Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Published by Scroll Versions from space LSDEV and version 2026.1

...

  • Upgraded Tomcat to version 10.1.57 to fix CVE-2026-55276, CVE-2026-53434, CVE-2026-59083, and CVE-2026-59084

2025.2

Enhancements

Technical Support Archive Improvements

License Server Enhancements

Updated in 2026.1.3

  • Upgraded Azul JRE to 17.0.20.1+1
  • Upgraded Apache Tomcat to 10.1.59
  • Upgraded Bouncy Castle Java FIPS to 2.1.3 to address CVE‐2026‐8763
  • Upgraded Jackson to 2.21.6 to address CVE-2026-68497

2025.2

Enhancements

Technical Support Archive Improvements

License Server Enhancements

  • New setting: Restrict access to automation licenses. When enabled, License Server will deny access to licenses with automation features unless those features are explicitly requested
  • New setting: Restrict access to automation licenses. When enabled, License Server will deny access to licenses with automation features unless those features are explicitly requested. This setting is enabled by default.
    • Starting with version 2025.2, automation licenses will be granted only to tools that explicitly request the automation feature. This prevents desktop instances from consuming tokens intended for automation use. Both the Parasoft tool and License Server must be version 2025.2 or later and Restrict access to automation licenses setting must be enabled for this behavior to take effect.
  • Contributing Developers Usage Data: License Server now captures and displays additional information about the author of the latest commit in the git repository
  • New setting: Delete Contributing Developers Usage Data older than one year. When enabled, License Server will automatically delete usage data sent from Parasoft C/C++test CT and Parasoft C/C++test Standard after one year. This setting is enabled by default.
    • In addition, the License Server setting Grant license token to login username is now enabled by default in new installations. Users upgrading to 2025.2 will have their current setting preserved.
    • Floating licenses have been relabeled as "concurrent" licenses. No functionality has changed.
    • Updated licenseserver/usage API to support filtering license usage by license.

    Important Note for Upgrades

    In certain Amazon AWS EC2 environments, the machineId may change after upgrading. If this happens, you will need to acquire new network licenses for pre-existing tools.

    Deprecated or No Longer Supported

    • Support for Windows 10 has ended.

    Software Shipped with License Server

    The following software is shipped with License Server 2025.2:

    • Apache Tomcat: 10.1.48
    • Java Azul OpenJDK 17.0.16+8 (17.62.17)

    Updated in 2025.2.2

    • Upgraded to spring-security 6.5.9 to address CVE-2026-22732
    • Upgraded to Tomcat 10.1.52 to address CVE-2025-66614

    Updated in 2025.2.4

      • Starting with version 2025.2, automation licenses will be granted only to tools that explicitly request the automation feature. This prevents desktop instances from consuming tokens intended for automation use. Both the Parasoft tool and License Server must be version 2025.2 or later and Restrict access to automation licenses setting must be enabled for this behavior to take effect.
    • Contributing Developers Usage Data: License Server now captures and displays additional information about the author of the latest commit in the git repository
    • New setting: Delete Contributing Developers Usage Data older than one year. When enabled, License Server will automatically delete usage data sent from Parasoft C/C++test CT and Parasoft C/C++test Standard after one year. This setting is enabled by default.
    • In addition, the License Server setting Grant license token to login username is now enabled by default in new installations. Users upgrading to 2025.2 will have their current setting preserved.
    • Floating licenses have been relabeled as "concurrent" licenses. No functionality has changed.
    • Updated licenseserver/usage API to support filtering license usage by license.

    Important Note for Upgrades

    In certain Amazon AWS EC2 environments, the machineId may change after upgrading. If this happens, you will need to acquire new network licenses for pre-existing tools.

    Deprecated or No Longer Supported

    • Support for Windows 10 has ended.

    Software Shipped with License Server

    The following software is shipped with License Server 2025.2:

    • Apache Tomcat: 10.1.48
    • Java Azul OpenJDK 17.0.16+8 (17.62.17)Upgraded to Tomcat 10.1.54 to address CVE-2026-29145

    Updated in 2025.2.

    ...

    2

    • Upgraded to

    ...

    • spring-security 6.5.9 to address CVE-2026-

    ...

    • 22732
    • Upgraded to

    ...

    • Tomcat 10.

    ...

    • 1.

    ...

    • 52 to address CVE-

    ...

    • 2025-

    ...

    • 66614

    Updated in 2025.2.4

    • Upgraded to Tomcat 10.1.54 to address CVE-2026-29145

    ...

    Updated in 2025.2.

    ...

    5

    • Upgraded to Tomcat

    ...

    • 10.1.

    ...

    • 56 to address CVE-2026-43515
    • Upgraded to Spring 6.2.19 to address CVE-2026-

    ...

    • 41842
    • Upgraded to Spring Security 6.5.11 to address CVE-2026-

    ...

    • 47838
    • Upgraded Jackson to 2.21.4 to fix CVE-2026-

    ...

