [#27178](https://github.com/open-webui/open-webui/pull/27178), [Commit](https://github.com/open-webui/open-webui/commit/dcc7fb1e8ef144205531829f8a56e52171c4d63d) _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.11.0]_ ### v0.10.2 - Date: 2026-07-01 - Version: v0.10.2 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.10.2 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.10.2 - **added** โ€” Models that emit thinking or reasoning now show that content as it streams, and it renders correctly in the chat overview and in exported conversations - **added** โ€” Dragging a folder into a knowledge base, or syncing one, now recreates its subfolder structure instead of flattening everything into loose files - **added** โ€” Administrators can now keep memory tools available while choosing not to add stored memories to the system context, using the new 'Memory System Context' toggle in admin settings - **added** โ€” Automatically saved memories now focus on enduring details like preferences and goals and skip one-off things like meals, routine events, or passing mood unless you ask to remember them - **added** โ€” OpenAI-compatible speech-to-text can now send audio as either a multipart upload or base64 JSON, selectable in admin audio settings - **added** โ€” Administrators can now set per-connection Ollama and OpenAI API configurations through the 'OLLAMA_API_CONFIGS' and 'OPENAI_API_CONFIGS' environment variables - **added** โ€” Failed Ollama and OpenAI-compatible provider requests now emit a structured event describing the error type, provider, and status, giving administrators clearer visibility into upstream failures - **added** โ€” Administrators can now define evaluation arena models through the 'EVALUATION_ARENA_MODELS' environment variable - **added** โ€” With high-contrast mode enabled, the currently selected chat in the sidebar now stands out with stronger colors, making it easier to tell which chat is active - **fixed** โ€” A single request returning an authorization error no longer signs you out while your session is still valid, since the app now confirms the session status before redirecting to login - **fixed** โ€” Domain allow and block rules for web search results are now matched against the host, closing a gap where some URLs could slip past the filter - **fixed** โ€” Image generation workflows are no longer written to server logs at the default log level, keeping user-authored prompt content out of operator-visible logs - **fixed** โ€” Upgrading an existing SQLite database no longer crashes during the user-table migration or corrupts saved user settings, resolving failures that could block startup or break login after an upgrade - **fixed** โ€” Non-admin users can once again save their interface settings, such as the default model and theme, which previously failed with a server error - **fixed** โ€” Chats in the sidebar now show when they were last active instead of when they were created, so the time label matches their position in the list and refreshes after each new message - **security** โ€” This release includes security and access-control fixes ###### Added - ๐Ÿ’ญ **Streamed reasoning display.** Models that emit thinking or reasoning now show that content as it streams, and it renders correctly in the chat overview and in exported conversations. [Commit](https://github.com/open-webui/open-webui/commit/0b75445ff9a42e37640c034812d0de9b84039e60), [Commit](https://github.com/open-webui/open-webui/commit/af1c0eee89810fa4c36e3eb7e4eba6de685bd7ca), [Commit](https://github.com/open-webui/open-webui/commit/4b08d65597e5b634b7191b0bd6d28feeafcc2a48), [Commit](https://github.com/open-webui/open-webui/commit/fa2abe4cb6a085a4c9045bf8d8ff4b6beffdef6a) - ๐Ÿ—‚๏ธ **Folder uploads to knowledge bases.** Dragging a folder into a knowledge base, or syncing one, now recreates its subfolder structure instead of flattening everything into loose files. [#26130](https://github.com/open-webui/open-webui/issues/26130), [Commit](https://github.com/open-webui/open-webui/commit/2ed8934f5b2bc8a11c74ef2f34cdb62ef024809e) - ๐Ÿง  **Memory system context toggle.** Administrators can now keep memory tools available while choosing not to add stored memories to the system context, using the new 'Memory System Context' toggle in admin settings. [Commit](https://github.com/open-webui/open-webui/commit/4067e357b2ff9e2fb59866d24656e832908fb6fe) - ๐Ÿงน **Tidier automatic memories.** Automatically saved memories now focus on enduring details like preferences and goals and skip one-off things like meals, routine events, or passing mood unless you ask to remember them. [Commit](https://github.com/open-webui/open-webui/commit/80af65c24adac5140a39a2b5687a3b669b86719f) - ๐ŸŽ™๏ธ **Speech-to-text request format.** OpenAI-compatible speech-to-text can now send audio as either a multipart upload or base64 JSON, selectable in admin audio settings. [Commit](https://github.com/open-webui/open-webui/commit/989c6c13f5d4c5cc255aec77aea14725104d9cb3) - ๐Ÿงฐ **API configs via environment.