The Apache Software Foundation Blog
The Apache News Round-up: week ending 27 September 2021
We're closing September with another great week. Here are the latest updates on the Apache community's activities:
ASF Board – management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws.- Next Board Meeting: 20 October 2021. Board calendar and minutes https://apache.org/foundation/board/calendar.html
ApacheCon™ –
the ASF's official global conference series, bringing Tomorrow's
Technology Today since 1998.
- Our 2021 events are complete: thanks to all speakers, sponsors, participants, and planners for their great turnout!
- Presentations for ApacheCon Asia are available on the ASF YouTube channel. ApacheCon@Home presentations will be posted shortly.
ASF Infrastructure – our distributed team on three continents keeps the ASF's infrastructure running around the clock.
-
7M+ weekly checks yield uptime at 100.00%. Performance checks across 50
different service components spread over more than 250 machines in data
centers around the world. View the Apache Infrastructure Uptime site to see the most recent averages.
Apache Code Snapshot – Over the past week, 328 Apache Committers changed 7,398,124 lines of code over 2,924 commits. Top 5 contributors, in order, are: Harikrishna Patnala, Gary Gregory, Andy Seaborne, Daniel Gruno, and Mark Thomas.
Apache Project Announcements – the latest updates by category.
Big Data --- Apache Druid 0.22.0 released
-- CVE-2021-36749: The HTTP inputSource allows authenticated users to read data from other sources than intended
Cloud Computing --
- Apache Kafka 3.0.0 released
-- CVE-2021-38153: Timing Attack Vulnerability for Apache Kafka Connect and Clients
Data Management Platform --
- Apache Ignite 2.11.0 released
IDE --
- Apache NetBeans 12.5 released
- Apache Pulsar 2.8.1 released
Did You Know?
- Did you know that LinkedIn's 10,000-node cluster for Big Data analytics and machine learning workloads is considered the world's largest Apache Hadoop implementation?
- Did you know that Yelp's new search engine, Nrtsearch, is powered by Apache Lucene?
- Did you know that the Ignite Summit Cloud Edition CFP closes on 15 October?
Apache Community Notices
- Watch "Trillions and Trillions Served", the documentary on the ASF 1) full feature [49 min] 2) "Apache Everywhere" [6 min] 3) "Why Apache" [2.5 min] 4) “Apache Innovation” [40 min]
- ASF Annual Report: FY2021 -- Press release and Report (PDF)
- The Apache Way to Sustainable Open Source Success
- Foundation Reports and Statements
- Presentations from ApacheCon Asia are available on YouTube
- "Success at Apache" focuses on the people and processes behind why the ASF "just works."
- Inside Infra: the new interview series with members of the ASF infrastructure team --meet
Chris Thistlethwaite https://s.apache.org/InsideInfra-Chris
Drew Foulks https://s.apache.org/InsideInfra-Drew
Greg Stein Part I https://s.apache.org/InsideInfra-Greg
...Part II https://s.apache.org/InsideInfra-Greg2 and Part III https://s.apache.org/InsideInfra-Greg3
Daniel Gruno Part I https://s.apache.org/InsideInfra-Daniel1 and Part II https://s.apache.org/InsideInfra-Daniel2
Gavin McDonald Part I https://s.apache.org/InsideInfra-Gavin and Part II https://s.apache.org/InsideInfra-Gavin2
Andrew Wetmore Part I https://s.apache.org/InsideInfra-Andrew and Part II https://s.apache.org/InsideInfra-Andrew2
Chris Lambertus Part I https://s.apache.org/InsideInfra-ChrisL and Part II https://s.apache.org/InsideInfra-ChrisL2
- Follow the ASF on social media: @TheASF on Twitter and The ASF page LinkedIn.
- Follow the Apache Community on Facebook and Twitter.
Stay updated about The ASF
For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. For a broader spectrum from the Apache community, https://twitter.com/PlanetApache provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.
Posted at 06:41AM Sep 27, 2021
by Swapnil M Mane in Newsletter |
|
The Apache News Round-up: week ending 17 September 2021
We're wrapping up another great week with the following activities from the Apache community:
Success at Apache
This series focuses on the people and processes behind why the ASF "just works." The most recent entry is "From Mentee to PMC" by Ephraim Anierobi.
ASF Annual Report
The ASF annual report is a look back at our many achievements during the 2021 Fiscal Year.
- Press release: The Apache Software Foundation Announces Annual Report for 2021 Fiscal Year
- ASF FY2021 Annual Report (PDF)
- Next Board Meeting: 20 October 2021. Board calendar and minutes https://apache.org/foundation/board/calendar.html
ApacheCon™ – the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998. ApacheCon Asia was held online 6-8 August; ApacheCon@Home is coming up next on 21-23 September:
- The Apache® Software Foundation Announces Program for ApacheCon@Home 2021
- Learn all about ApacheCon with Rich Bowen and Swapnil M Mane
- Learn about the Community Track from Sharan Foga and Swapnil M Mane
- Register for ApacheCon@Home
ASF Infrastructure – our distributed team on three continents keeps the ASF's infrastructure running around the clock.
- 7M+ weekly checks yield uptime at 99.99%. Performance checks across 50 different service components spread over more than 250 machines in data centers around the world. View the Apache Infrastructure Uptime site to see the most recent averages.
Apache Code Snapshot – Over the past week, 356 Apache Committers changed 2,986,797 lines of code over 3,104 commits. Top 5 contributors, in order, are: Alex Heneveld, Andrea Cosentino, Stephen Mallette, Andi Huber, and Claus Ibsen.
Apache Project Announcements – the latest updates by category.
Application Servers/Middleware --- Apache Karaf runtime 4.3.3 released
Content --
- Apache PDFBox 3.0.0-alpha2 released
- Apache Any23 2.5 released
-- CVE-2021-38555: An XML external entity (XXE) injection vulnerability exists in StreamUtils.java
-- CVE-2021-40146: A Remote Code Execution (RCE) vulnerability exists in YAMLExtractor.java
Cloud Computing --
- Apache jclouds 2.4.0 released
Integration --
- Apache Camel 3.11.2 (LTS) released
IoT --
- Apache IoTDB 0.12.2 released
Libraries --
- Apache Log4j Kotlin API 1.1.0 released
- Apache Commons RNG 1.4 released
- Apache Jena CVE-2021-39239: XML External Entity (XXE) vulnerability
Observability --
- Apache SkyWalking Python Agent 0.7.0 and Satellite 0.2.0 released
Search --
- Apache Solr Operator v0.4.0 released
Security Framework --
- Apache Shiro CVE-2021-41303: Before 1.8.0, when using Apache Shiro with Spring Boot, a specially crafted HTTP request may cause an authentication bypass
Servers --
- Apache Tomcat 8.5.71, 9.0.53, 10.0.11, and 10.1.0-M5 (alpha) released
-- CVE-2021-41079: Denial of Service
- Apache HttpComponents Core 5.2-alpha1 released
Web Frameworks -
- Apache Wicket 9.5.0 released
Did You Know?
- Did you know that NASA JPL uses Apache Kafka to enable real-time data feeds from Mars?
- Did you know that ASF Infrastructure's uptime during FY2021 was 99.75%?
- Did you know that Shopify uses Apache Flink to analyze 10 TB+ of data?
Apache Community Notices
- Watch "Trillions and Trillions Served", the documentary on the ASF 1) full feature [49 min] 2) "Apache Everywhere" [6 min] 3) "Why Apache" [2.5 min] 4) “Apache Innovation” [40 min]
- The Apache Month in Review: August 2021
- The Apache Way to Sustainable Open Source Success
- Foundation Reports and Statements
- Presentations from ApacheCon Asia are available on YouTube
- "Success at Apache" focuses on the people and processes behind why the ASF "just works."
- Inside Infra: the new interview series with members of the ASF infrastructure team --meet
Chris Thistlethwaite https://s.apache.org/InsideInfra-Chris
Drew Foulks https://s.apache.org/InsideInfra-Drew
Greg Stein Part I https://s.apache.org/InsideInfra-Greg
...Part II https://s.apache.org/InsideInfra-Greg2 and Part III https://s.apache.org/InsideInfra-Greg3
Daniel Gruno Part I https://s.apache.org/InsideInfra-Daniel1 and Part II https://s.apache.org/InsideInfra-Daniel2
Gavin McDonald Part I https://s.apache.org/InsideInfra-Gavin and Part II https://s.apache.org/InsideInfra-Gavin2
Andrew Wetmore Part I https://s.apache.org/InsideInfra-Andrew and Part II https://s.apache.org/InsideInfra-Andrew2
Chris Lambertus Part I https://s.apache.org/InsideInfra-ChrisL and Part II https://s.apache.org/InsideInfra-ChrisL2
- Follow the ASF on social media: @TheASF on Twitter and The ASF page LinkedIn.
- Follow the Apache Community on Facebook and Twitter.
Stay updated about The ASF
For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. For a broader spectrum from the Apache community, https://twitter.com/PlanetApache provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.
Posted at 02:36PM Sep 20, 2021
by Swapnil M Mane in Newsletter |
|
The Apache News Round-up: week ending 10 September 2021
We're wrapping up another great week with the following activities from the Apache community:
ASF Annual Report – a look back at our many achievements during the 2021 Fiscal Year
- Press release https://s.apache.org/FY2021AnnualReport-pressrelease
- Full report https://s.apache.org/FY2021AnnualReport
- Next Board Meeting: 15 September 2021. Board calendar and minutes https://apache.org/foundation/board/calendar.html
ApacheCon™ – the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998. ApacheCon Asia was held online 6-8 August; ApacheCon@Home is coming up next on 21-23 September:
- The Apache® Software Foundation Announces Program for ApacheCon@Home 2021 https://s.apache.org/ACHome2021
- Learn all about ApacheCon with Rich Bowen and Swapnil M Mane https://youtu.be/m_c7NJ5yMOg
- Learn about the Community Track from Sharan Foga and Swapnil M Mane https://youtu.be/8cZF-gaE3a4
- Register for ApacheCon@Home https://www.apachecon.com/acah2021/
ASF Infrastructure – our distributed team on three continents keeps the ASF's infrastructure running around the clock.
- 7M+ weekly checks yield uptime at 100.00%. Performance checks across 50 different service components spread over more than 250 machines in data centers around the world. http://www.apache.org/uptime/
Apache Code Snapshot – Over the past week, 326 Apache Committers changed 9,187,985 lines of code over 2,985 commits. Top 5 contributors, in order, are: Harikrishna Patnala, Andi Huber, Yann Ylavic, Andrea Cosentino, and Benoit Tellier.
Apache Project Announcements – the latest updates by category.
APIs --
- Apache APISIX Go Plugin Runner 0.2.0 released https://apisix.apache.org/
Application Servers --
- Apache Geronimo Arthur 1.0.3 released https://geronimo.apache.org/arthur
- Apache Geode 1.14.0 released http://geode.apache.org/
Content --
- Apache Jackrabbit 2.14.10 released http://jackrabbit.apache.org/
- Apache Groovy 2.5.15, 3.0.9, and 4.0.0-beta-1 released https://groovy.apache.org/
Workflow --
- Apache DolphinScheduler 1.3.8 released https://dolphinscheduler.apache.org/
- Apache Airflow CVE-2021-38540: Variable Import endpoint missed authentication check https://s.apache.org/88ww5
Did You Know?
- Did you know that ByteDance uses Apache Hudi to build exabyte-scale data lakes for services such as TikTok? http://hudi.apache.org/
- Did you know that the Netherlands and Japan Pulsar MeetUp groups are having meetups in September? https://pulsar.apache.org/en/events/
- Did you know that Kafka Summit will be held online and free of charge 14-15 September? http://kafka.apache.org/events
Apache Community Notices
- Watch "Trillions and Trillions Served", the documentary on the ASF 1) full feature [49 min] https://s.apache.org/Trillions-Feature 2) "Apache Everywhere" [6 min] https://s.apache.org/ApacheEverywhere 3) "Why Apache" [2.5 min] https://s.apache.org/ASF-Trillions-WhyApache 4) “Apache Innovation” [40 min] https://s.apache.org/ApacheInnovation
- The Apache Month in Review: August 2021 https://s.apache.org/August2021
- The Apache Way to Sustainable Open Source Success https://s.apache.org/GhnI
- Foundation Reports and Statements http://www.apache.org/foundation/reports.html
- Presentations from ApacheCon Asia are available at https://s.apache.org/ApacheConAsia2021-talks
- "Success at Apache" focuses on the people and processes behind why the ASF "just works". https://blogs.apache.org/foundation/category/SuccessAtApache
- Inside Infra: the new interview series with members of the ASF infrastructure team --meet
Chris Thistlethwaite https://s.apache.org/InsideInfra-Chris
Drew Foulks https://s.apache.org/InsideInfra-Drew
Greg Stein Part I https://s.apache.org/InsideInfra-Greg
...Part II https://s.apache.org/InsideInfra-Greg2 and Part III https://s.apache.org/InsideInfra-Greg3
Daniel Gruno Part I https://s.apache.org/InsideInfra-Daniel1 and Part II https://s.apache.org/InsideInfra-Daniel2
Gavin McDonald Part I https://s.apache.org/InsideInfra-Gavin and Part II https://s.apache.org/InsideInfra-Gavin2
Andrew Wetmore Part I https://s.apache.org/InsideInfra-Andrew and Part II https://s.apache.org/InsideInfra-Andrew2
Chris Lambertus Part I https://s.apache.org/InsideInfra-ChrisL and Part II https://s.apache.org/InsideInfra-ChrisL2
- Follow the ASF on social media: @TheASF on Twitter (https://twitter.com/TheASF) and on LinkedIn at https://www.linkedin.com/company/the-apache-software-foundation
- Follow the Apache Community on Facebook https://www.facebook.com/ApacheSoftwareFoundation/ and Twitter https://twitter.com/ApacheCommunity
= = =
For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. For a broader spectrum from the Apache community, https://twitter.com/PlanetApache provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.
Posted at 12:16PM Sep 10, 2021
by Swapnil M Mane in Newsletter |
|
The Apache News Round-up: week ending 3 September 2021
Welcome, September --we're opening the month with another great week. Here's what the Apache community has been up to:
ASF Annual Report – a look back at our many achievements during the 2021 Fiscal Year
- Press release https://s.apache.org/FY2021AnnualReport-pressrelease
- Full report https://s.apache.org/FY2021AnnualReport
Apache Month in Review – a round-up of our Round-ups and other newsworthy bits over the past month.
- August Month in Review https://s.apache.org/August2021
ASF Board – management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws.
- Next Board Meeting: 15 September 2021. Board calendar and minutes https://apache.org/foundation/board/calendar.html
ApacheCon™ – the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998. ApacheCon Asia was held online 6-8 August; ApacheCon@Home is coming up next on 21-23 September:
- The Apache® Software Foundation Announces Program for ApacheCon@Home 2021 https://s.apache.org/ACHome2021
- Learn about the Community Track from Sharan Foga and Swapnil M Mane https://youtu.be/8cZF-gaE3a4
- Register for ApacheCon@Home https://www.apachecon.com/acah2021/
ASF Infrastructure – our distributed team on three continents keeps the ASF's infrastructure running around the clock.
