Release notes

Version2.5.0
Release date30 October 2025
ScopeMetaDefender Distributed Cluster license, dedicated callback service for scan results, engine package update initiated by folder monitoring, line chart for pending objects in System Activity, time frames available for scan request acceptance and workflow priority.

New Features, Improvements and Enhancements

MetaDefender Distributed Cluster license

New licensing model requires a MetaDefender Distributed Cluster license.

Chart for in-queue objects in System Activity

A new chart in System Activity shows the overall count of objects pending processing.

Dedicated callback service

A new optional service is introduced to dedicate sending the results of finished scan requests to the webhook server. The service can be scaled out easily and upgraded seamlessly.

Engine package update initiated by folder monitoring

Modification of engine packages in a given folder can be monitored and notified to MetaDefender Core instances for engine updates.

Time availability for scan request acceptance

MetaDefender Distributed Cluster API Gateway will accept scanning requests from clients during a pre-define time windows.

Workflow priority

MetaDefender Distributed Control Center allows system administrators to configure the priority of a specific workflow.

RESTful API

MetaDefender Distributed Cluster API Gateway:

  • Introduce metadata request header to include vulnerability details in the response of GET /batch/{batch_id}/certificate API.
  • Introduce GET /file/webhook/{data_id} API to retrieve the callback status of a scan request using data_id.
  • Support callbackurl header in requests to POST /file API.
  • Include callback service status in GET /readyz API.

MetaDefender Distributed Cluster Control Center:

  • Introduce PUT and GET /admin/config/sessioncookie to modify and get session cookie attributes.
  • Drop support for license_id field in POST /admin/worker/deploy API.
  • Support callback service installer for POST /admin/installer API.
  • Introduce a new callback-service type for the APIs: POST /admin/worker/deploy, POST /admin/worker/upgrade and GET /admin/worker/upgrade/version.

Further Enhancements

  • Improve the performance of gathering materials for the executive report.
  • Capability to configure the communication port of MetaDefender Core during deployment.
  • Support instance name filtering for processing history exported in STIX/CSV format.
  • Include metrics for waiting time related to file type detection in the executive report.

Security Enhancements

Upgraded library for vulnerability fixes:

  • OpenSSL 3.5.4

Bug Fixes

  • Fixed the issue that led to the disappearance of MetaDefender Core instances from Instance Activity during high load.
  • Fixed the issue that led to MetaDefender Core instances losing their licenses after the upgrade.
  • Fixed the issue that caused GET /file/{data_id} API to return a zero upload_time.
  • Fixed the issue that led to the omission of scan results for files within a batch when a filter was applied.

Known Limitations

Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard