Gemini CLI changelog: what's new each month
Every stable Gemini CLI release summarised by month: the highlights, new features, improvements, fixes and anything you need to act on. 3 months covered; the current month updates daily.
October 2026 · so far
1 release: 0.63.0
October brought stability improvements and better error handling to Gemini CLI, with fixes focused on connection recovery, configuration detection, and long-running agent performance.
Highlights
- Connection recovery now shows a progress indicator during retries
- Improved error messages distinguish between missing MCP configuration and malformed JSON
- Long-running agent loops now have bounded tool output and optimized memory use
- Fixed stdin handling to properly restore state after capability detection
Improved
- Progress visibility during connection recovery attempts
- Memory lifecycle optimization for agents running extended periods
- Tool output size is now bounded in long-running loops
Fixed
- Display of retry progress indicator during connection recovery
- Distinction between missing MCP enablement config and malformed JSON errors
- Stdin state restoration after capability detection
- Invalid diff.external override removed
September 2026
5 releases: 0.58.0 → 0.62.0
September brought security hardening across the platform with fixes for OAuth flows, sandbox isolation, and injection vulnerabilities. The month focused on stability and preventing indirect attacks through multiple vector points.
Highlights
- Prevented SSRF attacks in MCP OAuth metadata discovery and tightened OAuth security with RFC 9207 issuer identification.
- Hardened sandbox isolation on macOS by isolating Docker sockets, binaries, and temporary directories.
- Fixed critical prompt injection vulnerability via build file modifications and untrusted flags.
- Improved extension loader security with path resolution and boundary validation.
- Enhanced OAuth credential handling to retain refresh tokens and make deletion idempotent.
New
- Extension loader now hardens path resolution and enforces boundary validation.
Improved
- MCP tool call titles now formatted as structured signatures with segregated explanations.
- Workspace trust enforcement in restricted mode with filtered MCP server access.
- Symlink evaluation consistency in ignore path handling.
- AgentLoopContext properties now preserved across object spread operations.
- Temporary directory isolation for macOS Seatbelt sandbox.
- Destination validation and connection routing in web fetch utilities.
Fixed
- SSRF vulnerability in MCP OAuth metadata discovery and authentication.
- Prompt injection via build file modifications and untrusted flags.
- Stale cancellation errors on new message turns in agent-to-agent server.
- Flash model ID versioning not being preserved.
- Negative layout dimensions causing issues in border rendering.
- Hardcoded Google CrUX API key in chrome-devtools-MCP.
August 2026
4 releases: 0.54.4 → 0.57.0
August brought steady progress across Gemini CLI with improvements to core infrastructure, OAuth handling, and evaluation capabilities. The month focused on reliability fixes and better tool integration.
Highlights
- Fixed OAuth redirect URI resolution for Cloud Workstations proxy flows
- Added tool call formatter and failure summaries for evaluations
- Improved handling of multi-turn request cancellation and capacity errors
- Resolved directory mismatch issues in IDE connections
New
- Tool registry discovery capability
- Tool call formatter for evaluations
- Failure summaries integration in evals
- Context-aware silent retries for capacity errors
Improved
- Cloud Workstations proxy redirect URI now dynamically resolved for OAuth
- Multi-turn requests now fully rollback on cancellation or abort
- Availability TTL implementation for handling capacity errors
- Release verification process to prevent bad NPM releases
- End-to-end test stability on slower runners
Fixed
- Swallowed directory mismatch in IDE connections
- Workspace binary shadowing in release verification
- NPM release verification process
Summaries are written automatically from the official release notes (full changelog ↗); check the original notes before relying on a detail. Gemini CLI: pricing, features and alternatives · All changelogs
