The DistroWatch news feed is brought to you by TUXEDO COMPUTERS. Simon Long has announced the release of a new feature update of Raspberry Pi OS, a Debian-based Linux distribution designed for the Raspberry Pi range of single-board computers. The latest version brings an updated look for the Raspberry Pi Desktop and also introduces a new icon dock: "Today....
Alexander maakt ruzie met Trouw. Hoofdredacteuren Karel Smouter en Wendelmoed Boersema noemen zijn Pangram-onderzoek naar AI-gebruik in opiniestukken een "onderzoekje" zonder wederhoor, terwijl hij vijftien Volkskrant-auteurs mailde en die allemaal toegaven dat er AI aan te pas kwam. Een correctie weigert Trouw, dus escaleert hij nu in zijn podcastje en overweegt hij een freelancer in te huren die zijn AI-tekst met de hand overtypt tot de meter op 100% human staat. Ernst-Jan las The New Dark Ages van James Marriott: we glijden terug naar een gesproken cultuur en dat is slecht nieuws voor de democratie, want Trump bouwt gewoon Versailles na en communiceert in AI-plaatjes. De iPhone Duo is peak Apple en tegelijk het sluitstuk van een tijdperk, want straks praat je gewoon tegen je apparaat en Alexander kocht daarom een Dell met Linux erop. Ernst-Jan test Bookwise, de e-reader-app die Kindle en Goodreads eindelijk moet verlossen van hun sterfhuisconstructie en waarmee hij zich nooit meer hoeft te schamen als hij in een café op zijn telefoon leest. Verder: waarom het Centraal Boekhuis 25.000 euro vraagt om een e-boekwinkel te beginnen, hoe prachtig vormgegeven artikelen als Ordinary Abundance nog steeds viraal gaan en waarom AI-slop die vorm binnenkort ook verneukt.
The Stable channel has been updated to 153.0.8010.47/.48 for Windows andMac and 153.0.8010.47 for Linux, which will roll out over the coming days/weeks. A full list of changes in this build is available in the Log
Security Fixes and Rewards
Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.
This update includes 42 security fixes. Please see the Chrome Security Page for more information.
[N/A][556870863] Critical CVE-2026-91726: Out of bounds read in WebGL. Reported by Google on 2026-09-03
[TBD][557320614] Critical CVE-2026-91721: Use after free in Internals. Reported by xinyang on 2026-09-04
[TBD][558456602] Critical CVE-2026-91749: Use after free in Workers. Reported by WinD39 - Huynh Dinh Vu on 2026-09-08
[$1,500][552283275] High CVE-2026-91724: Use after free in Input. Reported by Hafiizh on 2026-08-25
[$1,000][556715288] High CVE-2026-91728: Integer overflow in V8. Reported by Jihyeon Jeong (Compsec Lab, Seoul National University / Research Intern) on 2026-09-03
[N/A][516780835] High CVE-2026-91734: Incorrect authorization in Core. Reported by Google on 2026-05-26
[N/A][516893912] High CVE-2026-91727: Incorrect reference resolution in Extensions. Reported by Google on 2026-05-26
[N/A][516947138] High CVE-2026-91743: Race condition in Core. Reported by Google on 2026-05-27
[N/A][520019273] High CVE-2026-91744: Race condition in PlatformIntegration. Reported by Google on 2026-06-04
[N/A][521486621] High CVE-2026-91712: Race condition in Extensions. Reported by Google on 2026-06-08
[N/A][521559611] High CVE-2026-91748: Race condition in Extensions. Reported by Google on 2026-06-09
[N/A][523470135] High CVE-2026-91720: Uninitialized resource in ANGLE. Reported by Google on 2026-06-13
[N/A][523554372] High CVE-2026-91731: Type confusion in Compositing. Reported by Google on 2026-06-13
[N/A][540016074] High CVE-2026-91747: Use after free in Skia. Reported by Google on 2026-07-28
[N/A][540021213] High CVE-2026-91733: Improper state validation in Skia. Reported by Google on 2026-07-28