** Administrators can now set per-connection Ollama and OpenAI API configurations through the "OLLAMA_API_CONFIGS" and "OPENAI_API_CONFIGS" environment variables. [Commit](https://github.com/open-webui/open-webui/commit/19d8f03bd2c64013b510f2a0eeb3513d452814a3) - ๐Ÿ“ก **Provider failure events.** Failed Ollama and OpenAI-compatible provider requests now emit a structured event describing the error type, provider, and status, giving administrators clearer visibility into upstream failures. [Commit](https://github.com/open-webui/open-webui/commit/4351c78b1e45bb0c5824f9d9eb911b395e343646) - ๐ŸŸ๏ธ **Arena models via environment.** Administrators can now define evaluation arena models through the "EVALUATION_ARENA_MODELS" environment variable. [#26174](https://github.com/open-webui/open-webui/issues/26174) - โ™ฟ **Clearer high-contrast sidebar selection.** With high-contrast mode enabled, the currently selected chat in the sidebar now stands out with stronger colors, making it easier to tell which chat is active. [#26469](https://github.com/open-webui/open-webui/issues/26469), [Commit](https://github.com/open-webui/open-webui/commit/52ee5cb1b3aa8a8ad40b23d72d82db7c3522dbf8) - ๐Ÿ”„ **General improvements.** Various improvements were implemented across the application to enhance performance, stability, and security. - ๐ŸŒ **Translation updates.** Translations for Thai, Portuguese (Brazil), Catalan, and Spanish were enhanced and expanded. ###### Fixed - ๐Ÿ›ก๏ธ **Security Advisory**: This release includes security and access-control fixes. We recommend updating production deployments at your earliest convenience. Not all security fixes in this version may be enumerated in the fixed section โ€” some may be withheld for a short time to give administrators time to upgrade. [Advisories](https://github.com/open-webui/open-webui/security) - ๐Ÿ” **Fewer unexpected logouts.** A single request returning an authorization error no longer signs you out while your session is still valid, since the app now confirms the session status before redirecting to login. [Commit](https _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.10.2]_ ### v0.10.1 - Date: 2026-06-29 - Version: v0.10.1 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.10.1 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.10.1 - **fixed** โ€” Shared folder read-only chats no longer sign users out when a resource-level access error is returned ###### Fixed - ๐Ÿค **Shared folder read-only chats no longer sign users out.** Opening or reading chats from shared folders now keeps the current session active when a resource-level access error is returned, instead of incorrectly showing "Session expired. Please sign in again." ### v0.10.0 - Date: 2026-06-29 - Version: v0.10.0 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.10.0 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.10.0 - **added** โ€” Share folders with your team with read or write access, with administrators controlling folder sharing permissions - **added** โ€” Automatic context compaction for long chats that summarizes conversations past a configurable token threshold - **added** โ€” Open WebUI Computer agent support to connect and run full agent sessions on your own machine - **added** โ€” Much faster hybrid search on large knowledge bases by running natively in the database on pgvector setups - **added** โ€” External knowledge bases backed by configurable external retrieval sources - **added** โ€” Reworked memory system with distinct memory types for long-lived personal memories and per-conversation context - **added** โ€” Event function plugin primitive that hooks into system events like sign-ups, configuration changes, file uploads, and deletions ###### Added - ๐Ÿค **Share folders with your team.** You can now share a folder and the chats inside it with specific users, groups, or everyone, with read or write access; people you share with see shared folders in their sidebar and open the chats in a read-only view when they are not the owner, and administrators control who is allowed to share folders with a new "Folders Sharing" permission that is off by default. [Commit](https://github.com/open-webui/open-webui/commit/5019af79a0c45743ede8c9ff37d68f768e7f6174), [Commit](https://github.com/open-webui/open-webui/commit/38920c0ed1f6ad5fe3bb9d12898fa968ead3634a), [Commit](https://github.com/open-webui/open-webui/commit/d65ac445a43348c5f0323d54c37397ae7f483cb8), [Commit](https://github.com/open-webui/open-webui/commit/c783fd30f20d6be5028cf337bc5e5c2f9afbd3f8), [Commit](https://github.com/open-webui/open-webui/commit/45fcf272ef51c84cb01c1454589da3f98e4adc2c), [Commit](https://github.com/open-webui/open-webui/commit/76854d14246660af8222a5302513020e1f36c4f3), [Commit](https://github.com/open-webui/open-webui/commit/084d040e220ee39f62757d928d839646e813fb25), [Commit](https://github.com/open-webui/open-webui/commit/10558173fb155c63403aa8d80f16f8a3ccfa72a6) - ๐Ÿ—œ๏ธ **Automatic context compaction for long chats.