OpenLogic Spring LTS

You can use OpenLogic’s Spring Long-Term Support (LTS) offering to maintain secure, stable Spring Framework, Spring Boot, and Spring Security applications after community support ends.

OpenLogic offerings

  • Spring Framework: The Spring Framework provides core infrastructure for Java enterprise applications, enabling developers to focus on business logic independent of deployment environments.

  • Spring Boot: Spring Boot accelerates Spring® application development with built-in defaults, enabling rapid creation and container-ready deployment of production-grade microservices and APIs.

  • Spring Security: Spring Security is the de facto standard for authentication and authorization in Spring-based applications, offering deep customization and extensibility.

Service features

With the EOL of the community-maintained Spring, OpenLogic took private ownership of the last community-maintained releases:

  • Boot 2.7: EOL since June 2023

    Framework 5.3: EOL since June 2023

    Boot 2.5: EOL since May 2022

    Framework 5.3: EOL since August 2024

    Spring Security 5.7: EOL since 18 Nov 2024

    Spring Security 5.8: EOL since 18 Nov 2024

  • Boot 3.2: EOL since December 2024

    Framework 6.1: EOL June 2025

    Boot 3.3: EOL since June 2025

    Framework 6.1: EOL since June 2025

    Spring Security 6.2: EOL since 18 Nov 2024

    Spring Security 6.3: EOL since 16 Jun 2025

  • Boot 3.4: EOL since December 2025

    Framework 6.2: EOL since June 2026

    Boot 3.5: EOL since June 2026

    Framework 6.2: EOL since June 2026

    Spring Security 6.4: EOL since 17 Nov 2025

    Spring Security 6.5: EOL since 09 Jun 2026

OpenLogic then set up this release under a version control system and CI/CD configuration to build, secure, and test new internally developed updates and patches of post-EOL Spring.

OpenLogic’s Spring Long-Term Support provides internally maintained versions of post-EOL Spring. It includes the Framework, Boot, and Security for core modules receiving patches for medium and high-severity vulnerabilities.

The newly patched, built, and tested versions of Spring are made available to customers in a private repository.

For support needs on non-core modules, contact your OpenLogic Account Executive."

CVEs dashboard

For information about the CVEs in this supported framework, see Open Source Security Center | OpenLogic.

Intended audience

Spring LTS is designed for teams responsible for building, deploying, and maintaining Spring-based applications:

  • System administrators and DevOps engineers who manage Spring environments

  • Java developers working with Spring Framework, Spring Boot, or Spring Security

  • Security and operations teams focused on compliance and long-term stability

If you're supporting legacy Spring applications or need to extend their lifecycle securely, Spring LTS is for you.