For the complete documentation index, see llms.txt. This page is also available as Markdown.

Hotfixes for Version 2.25

This section provides details on all hotfixes available for version 2.25. Hotfixes are critical updates released between our major and minor versions to address specific issues or vulnerabilities. These updates ensure the system remains secure, stable, and optimized without requiring a full version upgrade.

Version
Date (MM/DD/YYYY)
Internal ID
Description

2.25.28

08/09/2026

RUN-41811

Fixed a security vulnerability related to GHSA-jxpm-75mh-9fp7 with severity HIGH.

2.25.28

08/09/2026

RUN-41502

Fixed a security vulnerability related to CVE-2026-39821 with severity HIGH.

2.25.28

08/09/2026

RUN-41855

Fixed an issue where inference endpoints exposed with --external-url did not enforce configured authentication.

2.25.28

08/09/2026

RUN-41143

Fixed an issue where selecting a single node pool for a Project in the UI was not saved, causing the Project to inherit node pools from the parent Department instead.

2.25.28

08/09/2026

RUN-36995

Fixed an issue where the ingress path-rewrite annotation used for inference workloads was incompatible with the official HAProxy ingress controller.

2.25.13

06/10/2026

RUN-38321

Fixed a security vulnerability related to CVE-2026-33810 with severity HIGH.

2.25.13

06/10/2026

RUN-37975

Fixed a security vulnerability related to GHSA-x6g4-f6q3-fqvv with severity HIGH.

2.25.13

06/10/2026

RUN-37927

Fixed an issue where users with the template administrator role received a "Failed to load secrets" error when opening the template creation form.

2.25.13

06/10/2026

RUN-38004

Fixed an issue where the NIM CLI displayed empty values for requested compute resources when submitting inference workloads.

2.25.12

05/27/2026

RUN-37045

Fixed a security vulnerability related to CVE-2025-68121 with severity CRITICAL.

2.25.12

05/27/2026

RUN-37045

Fixed a security vulnerability related to CVE-2025-61726 with severity HIGH.

2.25.12

05/27/2026

RUN-37951

Fixed an issue where the system notifications API returned an HTTP 500 error when retrieving notifications for users.

2.25.12

05/27/2026

RUN-37832

Fixed an issue where submitting a workload via the API with duplicate node pool names silently failed instead of returning a validation error.

2.25.12

05/27/2026

RUN-37705

Fixed an issue where the external ingress URL was not populated in the NIM service status when using authorizedUsers or authorizedGroups authentication.

2.25.12

05/27/2026

RUN-37583

Fixed an issue where the workload submission UI incorrectly capped the maximum GPU count at 8, even when the node supported a higher number of GPUs through MIG partitioning.

2.25.10

05/24/2026

RUN-39222

Fixed an issue where the CLI accepted unsupported storage flags for distributed inference submissions.

2.25.10

05/24/2026

RUN-38842

Fixed an issue where a missing runai-go-operator-tls-secret prevented Helm upgrades from completing.

2.25.10

05/24/2026

RUN-38892

Fixed a security vulnerability related to CVE-2026-4878 with severity HIGH.

2.25.10

05/24/2026

RUN-38670

Fixed a security vulnerability related to CVE-2026-22016 with severity HIGH.

2.25.10

05/24/2026

RUN-37410

Fixed a security vulnerability related to GHSA-72hv-8253-57qq with severity HIGH.

2.25.10

05/24/2026

RUN-38975

Fixed a security vulnerability related to GHSA-vmg3-7v43-9g23 with severity CRITICAL.

Last updated