This release includes the following enhancements:
Release date: February 5, 2026
Support for .NET 10
Support for .NET 10 has been added. See Supported Frameworks.
Support for C# 14
dotTEST can now analyze code written in C# 14.
Support for IDEs
The following IDE is now supported:
- Visual Studio 2026
Updated Static Analysis Rules
The following rules have been updated:
Rule ID | Updates |
|---|---|
CS.EXCEPT.RETHROW | Support for Live Static Analysis has been added. |
Additional Updates
- The
.slnxsolution file format is now supported.
Resolved Bugs and FRs in 2025.3.1
Bug/FR ID | Description |
|---|---|
CVE-2026-22732 | Critical vulnerability resolved by upgrading spring-security to 6.5.9 |
CVE-2026-33937 | Critical vulnerability resolved by upgrading handlebars to 4.7.9 |
DT-24649 | Framework Version of Sample Project |
DT-24690 | DotTEST 2025.3 with VS 2026(18.2.1) analyzes all projects instead of selected one |
Resolved Bugs and FRs in 2025.3.2
Bug/FR ID | Description |
|---|---|
DT-24785 | Report cannot be generated via cmd with option -report when folder does not exist |
Resolved Bugs and FRs in 2025.3.4
Bug/FR ID | Description |
|---|---|
CVE-2026-29145 | Critical vulnerability resolved by upgrading Tomcat to 10.1.54 |
Resolved Bugs and FRs in 2025.3.5
Bug/FR ID | Description |
|---|---|
CVE-2026-41284 | Critical vulnerability resolved by upgrading tomcat-embed-core to 10.1.56. |
CVE-2026-12143 | Critical vulnerability resolved by upgrading form-data to 4.0.6. |
CVE-2026-54512, CVE-2026-54513 | Critical vulnerability resolved by upgrading jackson-databind to 2.21.4. |
CVE-2026-40973, CVE-2026-40975 | Critical vulnerability resolved by upgrading spring-boot to 3.5.15. |
CVE-2026-41848, CVE-2026-41842, CVE-2026-41850, CVE-2026-41851, CVE-2026-41842, CVE-2026-41838 | Critical vulnerability resolved by upgrading Spring to 6.2.19. |
CVE-2026-46681 | Critical vulnerability resolved by upgrading ts-utils to 0.14.0. |
CVE-2026-48801 | Critical vulnerability resolved by upgrading linkify-it to 5.0.0. |
| DT-24896 | Java SocketClient stopped working and exits with timeout after 1s with getsockopt error code |
Resolved Bugs and FRs in 2025.3.6
Bug/FR ID | Description |
|---|---|
CVE-2026-55276 CVE-2026-53434 CVE-2026-59083 CVE-2026-59084 | Critical vulnerabilities resolved by upgrading Tomcat to 10.1.57 |
| CVE-2026-53914 | Critical vulnerability resolved by upgrading kotlin-stdlib to 2.4.20 |
Resolved Bugs and FRs in 2025.3.7
Bug/FR ID | Description |
|---|---|
| CVE-2026-8763 | Critical vulnerability resolved by upgrading bc-fips to 2.1.3 |
| CVE-2026-58062 | Critical vulnerability resolved by upgrading bc-fips to 2.1.3 |
| CVE-2026-59638 | Critical vulnerability resolved by upgrading bctls-fips to 2.1.24 |
| XT-44240 | Custom rule map did not work properly on 2025.3.x |