[TBD][546413288] High CVE-2026-91741: Type confusion in CacheStorage. Reported by Salvatore Gulizia (nickname: Serotav) on 2026-08-14
[TBD][547815507] High CVE-2026-91709: Type confusion in ServiceWorker. Reported by Jihyeon Jeong (Compsec Lab, Seoul National University / Research Intern) on 2026-08-17
[TBD][549225472] High CVE-2026-91717: Missing authorization in Android. Reported by jodyritonga on 2026-08-20
[N/A][552416113] High CVE-2026-91735: Incorrect authorization in WebUI. Reported by Google on 2026-08-25
[N/A][553115724] High CVE-2026-91708: Race condition in Network. Reported by Google on 2026-08-26
[N/A][553121008] High CVE-2026-91736: Use after free in DOM. Reported by Google on 2026-08-26
[N/A][553122373] High CVE-2026-91740: Uninitialized resource in Skia. Reported by Google on 2026-08-26
[N/A][553132148] High CVE-2026-91710: Use after free in WebAppInstalls. Reported by Google on 2026-08-26
[N/A][553133215] High CVE-2026-91718: Use after free in Core. Reported by Google on 2026-08-26
[N/A][554558368] High CVE-2026-91716: Use after free in Auth. Reported by Google on 2026-08-29
[N/A][556260782] High CVE-2026-91746: Integer overflow in Compositing. Reported by Google on 2026-09-02
[TBD][557206809] High CVE-2026-91729: Use after free in DigitalCredentials. Reported by sean geofrey on 2026-09-04
[TBD][558036280] High CVE-2026-91737: Use after free in PDF. Reported by SeungMyung Lee (@sm1ee), Siung kim (@ksw9722) on 2026-09-06
[TBD][558342353] High CVE-2026-91711: Out of bounds write in ServiceWorker. Reported by Cristian Di Nicola (@crih.exe) on 2026-09-07
[TBD][558367547] High CVE-2026-91715: Type confusion in ServiceWorker. Reported by Cristian Di Nicola (@crih.exe) on 2026-09-07
[N/A][558734727] High CVE-2026-91745: Use after free in V8. Reported by Google on 2026-09-08
[TBD][474131239] Medium CVE-2026-91723: Race condition in WebAppInstalls. Reported by Luan Herrera (@lbherrera_) on 2026-01-07
[TBD][511062248] Medium CVE-2026-91732: Missing authorization in AppManifest. Reported by pakhunov.anton.n on 2026-05-08
[N/A][513858387] Medium CVE-2026-91742: Confused deputy in PriceTracking. Reported by Google on 2026-05-16
[N/A][517710554] Medium CVE-2026-91714: Observable discrepancy in Fonts. Reported by Google on 2026-05-29
[N/A][518032534] Medium CVE-2026-91725: Observable discrepancy in CSS. Reported by Google on 2026-05-29
[N/A][521951328] Medium CVE-2026-91739: Missing authorization in Transactions Platform. Reported by Google on 2026-06-09
[N/A][523715133] Medium CVE-2026-91713: Missing authorization in Browser. Reported by Google on 2026-06-14
[N/A][536450979] Medium CVE-2026-91738: Improper input validation in ANGLE. Reported by Google on 2026-07-19
[TBD][543640868] Medium CVE-2026-91730: Incomplete cleanup in GetUserMedia. Reported by Keita Sode and Daisuke Hatakeyama (SYZD Research) on 2026-08-07
[TBD][554953456] Medium CVE-2026-91722: Use after free in Input. Reported by TIENPA on 2026-08-31
[TBD][542115030] Low CVE-2026-91719: Code injection in XML. Reported by Zabith Mohammed (@nmzabith) on 2026-08-03
We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel.
Interested in switching release channels? Find out how here. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues.
The Extended Stable channel has been updated to 152.0.7977.130for Windows and Mac which will roll out over the coming days/weeks.
A full list of changes in this build is available in the log. Interested in switching release channels? Find out how here. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues.