** Conversations that grow past a configurable token threshold can now be summarized automatically so they stay within a model's context window, with a notification shown while it happens; administrators can enable it, set the threshold, customize the summarization prompt, and lower the threshold per model. It is off by default. [Commit](https://github.com/open-webui/open-webui/commit/3f0c0e0a0ddff841b015f96f9649c6999a435c73), [Commit](https://github.com/open-webui/open-webui/commit/7f08376f0c06e1a7fba983a2fa93deb8dfbe7cb0), [Commit](https://github.com/open-webui/open-webui/commit/8934bfb04bf366aece872028944e280c25e36d3e), [#19594](https://github.com/open-webui/open-webui/issues/19594) - ๐Ÿ–ฅ๏ธ **Open WebUI Computer agent support.** Open WebUI can now connect to Open WebUI Computer through its OpenAI-compatible gateway, letting chats run full agent sessions on your own machine with file, terminal, git, and web access. [GitHub](https://github.com/open-webui/computer) - ๐Ÿš€ **Much faster hybrid search on large knowledge bases.** Hybrid search now runs natively in the database on pgvector setups instead of loading an entire collection into memory, so querying large knowledge bases is dramatically faster. [Commit](https://github.com/open-webui/open-webui/commit/223f484ded01d092979693341dc03351a9fa17fa), [#20737](https://github.com/open-webui/open-webui/discussions/20737) - ๐Ÿ—‚๏ธ **External knowledge bases.** Knowledge bases can now be backed by an external retrieval source through configurable external knowledge connections, so you can search an existing external system from chat instead of only Open WebUI's built-in store. [Commit](https://github.com/open-webui/open-webui/commit/15c7e374384488effc3d6059d09b3a8aa79c618d) - ๐Ÿง  **Reworked memory system.** Memory has been overhauled with distinct memory types โ€” long-lived personal memories and per-conversation context โ€” managed through a structured add, update, and delete flow, giving models a more reliable way to remember and apply what they've learned about you. [Commit](https://github.com/open-webui/open-webui/commit/dbdcfd8c6080c284024052a482e589de226dbf05), [Commit](https://github.com/open-webui/open-webui/commit/7e13fd7ad19c28ba34502bde6c709665f7a6808c), [Commit](https://github.com/open-webui/open-webui/commit/2560533c1a8a2b2a0f7b47becf3703031053ad30), [Commit](https://github.com/open-webui/open-webui/commit/8977a10a2b1e150393635dc5c24e59660d0f2da9), [Commit](https://github.com/open-webui/open-webui/commit/260f3c3a22c55f15ca8f06c5314b23f2a9eb1739), [Commit](https://github.com/open-webui/open-webui/commit/b0487dd6dd942a757828a25aba92e9feef685275), [Commit](https://github.com/open-webui/open-webui/commit/a285a390c12e27e614d1ba9ffb92d1a0e _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.10.0]_ ### v0.9.6 - Date: 2026-06-01 - Version: v0.9.6 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.6 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.6 - **added** โ€” Official knowledge base sync tool oikb that keeps a knowledge base in sync with a local directory, GitHub repo, S3 bucket, Confluence space, or more than 40 other sources - **added** โ€” Smart directory sync for knowledge bases with file checksum comparison, incremental uploads, cleanup of removed files, and automatic directory structure mirroring - **added** โ€” Knowledge base folders for organizing files into nested folders with breadcrumb navigation - **added** โ€” Filesystem tool for knowledge bases enabled via ENABLE_KB_EXEC environment variable allowing AI models to browse and search using ls, cat, grep, find, head, tail, and sed commands - **added** โ€” File renaming capability in knowledge bases with updates reflected wherever the file is referenced - **added** โ€” Emoji picker in message input via a new button in the rich text formatting toolbar - **added** โ€” Per-chat skills toggle to turn skills on or off for a conversation directly from the chat Integrations menu - **added** โ€” Access preview for users and groups allowing administrators to see which models, knowledge bases, and tools a user or group can access - **added** โ€” Configurable knowledge base file page size for administrators to request larger page sizes when listing knowledge base files through the API - **added** โ€” Persistent processing indicator for knowledge files that remains visible across page reloads - **added** โ€” MinerU file type configuration via MINERU_FILE_EXTENSIONS setting to process DOCX, PPTX, XLSX, and other formats beyond PDF ###### Added - ๐Ÿ“ฆ **Official knowledge base sync tool.** A new companion tool from Open WebUI, oikb, keeps a knowledge base in sync with a local directory, GitHub repo, S3 bucket, Confluence space, or any of more than 40 other sources, uploading only new and changed files using the incremental sync support added in this release. [oikb](https://github.com/open-webui/oikb) - ๐Ÿ“‚ **Smart directory sync for knowledge bases.