The Apache Software Foundation Blog

Monday October 18, 2021

The Apache News Round-up: week ending 15 October 2021

Happy Friday, everyone. The Apache community has had another great week. Let's review what we've been up to:

ASF Board – management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws.
 - Next Board Meeting: 20 October 2021. Board calendar and minutes

ApacheCon™ – the ASF's official global conference series, bringing Tomorrow's Technology Today since 1998.
 - Our 2021 events are complete: thanks to all speakers, sponsors, participants, and planners for their great turnout!
 - Presentations for ApacheCon Asia and ApacheCon@Home are available on the ASF YouTube channel.

ASF Infrastructure – our distributed team on three continents keeps the ASF's infrastructure running around the clock.
 - 7M+ weekly checks yield uptime at 100.00%. Performance checks across 50 different service components spread over more than 250 machines in data centers around the world. View the Apache Infrastructure Uptime site to see the most recent averages.

Apache Code Snapshot – Over the past week, 305 Apache Committers changed 2,145,460 lines of code over 2,767 commits. Top 5 contributors, in order, are: Claus Ibsen, Jarek Potiuk, Tilman Hausherr, Tamas Cservenak, and Jacques Le Roux.

Apache Project Announcements – the latest updates by category.

Big Data --
 - Apache Storm 1.2.4, 2.1.1 and 2.2.1 released
 - Apache Calcite Avatica 1.19.0 released
 - Apache CouchDB 3.2.0 released
 - Apache ShardingSphere ElasticJob 3.0.1 released

Business Intelligence --
 - Apache Superset CVE-2021-41971: Possible SQL Injection when template processing is enabled

Content --
 - Apache OpenOffice 4.1.11 released
   -- CVE-2021-41830: Double Certificate Attack
   -- CVE-2021-41831: Timestamp Manipulation with Signature Wrapping
   -- CVE-2021-41832: Content Manipulation with Certificate Validation Attack
 - Apache Jackrabbit 2.21.8 and Oak 1.22.9 released
 - Apache Syncope 2.1.10 released

Geospatial --
 - Apache SIS 1.1 released

Integration --
 - Apache Camel 3.11.3 (LTS) released

Observability --
 - Apache SkyWalking Client JS 0.7.0 released

Orchestration --
 - Apache Hop (Incubating) 1.0 released

Servers --
 - Apache Tomcat 8.5.72 released
   -- CVE-2021-42340: Apache Tomcat DoS
 - Apache Traffic Control 6.0.0 released
   -- CVE-2021-42009: Control Arbitrary Email Content Insertion in /deliveryservices/request

Workflow --
 - Apache Airflow 2.2.0 and Providers (Amazon 2.3.0) released

Did You Know?

 - Did you know that the ASF has moved to CDN distribution for software?

 - Did you know that Druid Summit will be held online 9-10 November?

 - Did you know that the next 3Hx - Apache Hop (Incubating) Hot Hop Hangout will be held online 28 October?

Apache Community Notices

- The Apache Month in Review: September 2021 and video highlights

- Watch "Trillions and Trillions Served", the documentary on the ASF 1) full feature [49 min] 2) "Apache Everywhere" [6 min] 3) "Why Apache" [2.5 min] 4) “Apache Innovation” [40 min] 

 - ASF Annual Report: FY2021 -- Press release and Report (PDF)

 - The Apache Way to Sustainable Open Source Success 

 - Foundation Reports and Statements

 - Presentations from ApacheCon Asia are available on YouTube

 - "Success at Apache" focuses on the people and processes behind why the ASF "just works." 

 - Inside Infra: the new interview series with members of the ASF infrastructure team --meet 
    Chris Thistlethwaite
    Drew Foulks
    Greg Stein Part I
      ...Part II and Part III
    Daniel Gruno Part I and Part II
    Gavin McDonald Part I and Part II
    Andrew Wetmore Part I and Part II
    Chris Lambertus Part I  and Part II

 - Follow the ASF on social media: @TheASF on Twitter and The ASF page LinkedIn

 - Follow the Apache Community on Facebook and Twitter

 - Are your software solutions Powered by Apache? Download & use our "Powered By" logos.

Stay updated about The ASF

For real-time updates, sign up for Apache-related news by sending mail to and follow @TheASF on Twitter. For a broader spectrum from the Apache community, provides an aggregate of Project activities as well as the personal blogs and tweets of select ASF Committers.



Hot Blogs (today's hits)

Tag Cloud