The DistroWatch news feed is brought to you by TUXEDO COMPUTERS. The Fedora project has announced the release of a development snapshot, Fedora 45 beta. The new release introduces new security features and package upgrades: "Fedora Linux 45 replaces the legacy in-kernel console with kmscon, bringing smooth rendering, better Unicode/font support, and enhanced system stability. Fedora Linux 45 now....
26.3, the release of Wilderness Bound, is a game drop for Java Edition released on September 15, 2026, which adds the dappled forest biome with the new poplars, red shrubs, and shelf mushrooms. It also adds wool stairs and slabs, concrete stairs and slabs, straw beds, cushions, and a new structure called the abandoned camp.
Full changelog: https://minecraft.wiki/Java_Edition_26.3
nginx-1.30.5
stable and
nginx-1.31.6
mainline versions have been released,
with fixes for
buffer overflow
vulnerability when using ngx_http_v3_module (CVE-2026-90439).
Firefox on macOS can now be set to open automatically when the computer starts up, from the Startup section of Settings.
Localized Wikipedia and occasional sponsored suggestions in the address bar are now available in France, Germany, and Italy. These suggestions can be turned off in Firefox Suggest settings.
Fixed
Fixed an issue where dragging an image to a new position in a rich-text editor could replace it with a long line of text instead of moving it.
Fixed high-sample-rate FLAC audio in MP4 failing to play on sites such as Bilibili.
Fixed subtitles not appearing in the Picture-in-Picture window when they are turned on in the video player after the window has already opened.
Fixed bookmarks moving out of their folder when the folder and the bookmarks inside it were selected and dragged together in the Bookmarks sidebar.
Fixed the find bar becoming permanently unavailable in a tab after reversing the panes in Split View.
Fixed some sites failing to load when DNS over HTTPS is enabled and the site does not support HTTPS.
Fixed Firefox losing all network connectivity for some users with the built-in VPN enabled.
Fixed an issue on Windows where Firefox could block an auto-hiding taskbar from showing.
text-box-trim now uses the font metrics of a ::first-line pseudo-element when one applies, matching other browsers and the specification.
Community Contributions
With the release of Firefox 156, we are pleased to welcome the developers who contributed their first code change to Firefox in this release, 10 of whom were brand new volunteers! Please join us in thanking each of these diligent and enthusiastic individuals, and take a look at their contributions:
Made restart limits opt-in for applications, preview deployments, and service applications. Existing resources that still used the previous limit of 10 restarts were reset to unlimited.
Fixes
Hid application names, server names, deployment URLs, team member emails, and job IDs from the Helper deployment check unless detailed output was explicitly requested.
Improvements
Updated the supported Traefik patch releases to 3.7.13, 3.6.25, and 2.11.57.
We're excited to announce that the 1.61 updateforAmerican Truck Simulator has officially been released and is now available on Steam!
Before we head to the news, we would like to thank everyone who took part in the Open Beta and reported any issues or provided general feedback on our forum. This makes it much easier for our team to fine-tune everything and helps ensure a smooth transition to the full update release.
We'd also like to thank everyone who participated in the 1.61 Experimental Beta, especially those who shared their thoughts on the Multi-Function Display (MFD) and the In-Game Menu. These additions will be introduced in a future update, giving us more time to refine and polish these features and ensure they deliver the best possible experience when they are ready.
Now, let’s dive into what you can expect in the 1.61 Update:
Proximity Exploration
In the 1.61 update, we are introducing a new feature designed to assist players with exploring the world map and discovering more along their journey. Introducing Proximity Exploration, a new quality-of-life feature that makes map discovery a little more intuitive, while still keeping the enjoyment of exploring the world for yourself.
When enabled, Proximity Exploration automatically reveals a small area around your vehicle as you travel. This means you will no longer need to drive over every tiny section of road to mark it as explored, which should be especially useful for those of you chasing that elusive 100% map discovery! It can also help reveal nearby accessible roads and areas around locations such as rest stops, toll gates, border crossings, gas stations, and other places where multiple road segments may sit closely together.
