- Fixed a high‑severity stored XSS vulnerability in Teleport's SAML IdP that could let admins register malicious service providers and hijack user sessions
- Patched a PostgreSQL integration issue where crafted startup packets could bypass access controls
- Included numerous bug fixes and improvements (host user management, AWS username length handling, SSH dial timeout, UI errors, performance tweaks)