Skip to content

Changelog

New updates and improvements at Cloudflare.

WARP client for Windows (version 2025.6.1335.0)

A new GA release for the Windows WARP client is now available on the stable releases downloads page.

This release contains minor fixes and improvements.

Changes and improvements

  • Improvements to better manage multi-user pre-login registrations.
  • Fixed an issue preventing devices from reaching split-tunneled traffic even when WARP was disconnected.
  • Fix to prevent WARP from re-enabling its firewall rules after a user-initiated disconnect.
  • Improvement for faster client connectivity on high-latency captive portal networks.
  • Fixed an issue where recursive CNAME records could cause intermittent WARP connectivity issues.

Known issues

  • For Windows 11 24H2 users, Microsoft has confirmed a regression that may lead to performance issues like mouse lag, audio cracking, or other slowdowns. Cloudflare recommends users experiencing these issues upgrade to a minimum Windows 11 24H2 version KB5062553 or higher for resolution.

  • Devices using WARP client 2025.4.929.0 and up may experience Local Domain Fallback failures if a fallback server has not been configured. To configure a fallback server, refer to Route traffic to fallback server.

  • Devices with KB5055523 installed may receive a warning about Win32/ClickFix.ABA being present in the installer. To resolve this false positive, update Microsoft Security Intelligence to version 1.429.19.0 or later.

  • DNS resolution may be broken when the following conditions are all true:

    • WARP is in Secure Web Gateway without DNS filtering (tunnel-only) mode.
    • A custom DNS server address is configured on the primary network adapter.
    • The custom DNS server address on the primary network adapter is changed while WARP is connected.

    To work around this issue, reconnect the WARP client by toggling off and back on.

WARP client for macOS (version 2025.6.1335.0)

A new GA release for the macOS WARP client is now available on the stable releases downloads page.

This release contains minor fixes and improvements.

Changes and improvements

  • Fixed an issue preventing devices from reaching split-tunneled traffic even when WARP was disconnected.
  • Fix to prevent WARP from re-enabling its firewall rules after a user-initiated disconnect.
  • Improvement for faster client connectivity on high-latency captive portal networks.
  • Fixed an issue where recursive CNAME records could cause intermittent WARP connectivity issues.

Known issues

  • macOS Sequoia: Due to changes Apple introduced in macOS 15.0.x, the WARP client may not behave as expected. Cloudflare recommends the use of macOS 15.4 or later.
  • Devices using WARP client 2025.4.929.0 and up may experience Local Domain Fallback failures if a fallback server has not been configured. To configure a fallback server, refer to Route traffic to fallback server.

WARP client for Linux (version 2025.6.1335.0)

A new GA release for the Linux WARP client is now available on the stable releases downloads page.

This release contains minor fixes and improvements.

Changes and improvements

  • Fixed an issue preventing devices from reaching split-tunneled traffic even when WARP was disconnected.
  • Fix to prevent WARP from re-enabling its firewall rules after a user-initiated disconnect.
  • Improvement for faster client connectivity on high-latency captive portal networks.
  • Fixed an issue where recursive CNAME records could cause intermittent WARP connectivity issues.

Known issues

  • Devices using WARP client 2025.4.929.0 and up may experience Local Domain Fallback failures if a fallback server has not been configured. To configure a fallback server, refer to Route traffic to fallback server.

Cloudflare One Agent for Android (version 2.4.2)

A new GA release for the Android Cloudflare One Agent is now available in the Google Play Store. This release contains improvements and new exciting features, including post-quantum cryptography. By tunneling your corporate network traffic over Cloudflare, you can now gain the immediate protection of post-quantum cryptography without needing to upgrade any of your individual corporate applications or systems.

Changes and improvements

  • QLogs are now disabled by default and can be enabled in the app by turning on Enable qlogs under Settings > Advanced > Diagnostics > Debug Logs. The QLog setting from previous releases will no longer be respected.
  • DNS over HTTPS traffic is now included in the WARP tunnel by default.
  • The WARP client now applies post-quantum cryptography end-to-end on enabled devices accessing resources behind a Cloudflare Tunnel. This feature can be enabled by MDM.
  • Fixed an issue that caused WARP connection failures on ChromeOS devices.

Cloudflare One Agent for iOS (version 1.11)

A new GA release for the iOS Cloudflare One Agent is now available in the iOS App Store. This release contains improvements and new exciting features, including post-quantum cryptography. By tunneling your corporate network traffic over Cloudflare, you can now gain the immediate protection of post-quantum cryptography without needing to upgrade any of your individual corporate applications or systems.

Changes and improvements

  • QLogs are now disabled by default and can be enabled in the app by turning on Enable qlogs under Settings > Advanced > Diagnostics > Debug Logs. The QLog setting from previous releases will no longer be respected.
  • DNS over HTTPS traffic is now included in the WARP tunnel by default.
  • The WARP client now applies post-quantum cryptography end-to-end on enabled devices accessing resources behind a Cloudflare Tunnel. This feature can be enabled by MDM.

Cloudflare One Agent for Android (version 2.4)

A new GA release for the Android Cloudflare One Agent is now available in the Google Play Store. This release includes a new feature allowing team name insertion by URL during enrollment, as well as fixes and minor improvements.

Changes and improvements

  • Improved in-app error messages.
  • Improved mobile client login with support for team name insertion by URL.
  • Fixed an issue preventing admin split tunnel settings taking priority for traffic from certain applications.