- 7M+ weekly checks yield uptime at 100.00%. Performance checks across 50 different service components spread over more than 250 machines in data centers around the world. http://www.apache.org/uptime/
Apache Code Snapshot – Over the past week, 340 Apache Committers changed 2,033,185 lines of code over 3,224 commits. Top 5 contributors, in order, are: Jean-Baptiste Onofré, Mark Thomas, Andrea Cosentino, Andi Huber, Harikrishna Patnala, and Albumen Kevin.
Apache Project Announcements – the latest updates by category.
APIs --
- Apache APISIX 2.9 released https://apisix.apache.org/
Big Data --
- The Apache Drill Project Announces Apache® DrillTM v1.19 Milestone Release https://s.apache.org/bfhy6
- Apache Qpid Broker-J 8.0.6 and Proton-J 0.33.9 released https://qpid.apache.org/
- Apache Hudi 0.9.0 released https://hudi.apache.org/
- Apache Zeppelin CVE-2021-36090: Bash command injection in spark interpreter https://s.apache.org/njaui
-- CVE-2020-13929: Notebook permissions bypass https://s.apache.org/tx1s1
-- CVE-2021-27578: Cross Site Scripting in markdown interpreter https://s.apache.org/701t0
Content --
- Apache Tika 2.1.0 released https://tika.apache.org/
- Apache Commons DBCP 2.9.0 released http://commons.apache.org/dbcp/
Servers --
- Apache Tomcat Native 1.2.31 released https://tomcat.apache.org/
Did You Know?
- Did you know that the following projects are celebrating anniversaries in September? Congratulations to Apache ServiceMix (14 years); Hive, Pig, and Shiro (11 years); Airavata, Bigtop, and SIS (9 years); Curator (8 years); Storm (7 years); Yetus (6 years); RocketMQ and Royale (4 years); Pulsar (3 years); Rya (2 years); IoTDB (1 year) https://projects.apache.org/committees.html?date
- Did you know that Apache Cordova will be archiving all older translated documentation? https://cordova.apache.org/announcements/2021/08/25/translations.html
- Did you know that Flink Forward will be held 26-27 October? http://flink.apache.org/
Apache Community Notices
- Watch "Trillions and Trillions Served", the documentary on the ASF 1) full feature [49 min] https://s.apache.org/Trillions-Feature 2) "Apache Everywhere" [6 min] https://s.apache.org/ApacheEverywhere 3) "Why Apache" [2.5 min] https://s.apache.org/ASF-Trillions-WhyApache 4) “Apache Innovation” [40 min] https://s.apache.org/ApacheInnovation
- The Apache Way to Sustainable Open Source Success https://s.apache.org/GhnI
- Foundation Reports and Statements http://www.apache.org/foundation/reports.html
- Presentations from ApacheCon Asia are available at https://s.apache.org/ApacheConAsia2021-talks
- "Success at Apache" focuses on the people and processes behind why the ASF "just works". https://blogs.apache.org/foundation/category/SuccessAtApache
- Inside Infra: the new interview series with members of the ASF infrastructure team --meet
Chris Thistlethwaite https://s.apache.org/InsideInfra-Chris
Drew Foulks https://s.apache.org/InsideInfra-Drew
Greg Stein Part I https://s.apache.org/InsideInfra-Greg
...Part II https://s.apache.org/InsideInfra-Greg2 and Part III https://s.apache.org/InsideInfra-Greg3
Daniel Gruno Part I https://s.apache.org/InsideInfra-Daniel1 and Part II https://s.apache.org/InsideInfra-Daniel2
Gavin McDonald Part I https://s.apache.org/InsideInfra-Gavin and Part II https://s.apache.org/InsideInfra-Gavin2
Andrew Wetmore Part I https://s.apache.org/InsideInfra-Andrew and Part II https://s.apache.org/InsideInfra-Andrew2
Chris Lambertus Part I https://s.apache.org/InsideInfra-ChrisL and Part II https://s.apache.org/InsideInfra-ChrisL2
- Follow the ASF on social media: @TheASF on Twitter (https://twitter.com/TheASF) and on LinkedIn at https://www.linkedin.com/company/the-apache-software-foundation
- Follow the Apache Community on Facebook https://www.facebook.com/ApacheSoftwareFoundation/ and Twitter https://twitter.com/ApacheCommunity
= = =
For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. For a broader spectrum from the Apache community, https://twitter.com/PlanetApache provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.
