Recent blog articles:
OpenICF 2.0.4 Released
22.07.2026
OpenICF 2.0.4 stabilizes the WebSocket connector server and the batch API, runs the LDAP connector tests against an embedded OpenDJ, modernizes the Docker images and updates OpenDJ to 5.1.2
OpenAM 16.1.2 Released
20.07.2026
OpenAM 16.1.2 with dependency security fixes for js-yaml, ws and websocket-driver, a revocation endpoint in the OpenID Connect discovery document, and an updated embedded OpenDJ 5.1.2
OpenDJ 5.1.2 Released
17.07.2026
OpenDJ 5.1.2 addresses multiple security vulnerabilities including LDAP filter stack exhaustion, JMX deserialization, VLV memory exhaustion and DSMLv2 gateway SSRF, plus ACI, replication and alias dereferencing fixes
OpenAM 16.1.1 Released
17.06.2026
OpenAM 16.1.1 with critical security fixes including pre-authentication RCE, session hijacking, LDAP injection, OAuth bypass vulnerabilities, and new features like MCP server and UI JS SDK
OpenIDM 7.1.0 Released
14.06.2026
OpenIDM 7.1.0 addresses critical security vulnerabilities including CVE-2026-1605, CVE-2026-33227, CVE-2026-39304, CVE-2018-1294, CVE-2026-42198, and adds new features
OpenICF 2.0.3 Released
14.06.2026
OpenICF 2.0.3 addresses critical security vulnerabilities including CVE-2025-67030, CVE-2026-0636, CVE-2024-7254, replaces Nashorn with Rhino, and updates OpenDJ to 5.1.1
OpenDJ 5.1.1 Released
11.06.2026
OpenDJ 5.1.1 addresses critical security vulnerabilities including CVE-2026-46495 RCE via JMX RMI and CVE-2026-42198 CPU exhaustion DoS, plus performance improvements and bug fixes
REST API Security: OAuth OIDC Authorization, OpenAPI Swagger Compliance Validation, Service Level Monitoring
27.03.2026
Learn how to secure a REST API using OpenIG, OpenAM, and Docker — covering OAuth 2.0 authorization, OpenAPI request/response validation, and per-user rate limiting with step-by-step configuration examples.
OpenIG 6.1.0 Released
25.03.2026
OpenIG 6.1.0 with new AI gateway filters for LLM prompt injection protection and token usage control, MCP policy enforcement, JWT building, OpenAPI validation, a security fix, and JDK 26 support
OpenAM 16.0.6 Released
24.03.2026
OpenAM 16.0.6 with critical security fixes including a pre-authentication RCE vulnerability patch, denial-of-service fixes, and a SameSite cookie attribute improvement