** Local directories can now be synced into a knowledge base in one action: file checksums are compared against what's already stored, and only added or modified files are uploaded while removed files and orphaned subdirectories are cleaned up, with the directory structure mirrored automatically and per-file progress shown throughout. [#19190](https://github.com/open-webui/open-webui/issues/19190), [#19394](https://github.com/open-webui/open-webui/issues/19394), [Commit](https://github.com/open-webui/open-webui/commit/60c9db1cb81d021589cb49bee8744a799b51211f), [Commit](https://github.com/open-webui/open-webui/commit/73bdf86766d3f44467cdec436786fe089481baf3), [Commit](https://github.com/open-webui/open-webui/commit/9835b3f1dd7aa9c92ff08a634a0f97cc2a046e42), [Commit](https://github.com/open-webui/open-webui/commit/97252fa609440573251d8e75090f347ed1e51e1d), [Commit](https://github.com/open-webui/open-webui/commit/8f2d346e10c47b57bf6b5a6aa02d453488a88b89), [Commit](https://github.com/open-webui/open-webui/commit/1527eb6e01d441225c979d12d78b7625edf1086f) - ๐Ÿ—‚๏ธ **Knowledge base folders.** Files inside a knowledge base can now be organized into nested folders, with breadcrumb navigation that makes it much easier to manage and find content in large collections. [Commit](https://github.com/open-webui/open-webui/commit/c2cbc47ca76ebfa21e1d36279dbd859283cbbfb1), [Commit](https://github.com/open-webui/open-webui/commit/ab0ee858b73738c5b77d1d455e66e66bc61df1c4), [Commit](https://github.com/open-webui/open-webui/commit/2ad327a4dce64a8eedf5eb41c73b8520344fdd82), [Commit](https://github.com/open-webui/open-webui/commit/171150c1e12b5713f77a5ea0dd19c6581c7bef2e), [Commit](https://github.com/open-webui/open-webui/commit/e7d2ddbb1d14c03a52797751d24a98132aac0cd8), [Commit](https://github.com/open-webui/open-webui/commit/32a417bbf66ed28a5ca8a759ad3a87b2a2aa358a) - ๐Ÿงฐ **Filesystem tool for knowledge bases.** A new built-in tool, enabled via the "ENABLE_KB_EXEC" environment variable, lets AI models browse and search knowledge base contents using familiar filesystem commands such as 'ls', 'cat', 'grep', 'find', 'head', 'tail', and 'sed', including pipes between them. [Commit](https://github.com/open-webui/open-webui/commit/5b125c24d4eae925d3287efa626595bab29d5c33), [Commit](https://github.com/open-webui/open-webui/commit/ecec86dd32aa396dd5a383e9be5b0f16c4346c48), [Commit](https://github.com/open-webui/open-webui/commit/9ef579ce4be5b82f9281b085a621fed5b04e0d26), [Commit](https://github.com/open-webui/open-webui/commit/2f642754ac6b8c430228a7fc289357a6c6652235), [Commit](https://github.com/open-webui/open-webui/commit/3b00e5721a60518ea317c4fd61a6d0d182961a2f), [Commit](https://github.com/open-webui/open-webui/commit/4e78b355efe0611f27fddef591c69f7c1259a9f6), [Commit](https://github.com/open-webui/open-webui/commit/74f95a9b0d6b89b241701422170d54e21e701baa), [Commit](https://github.com/open-webui/open-webui/commit/cc16e06c32de48bdf464db5814483a49f3527b63), [Commit](https://github.com/open-webui/open-webui/commit/1ea54c3217f487990b6a4c0f0d8ea675a479b6e1) - โœ๏ธ **File renaming in knowledge bases.** Files inside a knowledge base can now be renamed directly from the workspace, with the new name reflected wherever the file is referenced. [Commit](https://github.com/open-webui/open-webui/commit/3127f1b46255626ea92eb0b598e45078287303f1) - ๐Ÿ˜€ **Emoji picker in message input.** A new emoji button in the rich text formatting toolbar lets you browse and insert emojis directly into your messages. [#24704](https://github.com/open-webui/open-webui/pull/247 _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.6]_ ### v0.9.5 - Date: 2026-05-10 - Version: v0.9.5 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.5 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.5 - **security** โ€” Block 3xx redirects by default in all outbound HTTP requests via AIOHTTP_CLIENT_ALLOW_REDIRECTS environment variable to prevent redirect-based SSRF attacks - **security** โ€” Add Content-Security-Policy configuration for iframe content via IFRAME_CSP environment variable to restrict what LLM-generated or user-uploaded HTML can load and execute - **added** โ€” Allow users to independently disable Markdown rendering for user messages and assistant responses from Interface settings - **added** โ€” Enable administrators to inject custom response headers into terminal proxy responses via TERMINAL_PROXY_HEADERS environment variable - **added** โ€” Add channel streaming and tool support so mentioning a model in a Channel streams responses in real time with full chat completion pipeline capabilities - **fixed** โ€” Fix notes create and open reliability by correcting is_pinned parameter handling in SQLAlchemy model and NoteResponse - **security** โ€” Enforce sharing.public_skills permission when creating or updating skills to prevent non-admin users from making skills publicly accessible - **security** โ€” Enforce sharing.public_calendars