Panopticon SDK

26.3.2

New Features

There were no new features in this release.

Resolved Issues

  • (Security update)The third-party OpenSSL library used to handle e-mail was upgraded from version 3.6.2 to 3.6.3 to resolve CVE-2026-34180, CVE-2026-34181, CVE-2026-34182, CVE-2026-34183, CVE-2026-35188, CVE-2026-42764, CVE-2026-42765, CVE-2026-42766, CVE-2026-42767, CVE-2026-42768, CVE-2026-42769, CVE-2026-42770, CVE-2026-45445, CVE-2026-45446, CVE-2026-45447, CVE-2026-7383, and CVE-2026-9076. This library relates to emlsr, htmsr, icssr, msgsr, olmsr, pffsr, pkcs7sr, pstsr, pstxsr, rpmsgsr and vcfsr, which by default are used for the following formats: MIME_Fmt, SMTP_Fmt, HTML_Fmt, MS_Excel_HTML_Fmt, MS_Word_HTML_Fmt, Netscape_Bookmark_File_Fmt, SAMI_Fmt, XHTML_Fmt, ICS_Fmt, EMCMF_Fmt, MS_Outlook_Fmt, MS_OutlookOLM_Fmt, MS_OutlookOST_Fmt, PKCS_7_Fmt, MS_OutlookPST_Fmt, RPMSG_Fmt and VCF_Fmt.

  • (Security update)The third-party OpenSSL library used for handling RMS encryption and label lookup was upgraded from version 3.5.6 to 3.5.7 to resolve BDSA-2026-25244, CVE-2026-34180, CVE-2026-34181, CVE-2026-34182, CVE-2026-34183, CVE-2026-42764, CVE-2026-42766, CVE-2026-42767, CVE-2026-42768, CVE-2026-42769, CVE-2026-42770, CVE-2026-45445, CVE-2026-45446, CVE-2026-45447, CVE-2026-7383 and CVE-2026-9076. If you have provided RMS credentials, this is used during the processing of protected (encrypted) RMS files and the resolution of MSIP label names.

  • (Security update)The third-party libheif library was upgraded to version 1.23.1 to resolve CVE-2026-32738, CVE-2026-32739, CVE-2026-32740, CVE-2026-41069, CVE-2026-41071, CVE-2026-47254, and CVE-2026-49271. This library relates to kpheifrdr, which by default is used for the following formats: AV1_Image_Fmt, HEIC_Image_Fmt, and HEIF_Image_Fmt.

  • (Security update)The third-party libde265 library was upgraded to version 1.1.1 to resolve CVE-2026-49295 and CVE-2026-49346. This library relates to kpheifrdr, which by default is used for the following formats: AV1_Image_Fmt, HEIC_Image_Fmt, HEIF_Image_Fmt.

  • (Security update)The third-party libaom library was upgraded to version 3.14.0 to resolve BDSA-2026-7226 and BDSA-2026-7237. This library relates to the kpheifrdr reader, which by default is used for the following formats: AV1_Image_Fmt, HEIC_Image_Fmt, HEIF_Image_Fmt.

  • (Security update)The third-party sqlite library was upgraded to version 3.53.3 to resolve BDSA-2026-21633, BDSA-2026-21639, CVE-2025-70873, CVE-2026-11822, and CVE-2026-11824. This library relates to pbixsr, which by default is used for the MS_Power_BI_Fmt format.

  • (Security update)The third-party Apache Thrift library was upgraded to version 0.23.0 to resolve CVE-2025-48431, CVE-2026-41602, CVE-2026-41604, CVE-2026-41605, CVE-2026-41606, CVE-2026-41607, CVE-2026-41636, CVE-2026-43868, CVE-2026-43869, and CVE-2026-43870. This library relates to parquetsr, which by default is used for the following formats: Apache_Arrow_Feather_v1_Fmt, Apache_Arrow_Feather_v2_Fmt, Apache_Parquet_Fmt.

  • (Security update)The third-party 7zip library was upgraded to version 26.02 to resolve CVE-2026-48092, CVE-2026-48095, CVE-2026-48101, CVE-2026-48102, CVE-2026-48103, CVE-2026-48104, CVE-2026-48111, CVE-2026-48112, and CVE-2026-58052. This library mainly relates to multiarcsr, b1sr, bzip2sr and encase2sr, but also to any zip or zip based formats that use LZMA, Bzip2, Deflate64 or PPMd compression, as well as the detection of 7zip and 7zip based file formats.

26.3.1

New Features

There were no new features in this release.

Resolved Issues

  • Panopticon returned a license error when it was used with a license that only enabled Panopticon and not HTML Export.

26.3.0

New Features

There were no new features in this release.

Resolved Issues

  • (Security update) The third-party expat library has been upgraded to version 2.8.0 to resolve CVE-2026-25210, CVE-2026-32776, CVE-2026-32777, and CVE-2026-32778 (medium).

  • (Security update) The third-party OpenSSL library used for decrypting e-mail messages has been upgraded to version 3.6.2 to resolve CVE-2026-31789, CVE-2026-28387, CVE-2026-28386, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31790.

  • (Security update) The third-party OpenSSL library used for communication with Microsoft during RMS decryption has been upgraded to version 3.5.6 to resolve various security vulnerabilities.

Notes

  • Panopticon now uses whatever version of Google Chrome you have installed, rather than including its own version, meaning that you benefit from any security updates as soon as they are installed through Google's automatic updates. This means that in order to continue decrypting PDF files, you must have Chrome installed at the default location.

26.2.0

There were no new features or resolved issues in this release.

26.1.0

New Features

There were no new features in this release.

Resolved Issues

  • (Security update) The embedded web browser (WKOOP) has been upgraded to Chromium version 140.0.7339.264.
  • (Security update) The third-party openssl library used by cryptographyservices has been upgraded to version 3.4.1 to resolve known vulnerabilities.

25.4.0

New Features

  • The third-party ICU library has been upgraded to version 77.1.

Resolved Issues

  • A small memory leak could occur when decrypting RMS encrypted documents.

Notes

Panopticon SDK 25.4 is available only on Microsoft Windows.

25.3.0

There were no new features or resolved issues in this release.

25.2.0

New Features

There were no new features in this release.

Resolved Issues

  • (Security update)For some crafted input files, kwAD could perform a division by zero.

  • RMS decryption would occasionally fail due to a sporadic SSL error when contacting the Microsoft server. When this occurs, File Content Extraction now automatically waits for one second and retries.

25.1.0

There were no new features or resolved issues in this release.

24.4.0

New Features

There were no new features or resolved issues in this release.

Resolved Issues

  • (Security update)There was a potential out-of-bounds read during format detection.

24.3.0

There were no new features or resolved issues in this release.

24.2.0

There were no new features or resolved issues in this release.

24.1.0

There were no new features or resolved issues in this release.

23.4.0

There were no new features or resolved issues in this release.

23.3.0

There were no new features or resolved issues in this release.

23.2.0

New Features

There were no new features in this release.

Resolved Issues

  • KeyView could truncate long sections of text in PDF_Fmt documents.