Security
- Manually downloaded update files are installed only if they carry a valid Microsoft digital signature.
- Download file names now come from the URL, not from the server response, so a file can no longer be saved outside the download folder.
- A warning is shown when "Always run as Administrator" is enabled while the application folder can be modified without admin rights.
Fixes
- Autostart and "Always run as Administrator" now work correctly in the .NET 8 single-file builds.
- Updates without a KB number, or sharing one KB number, no longer get their files mixed up during manual download and installation.
- Manual installation: updates with no downloaded files, or interrupted by cancellation, are no longer shown as installed. After partial success, only the updates that actually installed are moved to the installed list.
- Every update file inside a zip archive is now installed, not only the first one, and each archive is unpacked into its own folder.
- The "already installed" and "not applicable" results of
wusaare now handled correctly. - Installation through Windows Update no longer starts after a failed download, and partial results are applied per update.
- An aborted or failed search no longer counts as a completed check and no longer replaces the update lists.
- Installer and DISM processes can no longer hang when they produce a lot of output, and the DISM applicability check can now be cancelled.
- Update titles and descriptions with non-English characters are now saved correctly, and the saved update list is written much faster.
- The "auto-update application" option and the automatic update check interval no longer overwrite each other.
- Automatic update checks no longer retry on every timer tick after a failure, and failures in background mode are logged instead of showing a dialog every time.
- Errors are no longer shown twice when an operation fails to start.
Ctrl+Cnow works in the search filter and the log.- The Windows Update cache cleanup requires admin rights, stops the Windows Update service while it runs, and reports files it could not delete.
- The Microsoft Update blocking state is shown correctly after unblocking. "Automatic Update (default)" now fully removes the related policy.
- Disabling and re-enabling update facilitators no longer removes SYSTEM access from the service registry keys.
- Fixed the error message shown when an automatic restart could not be scheduled.
Improvements
- The application asks for confirmation before exiting while an operation is in progress.
- Fixed the rendering style of checkboxes in the update list.
- "Optimize kernel size" and "Restore default settings" now ask for confirmation.
- The Windows Update service can no longer be toggled while an operation is running.
- Added feature documentation, linked from the README (issue #7).
Note: the "auto-update application" setting was moved to a new configuration key and will be off after upgrading. Re-enable it in the Options menu if needed.
Full Changelog: 1.0.9758...1.0.9765