permission when creating or updating calendars to prevent unauthorized public access - **security** โ€” Prevent feedback user attribution spoofing by blocking mass-assignment of user_id field in evaluation feedback submission - **security** โ€” Prevent image URL redirect-based SSRF by blocking 3xx redirects during base64 conversion in chat messages - **security** โ€” Enforce collection write-access checks in process_file and process_files_batch retrieval endpoints before embedding content - **security** โ€” Require workspace.tools or workspace.tools_import permission to update tool Python source code while allowing metadata edits - **security** โ€” Enforce message ownership for updating or deleting messages in group and DM channels - **security** โ€” Require write permission instead of read permission for pinning and unpinning messages on standard channels - **security** โ€” Validate generated image URLs through validate_url() before fetching to align with other image-loading defenses - **security** โ€” Strip params dict from per-model API endpoint responses for callers without write access to prevent exposure of model configuration - **security** โ€” Reject backslash, tab, CR, and LF characters in URL validation to close parser-confusion SSRF bypass ###### Added - ๐Ÿ›ก๏ธ **Redirect-based SSRF protection.** All outbound HTTP requests now block 3xx redirects by default via a new `AIOHTTP_CLIENT_ALLOW_REDIRECTS` environment variable, preventing redirect-based SSRF where a public URL silently redirects to internal addresses (RFC 1918, loopback, cloud-metadata endpoints). Affected call sites include web fetch, image loading, OAuth discovery, tool server execution, and code interpreter login. [#24491](https://github.com/open-webui/open-webui/pull/24491) - ๐Ÿ›ก๏ธ **Iframe content security policy.** Administrators can now configure a Content-Security-Policy for all srcdoc iframes (Artifacts, tool embeds, file previews, citation modals) via the `IFRAME_CSP` environment variable, restricting what LLM-generated or user-uploaded HTML can load and execute inside previews. [Commit](https://github.com/open-webui/open-webui/commit/3bba1c227059a44c7eeefa97b8c69a63bf4f3454) - ๐ŸŽ›๏ธ **Granular markdown rendering controls.** Users can now independently disable Markdown rendering for user messages and assistant responses from Interface settings, preventing unintended formatting when pasting text that contains Markdown-sensitive characters. [Commit](https://github.com/open-webui/open-webui/commit/4a1064cefd6f48a8b3b02cd31f77838c8802b635) - ๐Ÿ”ง **Terminal proxy response headers.** Administrators can now inject custom response headers into terminal proxy responses via the `TERMINAL_PROXY_HEADERS` environment variable (JSON object), enabling deployment-specific security headers like sandbox policies for proxied content. [Commit](https://github.com/open-webui/open-webui/commit/8d3133fe2835122bffaa4f2ce584730bc9c78981) - ๐Ÿ”Œ **Channel streaming and tool support.** Mentioning a model in a Channel now streams responses in real time and supports the full chat completion pipeline, including native and default function calling, built-in tools (web search, image generation), user tools, MCP tools, filters, and RAG knowledge injection โ€” the same capabilities available in standard chats. ###### Fixed - ๐Ÿ“ **Notes create and open reliability.** Creating new notes and opening existing notes no longer fails with a TypeError caused by `is_pinned` being passed to the SQLAlchemy model on create, and passed twice to `NoteResponse` on read. [#24484](https://github.com/open-webui/open-webui/issues/24484), [#24486](https://github.com/open-webui/open-webui/pull/24486) - ๐Ÿ” **Skill public sharing permission enforcement.** Creating or updating skills now filters access grants through the `sharing.public_skills` permission, preventing non-admin users from making skills publicly accessible without the required permission. [#24494](https://github.com/open-webui/open-webui/pull/24494) - ๐Ÿ” **Calendar public sharing permission enforcement.** Creating or updating calendars now filters access grants through a new `sharing.public_calendars` permission, preventing users from making calendars publicly readable or writable without explicit admin-granted sharing permission. [#24493](https://github.com/open-webui/open-webui/pull/24493) - ๐Ÿ” **Feedback user attribution spoofing.** Submitting evaluation feedback can no longer forge the `user_id` field through mass-assignment, preventing authenticated users from attributing ratings to other users and corrupting Elo leaderboard rankings and admin feedback exports. [#24508](https://github.com/open-webui/open-webui/pull/24508) - ๐Ÿ›ก๏ธ **Image URL redirect-based SSRF.** Chat messages containing image URLs no longer follow 3xx redirects to internal addresses during base64 conversion, closing the most reachable redirect-based SSRF variant that required no special permissions or feature flags. [#24524](https://github.com/open-webui/open-webui/pull/24524) - ๐Ÿ›ก๏ธ **Collection write access on file processing.