| BM-4022 | 2026.1 | FIX: Classic configuration files are hidden |
| PG-3355 | 2026.11 | Add scope support for local npm package search |
| PG-3377 | 2026.11 | Merge snapshotVersion Elements on maven metadata xml from connectors |
| PG-3376 | 2026.11 | Add "classifier" Elements to Snapshot Versions Indexes on Maven Feeds |
| PG-3375 | 2026.11 | Change compliance determination on multi-file packages to use most-compliant artifact when querying with the Metadata API |
| PG-3372 | 2026.11 | FIX: Performance improvements on NuGet feeds vulnerability.base.json |
| PG-3374 | 2026.11 | FIX: User security caches may not clear on certain changes |
| PG-3373 | 2026.11 | FIX: Retrieving connector cached metadata queries may increase disk IO and CPU usage [SQL Server] |
| PG-3363 | 2026.11 | FIX: Default sorting on local package list should be descending (PostgreSQL only) |
| PG-3367 | 2026.11 | FIX: Error Caching Connector Metadata due to long Content Type |
| PG-3371 | 2026.11 | FIX: Unique Constraint on Assessments is allowing duplicate Asessments [PostgreSql] |
| PG-3366 | 2026.11 | FIX: Add Option for Docker Feed Reindex to Delete Invalid Layers |
| PG-3370 | 2026.11 | FIX: Distributions with a slash are not handled correctly in Debian feeds |
| PG-3368 | 2026.11 | FIX: Sorting on Build Vulnerabilities Page may be incorrect |
| PG-3364 | 2026.11 | FIX: Apply connector filters on NuGet feeds when resolving specific metadata requests |
| PG-3365 | 2026.11 | FIX: Incorrect permission resolution on SCA List Projects API |
| BM-4021 | 2026.0 | ⭐ Major Release BuildMaster 2026 ⭐ |
| PG-3354 | 2026.10 | Add NuGet Vulnerability Info API |
| PG-3362 | 2026.10 | FIX: Auto assessment may create assessment for different feed types |
| PG-3361 | 2026.10 | FIX: Improve Assess Vulnerability Locking [PostgreSQL] |
| PG-3360 | 2026.10 | FIX: Error reindexing feed due to PackageVersionIds references |
| PG-3359 | 2026.10 | FIX: Apply connector filters on npm feeds when getting package tags |
| PG-3353 | 2026.10 | FIX: Package Download Count performance improvements [PostgreSQL] |
| PG-3358 | 2026.10 | FIX: Improve error message when attempting to browse local files for PyPi packages |
| PG-3357 | 2026.10 | FIX: Debug handler for Windows Integrated Authentication was set to bypass authentication |
| PG-3356 | 2026.10 | FIX: Potential StackOverflow error when evaluating metadata for certain multi-artifact packages |
| PG-3352 | 2026.9 | FIX: Error Caching Conda Packages |
| PG-3350 | 2026.9 | FIX: Content-Range header in Asset Directory partial response is incorrect |
| PG-3346 | 2026.9 | Optimize hash computation to address prefetch issues on certain Windows servers |
| PG-3351 | 2026.9 | FIX: Cannot import packages from a ProGet 2026 instance |
| PG-3349 | 2026.9 | FIX: Sorting by Category on Build Vulnerabilities Page |
| PG-3348 | 2026.9 | FIX: Reduce Queries to Connectors with Filtered Packages |
| PG-3347 | 2026.9 | Normalize "docker.io" as "registry-1.docker.io" when processing OCI-based ArtifactHub helm charts |
| PG-3345 | 2026.9 | FIX: Cargo change pubTime to ISO8601 to support newer Cargo clients |
| PG-3340 | 2026.8 | Add support for connector filters on Docker connectors |
| PG-3338 | 2026.8 | Add group argument to pgutil feeds create |
| PG-3337 | 2026.8 | Add additional arguments to pgutil builds projects create |
| PG-3344 | 2026.8 | FIX: [Cargo] publish date (pubtime) is presented in the wrong format |
| PG-3343 | 2026.8 | Clarify error message when database backup job runs without a configured database backup directory |
| PG-3341 | 2026.8 | FIX: Docker All Tags page shows vulnerability information incorrectly |
| PG-3342 | 2026.8 | FIX: Ensure correct server-side metadata (publish date, listed, deprecated) is set when adding package via pull, download, or promote from remote connectors |
| BM-4020 | 2025.15 | FIX: Deploy Configuration "Select File" Browser Errors |
| PG-3326 | 2026.7 | FIX: PyPi License file identification may fail |
| PG-3339 | 2026.7 | FIX: Built in package licenses do not display correctly when using PostgreSQL |
| PG-3336 | 2026.7 | FIX: Overwritten packages may fail to replicate from the source |
| PG-3335 | 2026.7 | Improved database maintenance page |
| PG-3322 | 2026.6 | FIX: Default notification formatting for vulnerability, package name events |
| PG-3321 | 2026.6 | FIX: Improve scoped build dependencies handling |
| PG-3307 | 2026.6 | FIX: Clarify Database Connection Errors with Embedded Database on Linux |
| PG-3327 | 2026.6 | Change default sort order for Docker tags to date |