Posted at 11:15AM Sep 03, 2021
by Swapnil M Mane in Newsletter |
|
Apache Month in Review: August 2021
Welcome to the latest monthly overview of events from the Apache community. Here's a summary of what happened in August:
New this month --
- The Apache Software Foundation Announces Apache® Pinot™ as a Top-Level Project https://s.apache.org/ft8p6
- The Apache® Software Foundation Announces Program for ApacheCon@Home 2021 https://s.apache.org/ACHome2021
- The Apache Drill Project Announces Apache® Drill™ v1.19 Milestone Release https://s.apache.org/bfhy6
- The Apache® Software Foundation Announces Annual Report for 2021 Fiscal Year https://s.apache.org/FY2021AnnualReport-pressrelease
- Apache Month in Review: July 2021 https://s.apache.org/July2021 + Video highlights https://youtu.be/KIYB1g6SKhg
Important Dates --
- Next Board Meeting: 15 September 2021. Board calendar and minutes http://apache.org/foundation/board/calendar.html
- ApacheCon™ --the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998-- is being held twice in 2021:
- UPCOMING: Register for ApacheCon@Home - 21-23 September https://www.apachecon.com/acah2021/
-- Learn about the Community Track from Sharan Foga and Swapnil M Mane https://youtu.be/8cZF-gaE3a4
- Completed: ApacheCon Asia - 6-8 August --presentations available at https://s.apache.org/37n3z
Infrastructure --
Committer Activity --
In August, 764 Apache Committers changed 15,185,996 lines of code over 17,295 commits. The Committers with the top 5 highest contributions, in order, were: Claus Ibsen, Alex Herbert, Andrea Cosentino, Harikrishna Patnala, and Kaxil Naik.
Project Releases and Updates --
New releases from Apache ActiveMQ (Messaging); Airflow (Workflow); APISIX (APIs); Camel (Integration); Commons (Libraries); EventMesh (incubating; Eventing); Flink (Big Data); Geode (Databases); Hop (incubating; Orchestration); Jackrabbit (Content); NiFi (Big Data); OFBiz (ERP/Enterprise Resource Planning); Portable Runtime (Libraries); Pulsar (Messaging); Qpid (Messaging); Roller (Content); ServiceComb (Libraries); Teaclave (incubating; Confidential Computing); Tika (Content); Tomcat (Servers); Traffic Server (Servers).
Apache Project Anniversaries in August: jUDDI (11 years); Any23, Lucene.Net, and Oozie (9 years); Ignite, Serf, and Usergrid (6 years); HAWQ (3 years). Many happy returns!
The Apache Incubator is the primary entry path for projects wishing to become an official part of the ASF. Linkis (Middleware) entered the Apache Incubator in August. More than three dozen projects are currently undergoing development in the Apache Incubator http://incubator.apache.org/ .
# # #
To see our Weekly News Round-ups (published every Friday), visit https://blogs.apache.org/foundation/ and click on the calendar or hop directly to https://blogs.apache.org/foundation/category/Newsletter . For real-time updates, sign up for Apache-related news by sending mail to announce-subscribe@apache.org and follow @TheASF on Twitter. We appreciate your support!
Posted at 02:11PM Sep 01, 2021
by Sally Khudairi in Newsletter |
|