** The `process_file` and `process_files_batch` retrieval endpoints now enforce collection write-access checks before embedding content, preventing authenticated users from injecting file content int _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.5]_ ### v0.9.4 - Date: 2026-05-09 - Version: v0.9.4 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.4 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.4 - **fixed** โ€” Chat scroll position on load by removing content-visibility: auto which was preventing the initial scroll from reaching the true bottom of the message history ###### Fixed - ๐Ÿ“œ **Chat scroll position on load.** Opening a chat conversation now reliably scrolls to the bottom of the message history, fixing a regression caused by `content-visibility: auto` where estimated element sizes prevented the initial scroll from reaching the true bottom. ### v0.9.3 - Date: 2026-05-09 - Version: v0.9.3 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.3 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.3 - **added** โ€” Voice Mode mute control with an 'M' shortcut and auto-unmute after assistant playback - **added** โ€” Faster prompt list loading for non-admin users with large prompt libraries through efficient database filtering - **added** โ€” Faster chat history loading from normalized message records when available - **added** โ€” Delete conversation directly from the chat menu with confirmation - **added** โ€” Scroll to Top shortcut in the chat menu for long conversations - **added** โ€” Calendar creation flow with dedicated modal and quick-add action in the calendar sidebar - **added** โ€” Unified model unload controls for administrators across supported providers with loaded-state indicators - **added** โ€” Health check responsiveness by avoiding blocking database calls and skipping sync session commit handling on probe paths - **added** โ€” Playground Controls toggle to adjust parameters like temperature per chat run without changing model-level defaults - **added** โ€” STT file extension controls for administrators to configure accepted audio file extensions - **added** โ€” Remembered call camera selection in Voice call overlay - **added** โ€” User group prompt variable '{{USER_GROUPS}}' for system and template prompts - **added** โ€” Public chat sharing permission control for administrators - **added** โ€” Profile image forwarding control with 'ENABLE_PROFILE_IMAGE_URL_FORWARDING' setting - **added** โ€” Dynamic header template variables for custom connection and tool server headers using chat, message, and user context - **added** โ€” MCP OAuth server URL setting for static OAuth tool server setups ###### Added - ๐Ÿ”‡ **Voice Mode mute control.** Voice Mode now includes a dedicated mute toggle with an "M" shortcut and auto-unmute after assistant playback, so you can prevent accidental interruptions from background noise without leaving the call overlay. [Commit](https://github.com/open-webui/open-webui/commit/072d2000f35a9f7b96342fa9bb28f925a92e7b4c), [#23832](https://github.com/open-webui/open-webui/issues/23832) - ๐Ÿš€ **Faster prompt list loading.** Prompt and prompt-tag pages now load much faster for non-admin users, even with large prompt libraries, because accessible prompts are filtered efficiently in a single database query. [#24288](https://github.com/open-webui/open-webui/pull/24288), [#24258](https://github.com/open-webui/open-webui/discussions/24258) - โšก **Faster chat history loading.** Chat history maps now load from normalized message records when available, reducing overhead for large conversations while preserving fallback behavior for legacy chats. [Commit](https://github.com/open-webui/open-webui/commit/485d689cfd1ef8b9e7f77cd7b535b8b8747dff1f), [#23159](https://github.com/open-webui/open-webui/pull/23159) - ๐Ÿ—‘๏ธ **Delete from conversation menu.** You can now delete the current conversation directly from the chat menu with a confirmation step, so cleanup is faster without searching through the full chat list. [Commit](https://github.com/open-webui/open-webui/commit/ef6d4f2d6c4b79c7e12e864a4fcb6a57ee84e5d4), [#24329](https://github.com/open-webui/open-webui/issues/24329) - โฌ†๏ธ **Scroll to Top shortcut.** Long conversations now include a Scroll to Top action in the chat menu when you are away from the top, making it much faster to jump back to the beginning of a chat. [Commit](https://github.com/open-webui/open-webui/commit/cdfcbc4af6e9aec835b88dc1806a2a46711e6947), [#24133](https://github.com/open-webui/open-webui/issues/24133) - ๐Ÿ“… **Calendar creation flow.** Users can now create calendars from a dedicated modal and a quick-add action in the calendar sidebar, making calendar setup faster from the calendar workspace. [Commit](https://github.com/open-webui/open-webui/commit/34146ab60f5dc1a2f8bdda8e61ce02797233a25d), [Commit](https://github.com/open-webui/open-webui/commit/1baf73bdd56f4e5ded12a4bd3c168f4d2a70b840) - ๐Ÿงญ **Unified model unload controls.