Recent blog articles:

OpenICF 2.0.4 Released

22.07.2026

OpenICF 2.0.4 stabilizes the WebSocket connector server and the batch API, runs the LDAP connector tests against an embedded OpenDJ, modernizes the Docker images and updates OpenDJ to 5.1.2

OpenAM 16.1.2 Released

20.07.2026

OpenAM 16.1.2 with dependency security fixes for js-yaml, ws and websocket-driver, a revocation endpoint in the OpenID Connect discovery document, and an updated embedded OpenDJ 5.1.2

OpenDJ 5.1.2 Released

17.07.2026

OpenDJ 5.1.2 addresses multiple security vulnerabilities including LDAP filter stack exhaustion, JMX deserialization, VLV memory exhaustion and DSMLv2 gateway SSRF, plus ACI, replication and alias dereferencing fixes

OpenAM 16.1.1 Released

17.06.2026

OpenAM 16.1.1 with critical security fixes including pre-authentication RCE, session hijacking, LDAP injection, OAuth bypass vulnerabilities, and new features like MCP server and UI JS SDK

OpenIDM 7.1.0 Released

14.06.2026

OpenIDM 7.1.0 addresses critical security vulnerabilities including CVE-2026-1605, CVE-2026-33227, CVE-2026-39304, CVE-2018-1294, CVE-2026-42198, and adds new features

OpenICF 2.0.3 Released

14.06.2026

OpenICF 2.0.3 addresses critical security vulnerabilities including CVE-2025-67030, CVE-2026-0636, CVE-2024-7254, replaces Nashorn with Rhino, and updates OpenDJ to 5.1.1

OpenDJ 5.1.1 Released

11.06.2026

OpenDJ 5.1.1 addresses critical security vulnerabilities including CVE-2026-46495 RCE via JMX RMI and CVE-2026-42198 CPU exhaustion DoS, plus performance improvements and bug fixes

REST API Security: OAuth OIDC Authorization, OpenAPI Swagger Compliance Validation, Service Level Monitoring

27.03.2026

Learn how to secure a REST API using OpenIG, OpenAM, and Docker — covering OAuth 2.0 authorization, OpenAPI request/response validation, and per-user rate limiting with step-by-step configuration examples.

OpenIG 6.1.0 Released

25.03.2026

OpenIG 6.1.0 with new AI gateway filters for LLM prompt injection protection and token usage control, MCP policy enforcement, JWT building, OpenAPI validation, a security fix, and JDK 26 support

OpenAM 16.0.6 Released

24.03.2026

OpenAM 16.0.6 with critical security fixes including a pre-authentication RCE vulnerability patch, denial-of-service fixes, and a SameSite cookie attribute improvement