This release includes the following enhancements:

Release date: February 5, 2026

Support for .NET 10

Support for .NET 10 has been added. See Supported Frameworks.

Support for C# 14

dotTEST can now analyze code written in C# 14.

Support for IDEs

The following IDE is now supported:

  • Visual Studio 2026

Updated Static Analysis Rules

The following rules have been updated:

Rule ID

Updates

CS.EXCEPT.RETHROW

Support for Live Static Analysis has been added.

Additional Updates

  • The .slnx solution file format is now supported.

Resolved Bugs and FRs in 2025.3.1

Bug/FR ID

Description

CVE-2026-22732

Critical vulnerability resolved by upgrading spring-security to 6.5.9

CVE-2026-33937

Critical vulnerability resolved by upgrading handlebars to 4.7.9

DT-24649

Framework Version of Sample Project

DT-24690

DotTEST 2025.3 with VS 2026(18.2.1) analyzes all projects instead of selected one

Resolved Bugs and FRs in 2025.3.2

Bug/FR ID

Description

DT-24785

Report cannot be generated via cmd with option -report when folder does not exist

Resolved Bugs and FRs in 2025.3.4

Bug/FR ID

Description

CVE-2026-29145

Critical vulnerability resolved by upgrading Tomcat to 10.1.54

Resolved Bugs and FRs in 2025.3.5

Bug/FR ID

Description

CVE-2026-41284

Critical vulnerability resolved by upgrading tomcat-embed-core to 10.1.56.

CVE-2026-12143

Critical vulnerability resolved by upgrading form-data to 4.0.6.

CVE-2026-54512, CVE-2026-54513

Critical vulnerability resolved by upgrading jackson-databind to 2.21.4.

CVE-2026-40973, CVE-2026-40975

Critical vulnerability resolved by upgrading spring-boot to 3.5.15.

CVE-2026-41848, CVE-2026-41842, CVE-2026-41850, CVE-2026-41851, CVE-2026-41842, CVE-2026-41838

Critical vulnerability resolved by upgrading Spring to 6.2.19.

CVE-2026-46681

Critical vulnerability resolved by upgrading ts-utils to 0.14.0.

CVE-2026-48801

Critical vulnerability resolved by upgrading linkify-it to 5.0.0.
DT-24896Java SocketClient stopped working and exits with timeout after 1s with getsockopt error code

Resolved Bugs and FRs in 2025.3.6

Bug/FR ID

Description

CVE-2026-55276

CVE-2026-53434

CVE-2026-59083

CVE-2026-59084

Critical vulnerabilities resolved by upgrading Tomcat to 10.1.57

CVE-2026-53914Critical vulnerability resolved by upgrading kotlin-stdlib to 2.4.20

Resolved Bugs and FRs in 2025.3.7

Bug/FR ID

Description

CVE-2026-8763Critical vulnerability resolved by upgrading bc-fips to 2.1.3
CVE-2026-58062Critical vulnerability resolved by upgrading bc-fips to 2.1.3
CVE-2026-59638Critical vulnerability resolved by upgrading bctls-fips to 2.1.24
XT-44240Custom rule map did not work properly on 2025.3.x


  • No labels