** Administrators can now unload running models from the model selector across supported providers, with loaded-state indicators shown for Ollama and llama.cpp models. [Commit](https://github.com/open-webui/open-webui/commit/4fe2de78643c2213652190d2820f4e8d9f4f89cc) - โšก **Health check responsiveness.** Health and readiness probes now avoid blocking database calls and skip sync session commit handling on probe paths, improving responsiveness and reducing false unready transitions during database pressure. [#24380](https://github.com/open-webui/open-webui/pull/24380), [#24384](https://github.com/open-webui/open-webui/pull/24384) - ๐ŸŽ›๏ธ **Playground controls panel.** The Playground now includes a dedicated Controls toggle so you can adjust parameters like temperature and related settings per chat run without changing model-level defaults. [Commit](https://github.com/open-webui/open-webui/commit/c6763521c00f042a28829e33fb6f1b7355054046), [#24103](https://github.com/open-webui/open-webui/issues/24103) - ๐ŸŽ™๏ธ **STT file extension controls.** Administrators can now configure which audio file extensions are accepted for speech-to-text uploads, helping enforce safer and more predictable upload policies. [Commit](https://github.com/open-webui/open-webui/commit/4754ece4a2de5bba85a1d53af2dc8d24fdfb58be) - ๐Ÿ“ท **Remembered call camera selection.** Voice call overlay now remembers your last selected camera and restores it automatically when available, so you do not need to reselect it every time you start voice mode. [Commit](https://github.com/open-webui/open-webui/commit/5c3edc2539ac4d92c4cc2d37079549995203238a), [#24416](https://github.com/open-webui/open-webui/issues/24416) - ๏ฟฝ _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.3]_ ### v0.9.2 - Date: 2026-04-24 - Version: v0.9.2 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.2 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.2 - **added** โ€” Administrators can now use PaddleOCR-vl as a content extraction engine for document processing, with configurable API URL and token settings in document retrieval configuration - **added** โ€” Firecrawl web loading now uses the v2 API directly with proper retry logic, exponential backoff on rate limits, and configurable timeout handling - **added** โ€” Calendar events now support a configurable reminder_minutes parameter, allowing models to set custom reminder durations instead of the default 10-minute notification - **added** โ€” Administrators can now configure a custom header name for API key authentication via the CUSTOM_API_KEY_HEADER environment variable - **added** โ€” Users can now disconnect OAuth sessions for specific providers through a new API endpoint - **added** โ€” The Sources button now shows a +N badge when more than three sources are available - **changed** โ€” Model list API responses now strip base64 profile image data from paginated results and model tags are fetched via a dedicated efficient query - **changed** โ€” Default model profile images now redirect to a shared static path instead of reading files from disk per-request - **changed** โ€” Splash screen images are now prioritized earlier during page load with preload links - **changed** โ€” Streaming responses now stay more memory-efficient by preventing repeated cleanup callback registration during markdown updates - **changed** โ€” OpenTelemetry user gauge callbacks now use synchronous database queries directly to eliminate cross-thread async bridging issues - **fixed** โ€” Interrupted MCP tool calls no longer cause CPU spikes or runaway cleanup behavior - **fixed** โ€” Skills mentioned in persisted chats now inject into the system prompt reliably via server-side skill ID extraction from message tags - **fixed** โ€” The async database backend now uses psycopg (v3) instead of asyncpg, supporting native libpq connection strings - **fixed** โ€” Docker images built for arm64 via QEMU cross-compilation no longer produce corrupted Python dependencies - **fixed** โ€” Request handling no longer fails when user activity status updates are throttled with a non-zero interval - **fixed** โ€” Rich text editing no longer triggers duplicate extension conflicts for lists and code blocks - **fixed** โ€” The fetch_url built-in tool now safely handles None content returned by web loaders - **fixed** โ€” OAuth protected resource discovery now falls back to well-known RFC 9728 URIs when the WWW-Authenticate header doesn't contain a resource_metadata link - **fixed** โ€” Session user endpoints now gracefully handle missing Authorization headers by falling back to cookie and request state tokens ###### Added - ๐Ÿง  **PaddleOCR-vl document extraction.** Administrators can now use PaddleOCR-vl as a content extraction engine for document processing, with configurable API URL and token settings in document retrieval configuration. [#23945](https://github.com/open-webui/open-webui/pull/23945) - ๐Ÿ”ฅ **Firecrawl v2 API.