Skip to content

Releases: lf-edge/ekuiper

v2.2.4

20 Apr 01:40
17ecd20

Choose a tag to compare

What's Changed

Full Changelog: v2.2.3...v2.2.4

v2.4.0-beta.6

26 Mar 03:46
e5adea8

Choose a tag to compare

v2.4.0-beta.6 Pre-release
Pre-release

What's Changed

Full Changelog: v2.4.0-beta.5...v2.4.0-beta.6

v2.4.0-beta.5

20 Mar 07:04
b38a763

Choose a tag to compare

v2.4.0-beta.5 Pre-release
Pre-release

What's Changed

Full Changelog: v2.4.0-beta.4...v2.4.0-beta.5

v2.4.0-beta.4

05 Mar 03:22
d2237ad

Choose a tag to compare

v2.4.0-beta.4 Pre-release
Pre-release

What's Changed in v2.4.0-beta.4

✨ New Features

  • Protobuf: Added support for loading protobuf schemas directly from a directory (#4006)

🐛 Bug Fixes

  • Kafka: Revised consumer groupid settings to ensure proper streaming assignments (#4009)
  • SQL Planner: Fixed mock source emitting incorrect names during unnest operations (#4008)

🔧 Improvements & Maintenance

  • Optimized tests for faster table loading (#4001)
  • Added markdown linter to ensure documentation consistency (#4004)
  • Bumped dependencies: go.opentelemetry.io/otel/sdk (#4007) and filippo.io/edwards25519 (#4005)

v2.4.0-beta.3

02 Feb 09:37
5dee73c

Choose a tag to compare

v2.4.0-beta.3 Pre-release
Pre-release

What's Changed

Full Changelog: v2.4.0-beta.2...v2.4.0-beta.3

v2.4.0-beta.2

30 Jan 03:00

Choose a tag to compare

v2.4.0-beta.2 Pre-release
Pre-release

What's Changed

Full Changelog: v2.4.0-beta.1...v2.4.0-beta.2

v2.4.0-beta.1

28 Jan 03:41
4d25307

Choose a tag to compare

v2.4.0-beta.1 Pre-release
Pre-release

What's Changed

New Contributors

Full Changelog: v2.4.0-alpha.3...v2.4.0-beta.1

v2.4.0-alpha.3

20 Jan 02:59
ca783a1

Choose a tag to compare

v2.4.0-alpha.3 Pre-release
Pre-release

Features

Video Source Refactoring

Refactored the video source to use a push model, improving efficiency and performance (#3959).

Sink Enhancements

Added HasFields support to sinks, enabling more flexible field validation (#3964).

Server Improvements

Implemented version-based conflict resolution for concurrent upserts (#3970).


Bug Fixes

  • Fixed function channel timeout issues in Go SDK (#3965)
  • Fixed function channel timeout issues in Python SDK (#3967)

Full Changelog: v2.4.0-alpha.2...v2.4.0-alpha.3

v2.4.0-alpha.2

17 Dec 07:08
5619323

Choose a tag to compare

v2.4.0-alpha.2 Pre-release
Pre-release

⚠️ Breaking Changes

IMPORTANT: This release includes security enhancements that may affect existing deployments.

  1. SSRF Protection Enabled by Default

    • The new enablePrivateNet configuration defaults to false, which blocks access to private network addresses (e.g., localhost, 127.0.0.1, internal IPs).
    • Action Required: If your rules rely on accessing local resources (local REST services, local databases, etc.), you must set enablePrivateNet: true in etc/kuiper.yaml.
    • Documentation
  2. File Access Restriction Enabled by Default

    • The new allowExternalFileAccess configuration defaults to false, restricting file access to the data/uploads directory only.
    • Action Required: If your plugins or schemas need to access files outside the uploads directory, set allowExternalFileAccess: true.
    • Documentation

New Features

Temporary Streams (#3940)

Introduced temporary streams that exist only in memory and are not persisted. They are defined using TEMP="true" in the stream definition and are ideal for intermediate data processing or testing. Temporary streams cannot be replaced and can only be used by temporary rules.

State Window Partition By (#3936)

State windows now support the PARTITION BY clause, enabling data partitioning into separate window groups. This allows more granular state tracking across different partitions.

Tuple Sink Format Support (#3954)

Tuple-based sinks now support configurable output formats, providing more flexibility in data serialization.

Video Source Enhancements (#3955)

Added new properties to the video source for better ffmpeg control:

  • debugResp: Output ffmpeg response to logs for debugging
  • inputArgs: Custom input arguments for ffmpeg (e.g., rtsp_transport: tcp)
  • Documentation

Global Configuration Provider (#3942)

Added a global configuration provider that allows portable plugins and external components to access eKuiper's configuration settings programmatically.

API ID Validation (#3951)

Added comprehensive validation for resource identifiers. Stream, table, rule, connection, plugin, schema, and service names are now validated to prevent invalid characters.


Security Enhancements

SSRF Protection

Implemented Server-Side Request Forgery (SSRF) protection across all HTTP clients. Private network access is blocked by default.

File Access Restriction (#3950)

Added configurable file access restrictions to prevent unauthorized file system access.

Path Traversal Prevention

  • Fixed upload embedded path traversal (#3958)
  • Fixed path traversal in file downloads
  • Enforced safe path validation for user input (#3911)
  • Safe unzip implementation (#3931)

Bug Fixes

  • Fixed HTTP refresh token support (#3922)
  • Fixed REST sink access token handling
  • Fixed SQL lookup unsafe string (#3930)
  • Fixed wildcard expander limit in slice mode (#3925)
  • Fixed bool type conversion issues (#3917, #3918)
  • Fixed state window with GROUP BY key (#3916)

Dependency Updates

  • Upgraded Go version
  • Upgraded FoundationDB client to 7.3 (#3938)
  • Bumped logrus, paho.mqtt.golang, golang.org/x/crypto, jose2go, gorilla/schema

Full Changelog: v2.4.0-alpha.1...v2.4.0-alpha.2

v2.3.1

21 Nov 07:57

Choose a tag to compare

What's Changed

Full Changelog: v2.3.0...v2.3.1