NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
NuGet · #2340 most downloaded on NuGet
An in-memory caching provider for Smidge
Last release 14 days ago
23 Sep 2026
Ships fairly regularly
a new release about every 4 months
Most releases are documented
notes for 11 of 16 stable releases
Nothing withdrawn
no release was ever pulled
5 years old
16 releases · first in 2021
One column per quarter.
Nothing published for this version
Smidge 5 is a major release focused on simplifying the minification pipeline, modernizing the runtime, and hardening bundle handling against a class o
Smidge 5 is a major release focused on simplifying the minification pipeline, modernizing the runtime, and hardening bundle handling against a class of intermittent production crashes.
JsMinifier/CssMinifier (JSMin/CSSMin) are gone, and the previously-optional Smidge.Nuglify package is folded directly into the core Smidge package. AddSmidge()/UseSmidge() now use NUglify out of the box, including the source-map (nmap) route.404 rather than an unhandled exception. This closes a repeatable DoS vector (#199) and also fixes a source-map parsing crash (#176).Smidge.Core into Smidge to simplify the package layout for the major version.Smidge.Core assembly no longer exists; its types now live in Smidge.Smidge.Nuglify is obsolete - reference Smidge directly. AddSmidgeNuglify()/UseSmidgeNuglify() are gone.internal, since they're no longer part of the supported API surface.Bundle.Files is now IReadOnlyList<IWebFile> instead of a mutable List<IWebFile> (see thread-safety fix below). Use Bundle.AddFile(IWebFile) to add files.NullReferenceException crash in bundle file-set generation (#156, #205) caused by a genuine race condition: concurrent requests registering files into the same bundle could corrupt its backing List<IWebFile>, silently dropping or nulling entries. Bundles now use an immutable, lock-free file list (ImmutableList<IWebFile> + ImmutableInterlocked.Update) so concurrent registration can no longer corrupt a bundle's file list, and a null entry is now defensively skipped with a warning rather than crashing the whole bundle response.~/Js/Bundle2) no longer accidentally includes generated artifacts like .js.gz or .map files; matching is now constrained to the bundle's file type.**.ext / **/*.ext) not matching correctly for non-physical file providers, satisfying the long-standing globbing request in #197. (Glob patterns already worked for the common PhysicalFileProvider case via .NET's built-in file globbing; this closes the gap for composite/embedded file providers.)Could not parse ... as a valid smidge path) that surfaced as an unhandled 500 (#176).BundleManager.Create(...) now filters out null file entries at bundle-creation time (with a warning), in addition to the defensive handling already in place during file-set generation.Fixes moderate and low security vulnerabilities that were identified. It is recommended to upgrade all usages of Smidge to 4.6.0.
Fixes moderate and low security vulnerabilities that were identified. It is recommended to upgrade all usages of Smidge to 4.6.0.
The risk with versions previous to 4.6.0 is reduced by:
Developer Exception Page or detailed exceptions are not enabled in production environments.4.6.0 addresses the vulnerabilities disclosed here:
https://github.com/asust9/smidge-vuln?tab=readme-ov-file
TimestampCacheBuster is enabled in non 'Development' hosting environments, it will use the AppDomainLifetimeCacheBusterFull Changelog: v4.5.1...v4.6.0
Avoid CssMinifier stripping spaces that are followed by colons by @willdean in #214
Full Changelog: v4.5.0...v4.5.1
Bump nokogiri from 1.13.9 to 1.15.6 in /docs by @dependabot in #208
Full Changelog: v4.4.0...v4.5.0
Targeting .NET 6 & .NET 8, removes targets for .NET 5 and .NET 7
Full Changelog: v4.3.0...v4.4.0
Add NET 7.0 by @PhyxionNL in #192
test: Add .Net 6 multitargeting to test project by @nikcio in #170
Full Changelog: v4.2.0...v4.2.1
Feature/protect file extensions by @markadrake in #164
Full Changelog: v4.1.1...v4.2.0
Update Nuglify to latest release for various bug fixes by @Jeavon in #159
See milestone for full details: https://github.com/Shazwazza/Smidge/milestone/20?closed=1
See milestone for full details: https://github.com/Shazwazza/Smidge/milestone/20?closed=1
Full Changelog: v4.0.4...v4.1.0
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Compare
Compare
Your coding agent can read these notes before it upgrades. Set up the MCP server →