NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #223 by repository stars
Last release today
07 Oct 2026
Ships fairly regularly
a new release about every 9 days
Rarely documented
notes for 7 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
6 years old
1330 releases · first in 2020
One column per quarter.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
This release fixes a false positive in the bot detection feature for Brave Browser with shields enabled.
This release fixes a false positive in the bot detection feature for Brave Browser with shields enabled.
This product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
This release fixes 2 denial of service vulnerabilities in the HTTP and k8s-audit datasources:
This release brings a major change to the CrowdSec WAF: a bot detection feature.
If enabled, clients will be served a challenge + fingerprinting page before accessing the website.
CrowdSec will evaluate the challenge and check the fingerprint against pre-configured rules to decide whether the client looks legitimate or not.
You can find more information about this new feature in the documentation.
Other notable changes include:
This release fixes 2 denial of service vulnerabilities in the HTTP and k8s-audit datasources:
RejectSubmission generate an alert (#4602) @buixorDistinct() panic on []string and other non-[]any slices (#4543) @SynvoyaThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
Nothing published for this version
Bot detection with CrowdSec WAF
This release brings a major change to the CrowdSec WAF: a bot detection feature.
If enabled, clients will be served a challenge + fingerprinting page before accessing the website.
CrowdSec will evaluate the challenge and check the fingerprint against pre-configured rules to decide whether the client looks legitimate or not.
You can find more information about this new feature in the documentation.
Other notable changes include:
RejectSubmission generate an alert (#4602) @buixorDistinct() panic on []string and other non-[]any slices (#4543) @SynvoyaThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Bot detection with CrowdSec WAF
This release brings a major change to the CrowdSec WAF: a bot detection feature.
If enabled, clients will be served a challenge + fingerprinting page before accessing the website.
CrowdSec will evaluate the challenge and check the fingerprint against pre-configured rules to decide whether the client looks legitimate or not.
You can find more information about this new feature in the documentation.
Other notable changes include:
Distinct() panic on []string and other non-[]any slices (#4543) @SynvoyaThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
WAF: OpenAPI schema validation ( #4097 ) @blotus
--quick flag to enroll command (#4350) @blotusThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
WAF: OpenAPI schema validation ( #4097 ) @blotus
--quick flag to enroll command (#4350) @blotusThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
CrowdSec 1.7.7 brings 2 major changes:
CrowdSec 1.7.7 brings 2 major changes:
CrowdsSec has supported for a long time using RE2 as the regexp engine, and with this release we make it the default.
CrowdSec has always used the builtin Go regexp package, which is a Go reimplementation of the RE2 library, but with known performance limitations.
The switch to RE2 will bring significantly increased regexp performance (one of the most critical part of CrowdSec) at the cost of slightly longer regexp compilation and higher baseline memory usage.
Important
If you encounter any issues with the new regexp engine, you can fallback to the previous Go implementation by setting the feature flag re2_disable_grok_support (see the documentation).
Other notable changes include:
kind attribute for alerts used to identify its source (a scenario, a WAF rule, a manual decision creation, ...)cscli allowlist import commandHTTP_PROXY environment variable in the notification-http pluginkind alert attribute (#4351) @blotusThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
add LookupFile and FileMap expr helpers ( #4372 ) @buixor
kind alert attribute (#4351) @blotusThis product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
cmd/crowdsec: assign overflow after parsing ( #4225 ) @mmetc
This product includes GeoLite2 data created by MaxMind, available from https://www.maxmind.com.
Take a look at the installation instructions.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →