Aerospike Connect for Event Stream Processing (ESP) release notes
Connect for Event Stream Processing (ESP) 2.4.11
August 25, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed - Aerospike Connectors - Security vulnerabilities - CVE-2025-8916, CVE-2025-8058, CVE-2025-7425, CVE-2025-6965, CVE-2025-5914, CVE-2025-32415, CVE-2025-32414, CVE-2022-29458. [CONNECTOR-1262]
Connect for Event Stream Processing (ESP) 2.4.10
July 28, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed - Aerospike Connectors - Security vulnerabilities - CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517, CVE-2025-6020, CVE-2025-6021, CVE-2025-30749, CVE-2025-47273, CVE-2025-48924, CVE-2025-49794, CVE-2025-49796, CVE-2025-50106. [CONNECTOR-1253]
Connect for Event Stream Processing (ESP) 2.4.9
July 16, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed - Aerospike Connectors - Security vulnerabilities - CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517, CVE-2025-6020, CVE-2025-6021, CVE-2025-48924, CVE-2025-49794, CVE-2025-49796. [CONNECTOR-1253]
Connect for Event Stream Processing (ESP) 2.4.8
June 19, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed - Aerospike Connectors - Security vulnerabilities - CVE-2025-0395, CVE-2025-3576, CVE-2025-4802, CVE-2024-8176, CVE-2024-12133, CVE-2024-12243, CVE-2025-32414, CVE-2025-48734. [CONNECTOR-1236]
Connect for Event Stream Processing (ESP) 2.4.7
April 11, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Bug Fixes
- Changed default value of socket-receive-buffer-bytes to null from 32kb, so this is optional configuration validation only if configured. [CONNECTOR-1219]
Security
- Aerospike Connectors - Security vulnerabilities introduced through libxml2. [CONNECTOR-1220]
Connect for Event Stream Processing (ESP) 2.4.6
March 03, 2025 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
New Features
- Use sendTimeout as configured without doubling. [CONNECTOR-1183]
- Converted transaction debug level messages to trace level. [CONNECTOR-1184]
- Kotlin version upgraded to 2.x. [CONNECTOR-1185]
Security
- Updated logback-core to 1.5.15 version to fix CVE-2024-12798, CVE-2024-12801. [CONNECTOR-1175]
- Updated logback-core to 1.5.15 version to fix CVE-2024-12801. [CONNECTOR-1179]
- Updated logback-classic to 1.5.15 version to fix CVE-2024-12798. [CONNECTOR-1180]
- Updated logback-core to 1.5.15 version to fix CVE-2024-12798. [CONNECTOR-1181]
- Updated io.netty:netty-handler to 4.1.118.Final to fix CVE-2025-24970, CVE-2025-25193, CVE-2024-29025, CVE-2024-47554, CVE-2023-46120 (rabbitmq), CVE-2024-51504 (zookeeper). [CONNECTOR-1188]
Connect for Event Stream Processing (ESP) 2.4.5
November 07, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed security vulnerability - Authentication Bypass in krb5-libs. [CONNECTOR-1160]
Connect for Event Stream Processing (ESP) 2.4.4
October 24, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fixed Deserialization of Untrusted Data in org.apache.avro:avro:1.11.3. [CONNECTOR-1149]
- Fixed Denial of Service (DoS) in com.fasterxml.jackson.core:jackson-core. [CONNECTOR-1149]
- Fixed Race Condition in io.undertow:undertow-core. [CONNECTOR-1149]
- Fixed Uncontrolled Resource Consumption in commons-io:commons-io. [CONNECTOR-1149]
Connect for Event Stream Processing (ESP) 2.4.3
September 19, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
New Features
- Netty buffer customization changes in connectors and Kafka Outbound Await Metrics for better monitoring. [CONNECTOR-1127]
- Logging improvement - Outbound Await Metrics for all applicable connectors. [CONNECTOR-1137]
Security
- Fix Arbitrary Code Injection affecting platform-python-setuptools & python3-setuptools-wheel. [CONNECTOR-1135]
- Upgraded Pulsar version.
Connect for Event Stream Processing (ESP) 2.4.2
July 25, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fix Race Condition. [CONNECTOR-1105]
- Fix Uncontrolled Resource Consumption (‘Resource Exhaustion’). [CONNECTOR-1108]
Connect for Event Stream Processing (ESP) 2.4.1
June 07, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Fix Improper Input Validation. [CONNECTOR-972]
- Fix Infinite loop. [CONNECTOR-973]
- Fix Uncontrolled Resource Consumption. [CONNECTOR-974]
- Fix Out-of-bounds write vulnerabilities. [CONNECTOR-1007]
- Fix Out-of-bounds write vulnerabilities. [CONNECTOR-1008]
- Fix Out-of-bounds write vulnerabilities. [CONNECTOR-1009]
- Fix Out-of-bounds write vulnerabilities. [CONNECTOR-1010]
- Fix Out-of-bounds write vulnerabilities. [CONNECTOR-1011]
Connect for Event Stream Processing (ESP) 2.4.0
March 25, 2024 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
New Features
- Make batching of ack configurable as a toggle. [CONNECTOR-922]
Security
- Fix Allocation of Resources Without Limits or Throttling. CVE-2024-26308 [CONNECTOR-928]
- Fix Infinite loop. CVE-2024-25710 [CONNECTOR-929]
Connect for Event Stream Processing (ESP) 2.3.0
November 07, 2023 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
New Features
- Add option to disable ESP health check. [CONNECTOR-823]
Improvements
- Return all destination Aerospike server error codes to XDR source cluster. [CONNECTOR-805]
Security
- Upgrade netty and gRPC for CVE-2023-44487. [CONNECTOR-825]
Connect for Event Stream Processing (ESP) 2.2.1
August 09, 2023 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Security
- Address CVE-2023-36480 - upgrade to aerospike-java-client version 7.0.0. [CONNECTOR-775]
Connect for Event Stream Processing (ESP) 2.2.0
July 21, 2023 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
New Features
- Batching support. [CONNECTOR-373]
- Batching support for inbuilt formats. [CONNECTOR-431]
- JSON logging format. [CONNECTOR-584]
- Bin include/exclude option in bin transformer. [CONNECTOR-705]
Improvements
- Upgrade internal dependencies. [CONNECTOR-716]
Connect for Event Stream Processing (ESP) 2.1.1
May 17, 2023 | Download
- The *.deb and *.rpm files support multiple architectures (ARM64 & AMD64).
- The connector is Java JVM based. Install the correct JVM for the desired architecture.
- This connector requires Java 11 or later.
Improvements
- Multi-arch container image supporting linux/arm64 and linux/amd64 platforms. [CONNECTOR-562]
- Upgrade vulnerable dependencies. [CONNECTOR-679]
Bug Fixes
- Correct ESP healthcheck URL for http connectors. [CONNECTOR-624]
Connect for Event Stream Processing (ESP) 2.1.0
January 12, 2023 | Download
Bug Fixes
- Fix CVE-2022-3509 in ESP Outbound Connector. [CONNECTOR-564]
- Fix CVE-2022-3510 in ESP Outbound Connector. [CONNECTOR-574]
- Fix CVE-2022-41881 in ESP Outbound Connector. [CONNECTOR-575]
Connect for Event Stream Processing (ESP) 2.0.0
April 04, 2022 | Download
New Features
- Provide an option for in-order delivery of different versions of the same record. [CONNECTOR-340]
Improvements
- Performance and stability improvements. [CONNECTOR-341]
- Vulnerability scanning and dependency upgrades. [CONNECTOR-342]
- Single installer for HTTP and XDR 5.0 wire protocol connector. [CONNECTOR-343]
Connect for Event Stream Processing (ESP) 1.1.0
February 04, 2022 | Download
New Features
- Add support to plugin custom code through the Custom transformer API. [CONNECTOR-319]
Improvements
- Support Java 17 runtime. [CONNECTOR-320]
- Add ESP destination config
http-success-status-codes
to specify HTTP status codes to indicate successful response. [CONNECTOR-322] - Add a routing config to skip dispatching of records to the destination. [CONNECTOR-323]
Bug Fixes
- Fix a memory leak on HTTP/2 remote stream cancel with HTTP/2 protocol. [CONNECTOR-324]
- ESP does not validate TLS config on start up. [CONNECTOR-325]
Connect for Event Stream Processing (ESP) 1.0.0
October 15, 2021 | Download
- Initial General Availability release for Aerospike Server Enterprise Edition version 5.0 and above.
- Legacy support for versions of the Aerospike Server Enterprise Edition version 4.9 and below.
- If using a version prior to server 4.9, you must use the HTTP connector.
- WARNING: A serious flaw has been discovered for HTTP/2 in the library used by change notification in Aerospike Enterprise Editions prior to 5.0.
http-version
MUST be set tov1
to prevent XDR and CN from being blocked.