    • 54512 and CVE-2026-

    ...

    • 54513

    Updated in 2025.

    ...

    2.6

    • Upgraded Tomcat to version 10.1.57 to fix CVE-2026-55276, CVE-2026-53434, CVE-2026-59083, and CVE-2026-59084

    Updated in 2025.2.7

    • Upgraded Azul JRE to 17.0.20.1+1
    • Upgraded Apache Tomcat to 10.1.59
    • Upgraded Bouncy Castle Java FIPS to 2.1.3 to address CVE‐2026‐8763
    • Upgraded Jackson to 2.21.6 to address CVE-2026-68497

    2025.1

    Enhancements

    Support for Jtest Unit Test Bulk Creation Tiers

    Jtest Unit Test Bulk Creation Tiers license feature enables users to create unit test cases for more than one file at a time. When hosted on a License Server, this license allows centralized tracking of token availability and usage across your team.

    Support for Contributing Developers Usage Data

    License Server

    Enhancements

    Support for Jtest Unit Test Bulk Creation Tiers

    Jtest Unit Test Bulk Creation Tiers license feature enables users to create unit test cases for more than one file at a time. When hosted on a License Server, this license allows centralized tracking of token availability and usage across your team.

    Support for Contributing Developers Usage Data

    License Server collects statistics on analyzed files and their associated Git repositories, as reported by the C/C++test CT tool. Users can download a ZIP archive containing the full dataset or view a summarized version of the usage data directly in the UI.

    Other Notes

    • Support for Windows Server 2025 has been added.
    • Added REST endpoints to review and delete users in the User Administration database who were originally imported from LDAP but are no longer present in the directory.
    • Improved logging of errors to provide clearer diagnostics when issues occur with OpenID Connect (OIDC) configuration.
    • Added instructions for deploying LSS in Kubernetes environments that enforce volume mount security policies.

    Deprecated or No Longer Supported

    • Support for Windows 10 has been deprecated.

    Software Shipped with License Server

    The following software is shipped with License Server 2025.1:

    • Apache Tomcat 10.1.40
    • Java Azul OpenJDK 17.0.14 (17.56.15)

    Updated in 2025.1.1

    a ZIP archive containing the full dataset or view a summarized version of the usage data directly in the UI.

    Other Notes

    • Support for Windows Server 2025 has been added.
    • Added REST endpoints to review and delete users in the User Administration database who were originally imported from LDAP but are no longer present in the directory.
    • Improved logging of errors to provide clearer diagnostics when issues occur with OpenID Connect (OIDC) configuration.
    • Added instructions for deploying LSS in Kubernetes environments that enforce volume mount security policies.

    Deprecated or No Longer Supported

    • Support for Windows 10 has been deprecated.

    Software Shipped with License Server

    The following software is shipped with License Server 2025.1:

    • Apache Tomcat 10.1.40
    • Java Azul OpenJDK 17.0.14 (17.56.15)

    Updated in 2025.1.1

    • Upgraded to spring-security 6.5.9 to address CVE-2026-22732
    • Upgraded to Tomcat 10.1.53 to address CVE-2025-66614 and CVE-2026-29145

    Updated in 2025.1.2

    • Upgraded to Tomcat 10.1.56 to address CVE-2026-43515
    • Upgraded to Spring 6.2.19 to address CVE-2026-41842
    • Upgraded to Spring Security 6.5.11 to address CVE-2026-47838
    • Upgraded to commons-fileupload2-core 2.0.0-M4 to address CVE-2025-48976
    • Upgraded to commons-beanutils 1.11.0 to address CVE-2025-48734
    • Upgraded Jackson to 2.18.8 to fix CVE-2026-54512 and CVE-2026-54513
    • Upgraded to spring-security 6.5.9 to address CVE-2026-22732
    • Upgraded to Tomcat 10.1.53 to address CVE-2025-66614 and CVE-2026-29145

    Updated in 2025.1.

    ...

    3

    • Upgraded Tomcat to

    ...

    • version 10.1.

    ...

    • 57 to

    ...

    • fix CVE-2026-

    ...

    • 55276, CVE-2026-

    ...

    • 53434, CVE-2026-59083, and CVE-2026-59084
    • Upgraded BouncyCastle to version 1.84

    ...

    • to address CVE-2025-

    ...

    • 14813

    Updated in 2025.1.4

    • Upgraded

    ...

    • Azul JRE to

    ...

    • 17.

    ...

    • 0.20.1+1
    • Upgraded Apache Tomcat to

    Updated in 2025.1.3

    • Upgraded Tomcat to version 10.1.57 to fix CVE-2026-55276, CVE-2026-53434, CVE-2026-59083, and CVE-2026-5908459
    • Upgraded Bouncy Castle to 1.85 to address CVE‐2026‐8763
    • Upgraded Jackson to 2.18.10 Upgraded BouncyCastle to version 1.84 to address CVE-20252026-1481368497

    2024.2

    Important Notes for Upgrades

    ...