Visit NES for Spring Home Page

Spring AMQP 3.2.x Release Notes

3 versions

Comprehensive release notes and changelog for Spring AMQP 3.2.x, including security patches, bug fixes, and feature updates across all supported versions.

Aug 28, 2026
Latest: 3.2.14
7 Patched Vulnerabilities
VEX Statements

August 2026

Full Version:
3.2.12-spring-amqp-3.2.14

Security Fixes

  • A deeply nested object array can no longer bypass the SerializationUtils deserialization allow-list, which now checks an array's ultimate component type instead of allowing every array, and a resulting StackOverflowError no longer makes the listener container's default error handler exit the JVM (medium severity, CVE-2026-59275).
  • A failed RabbitMQ management aliveness check no longer includes the configured administrator password in the exception message raised by BrokerRunningSupport (medium severity, CVE-2026-59271).
  • A small compressed message can no longer exhaust the consumer heap, because AbstractDecompressingPostProcessor now bounds how much decompressed body it copies into memory (medium severity, CVE-2026-47860).
  • AmqpAppender.Builder no longer leaves TLS hostname verification disabled when SSL is enabled without an explicit verifyHostname attribute, because that attribute now defaults to true (medium severity, CVE-2026-59272).

Dependency Upgrades

  • Spring Data BOM (NES) 2024.1.13-spring-data-bom-2024.1.18
  • Spring Framework (NES) 6.2.19-spring-framework-6.2.21
  • Spring Retry (NES) 2.0.13-spring-retry-2.0.15

July 2026

3.2.13

Released Jul 9, 2026
Full Version:
3.2.12-spring-amqp-3.2.13

Dependency Upgrades

  • Spring Data BOM (NES) 2024.1.13-spring-data-bom-2024.1.17
  • Spring Framework (NES) 6.2.19-spring-framework-6.2.20
  • Spring Retry (NES) 2.0.13-spring-retry-2.0.14

January 2026

3.2.9

Released Jan 28, 2026
Full Version:
3.2.8-spring-amqp-3.2.9

Notes

  • This release originates from the open‑source Spring AMQP repository forked by HeroDevs. It encompasses modifications implemented by HeroDevs to ensure successful framework builds. This release contains no functional changes from Spring AMQP 3.2.8.

Stay in the loop

~/herodevs-spring-framework-support

Open Source Support

When official support ends, we're just getting started.