** Firecrawl web loading now uses the v2 API directly with proper retry logic, exponential backoff on rate limits, and configurable timeout handling, improving reliability for both cloud and self-hosted Firecrawl setups. [#23934](https://github.com/open-webui/open-webui/pull/23934) - โฐ **Calendar event reminder customization.** Calendar events now support a configurable `reminder_minutes` parameter, allowing models to set custom reminder durations instead of the default 10-minute notification. - ๐Ÿ”‘ **Custom API key header.** Administrators can now configure a custom header name for API key authentication via the `CUSTOM_API_KEY_HEADER` environment variable, enabling compatibility with reverse proxies that use the `Authorization` header for their own authentication. - ๐Ÿ”Œ **OAuth session disconnection.** Users can now disconnect OAuth sessions for specific providers (e.g., MCP connections) through a new API endpoint, enabling cleaner re-authentication workflows. - ๐Ÿ“š **Source overflow indicator.** The Sources button now shows a +N badge when more than three sources are available, so hidden sources are clearly indicated in chat responses. [#23918](https://github.com/open-webui/open-webui/pull/23918) - โšก **Model list performance.** Model list API responses now strip base64 profile image data from paginated results, and model tags are fetched via a dedicated efficient query instead of loading all models. This significantly reduces payload sizes and improves workspace Models page responsiveness. - โšก **Model avatar cache reuse.** Default model profile images now redirect to a shared static path instead of reading files from disk per-request, reducing repeated I/O and improving loading efficiency when multiple models use the fallback icon. [#24015](https://github.com/open-webui/open-webui/pull/24015) - ๐Ÿš€ **Faster splash image loading.** Splash screen images are now prioritized earlier during page load with preload links, improving first-load LCP behavior and reducing delayed image discovery. [#24011](https://github.com/open-webui/open-webui/pull/24011) - ๐Ÿงต **Streaming markdown performance stability.** Streaming responses now stay more memory-efficient by preventing repeated cleanup callback registration during markdown updates. [#24048](https://github.com/open-webui/open-webui/pull/24048) - ๐Ÿ“Š **Telemetry gauge reliability.** OpenTelemetry user gauge callbacks now use synchronous database queries directly, eliminating cross-thread async bridging issues that could cause silent failures in metric collection. - ๐Ÿ”„ **General improvements.** Various improvements were implemented across the application to enhance performance, stability, and security. - ๐ŸŒ **Translation updates.** Translations for Finnish, Korean, Portuguese (Brazil), and Dutch were enhanced and expanded. ###### Fixed - ๐Ÿ”ง **MCP task cancellation stability.** Interrupted MCP tool calls no longer cause CPU spikes or runaway cleanup behavior. MCP client disconnection now runs in the same asyncio task as connection, respecting cancel scope constraints, and chat-active events are properly shielded during cancellation. - ๐Ÿง  **Persistent chat skill injection.** Skills mentioned in persisted chats now inject into the system prompt reliably. Skill ID extraction from `<$skillId|label>` message tags is now handled server-side, and tags are stripped before messages reach the model. - ๐Ÿ—„๏ธ **Async database driver migration.** The async database backend now uses psycopg (v3) instead of asyncpg, eliminating brittle SSL parameter translation and supporting native libpq connection strings including `sslmode`, `options`, and `target_session_attrs` without any stripping or c _[Truncated at 4000 characters โ€” full notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.2]_ ### v0.9.1 - Date: 2026-04-21 - Version: v0.9.1 - Original notes: https://github.com/open-webui/open-webui/releases/tag/v0.9.1 - Permalink: https://whatsnew.fyi/product/open-webui/releases/v0.9.1 - **fixed** โ€” Add missing aiosqlite dependency to pyproject.toml to fix startup crash when installing via pip or uv - **fixed** โ€” Add missing asyncpg dependency to pyproject.toml to fix startup crash for PostgreSQL users ###### Fixed - ๐Ÿ› **Missing `aiosqlite` dependency.** Fixed a startup crash (`ModuleNotFoundError: No module named 'aiosqlite'`) when installing Open WebUI via `pip` or `uv` by adding the missing `aiosqlite` package to `pyproject.toml`. The dependency was listed in `requirements.txt` but not in the published package metadata, so it was not installed automatically. [#23916](https://github.com/open-webui/open-webui/issues/23916) - ๐Ÿ› **Missing `asyncpg` dependency.** Added the missing `asyncpg` package to `pyproject.toml` to prevent the same startup crash for PostgreSQL users. Like `aiosqlite`, it was present in `requirements.txt` but absent from the published package dependencies.