And don't worry, secret roads will still have secrets to uncover! Proximity Exploration will only reveal the first segment of a secret road when you get close enough, giving you a small hint that there might be somewhere new to explore. From there, however, the rest is up to you, as the remaining route will only be discovered by actually driving along it.
Whether you use Proximity Exploration to help hunt down those final percentages or simply make exploring the map a little smoother, the choice is yours!
Improved Material System
The Improved Material System significantly improves the lighting and visual quality of vehicle interiors in selected trucks. Its main focus is to enhance how interior materials react to light, which results in a more readable, detailed, and visually pleasing cabin environment.
One of the most significant changes was a redesign of the materials used in vehicle interiors. As a result, it makes differences between materials such as leather, fabric, plastic, and metal far more apparent, even in low-light conditions. The new solution uses multiple variants of dynamic cubemaps, allowing all materials to reflect their surroundings more naturally and respond to ambient light in a more realistic way.
The entire system was designed from the start with the interiors of trucks in both games in mind, so the base games and their existing fleets will gradually benefit from these improvements as well. In this update, we're excited to bring the Improved Material System to the International LT and International LoneStar.
With future updates, we will gradually add this technology for other trucks across both games. You can read more about this feature here.
Map Changes for Road Trip
With the upcoming Road Trip project, our map and asset teams have also been preparing the world of American Truck Simulator for a new way to explore the roads. While many of these changes are happening behind the scenes, they help lay the groundwork for future features and ensure the map is ready for the journey ahead.
We have implemented inactive Tourist Boards across several states, including California, Oregon, Washington, Idaho, Montana, Wyoming, and the upcoming South Dakota DLC. These Tourist Boards will remain unavailable until the Road Trip project is released, but they are already in place and ready for the future. Alongside these additions, we have also applied various small visual improvements and polish to selected areas across the map.
As part of these preparations, we have also added a number of new gas stations across the map. These locations will not only serve truck drivers but will also become available for cars when the Road Trip project releases, giving players more places to stop and refuel during their travels.
These changes are just a small part of the preparation work being done behind the scenes, helping us make sure the American Truck Simulator world is ready for new adventures on the road.
New Cargoes
We are also introducing new cargo options and improving the visuals of some existing ones. Players can now transport new types of freight, including Seed Containers, Trailers, and Truss, adding more variety to their hauling jobs across America.
Alongside these additions, we also updated the existing Rails cargo with a brand-new model and improved textures. These changes help bring more detail and visual quality to the cargo you see on the road, making each delivery feel even more realistic.
Changelog:
Map
Proximity Exploration
Map Changes for Road Trip
Vehicles
New Cargoes
Visual
Improved Material System: International LT & International LoneStar
Added an All option to the log viewer and accepted lines=all across application, database, and service log APIs. The existing -1 value remained available for compatibility.
Fixes
Fixed scheduled backup deletion for service databases so it kept the database context and returned to the correct backup page.
Preserved each service component’s stored application or database type when generating Traefik labels.
Restored hourly Sentinel version checks for enabled, eligible servers while continuing to exclude build servers.
Improvements
Ran Traefik version checks whenever Coolify checked for updates instead of only once a week.
Updated Coolify Helper to 1.0.17 and moved the bundled MinIO client to a pinned AIStor release.
We are pleased to announce the latest stable release of Jellyfin, version 12.1! This minor release brings several bugfixes to improve your Jellyfin experience. As always, please ensure you take a full backup before upgrading!
We are pleased to announce the latest stable release of Jellyfin, version 12.1! This minor release brings several bugfixes to improve your Jellyfin experience. As always, please ensure you take a full backup before upgrading!
Beta versions are not guaranteed to work as expected. We encourage users to create detailed bug reports if any problems arise. Read our blog post for more information about our Android beta programs.
26.3 Release Candidate 3 (known as 26.3-rc-3 in the launcher) is the third release candidate for Java Edition 26.3, released on September 14, 2026, which fixes bugs and reverts a bug.
Full changelog: https://minecraft.wiki/Java_Edition_26.3-rc-3