News Date and Time
Sep 28 2026 15:00
We are pleased to announce the 2.8.5 Long Term Support maintenance release of the JS7 JobScheduler
The release brings a number of bug-fixes and 3rd-party vulnerability fixes to the JobScheduler Controller, Agent and JOC Cockpit. JobScheduler is rebranded to JS7 JobScheduler to indicate major changes to architecture and features.
Maintenance releases in LTS branch 2.8 are available to subscribers of Long Term Support. The next branch with public maintenance releases is branch 2.9 available since August 2026.
JS7 is the next generation Open Source Job Scheduler designed for performance, resilience and security.
Getting Started
- The JS7 Online Demo is available for immediate access.
- Consider the Getting Started section of the Product Knowledge Base.
Release
- Release Notes
- Features (major)
- Bug-fixes (major)
- JOC-2293: rename API should adjust path for released objects
- JOC-2277: Inventory ZIP Import fails when Notice Board, Script, or Report contains only the name without any values
- JOC-2265: The end of a session should not break already running asynchronous processes
- JOC-2275: Renamed Schedule should remove Orders from previous Schedule
- JOC-2296: Release/Deploy and Recall/Revoke actions in the Inventory object list view should consider permissions
- JOC-2294: The release, recall and delete APIs check deploy permission
- JS-2261: Job will be terminated at the end of the admission time period
- JS-2264: Agent remains red in Coupled status after connection is re-established
- YADE-659: Compatibility with YADE 1.x branches — Transfer via Jump Host to Target using CheckSize
- YADE-661: SMB - Directories with additional attributes incorrectly detected as files
- YADE-664: Compatibility with YADE 1.x - JumpHost CLI argument transactional handling
3rd-Party Vulnerability Remediation
- JOC-2308: Upgrade bouncycastle to version 1.86 due to multiple 3rd party vulnerabilities
- JOC-2309: Upgrade jackson-databind 2.20.0 to 2.22.3 due to 3rd party vulnerabilities CVE-2026-89407, CVE-2026-89425, CVE-2026-91777
- JOC-2299: Upgrade MariaDB JDBC Driver to version 3.5.9 due to multiple 3rd-party Vulnerabilities
- JOC-2289: Upgrade jackson-databind to version 2.22.2 due to 3rd party vulnerabilities CVE-2026-19032 and CVE-2026-68497
- JOC-2254: Update Jetty from 11.0.26 to 12.1.10 due to multiple 3rd party vulnerabilities
- JOC-2268: org.eclipse.parsson version 1.1.7 flagged with 3rd Party Vulnerability issue CVE-2026-9563
- JOC-2266: Upgrade PostgreSQL Driver to version 42.7.12 due to 3rd party vulnerability CVE-2026-54291
- JOC-2264: Upgrade jackson-databind 2.22.0 to 2.22.1 due to 3rdparty vulnerability CVE-2026-59889
- JS-2262: Upgrade reactor-core to version 3.8.7 due to 3rd party vunerability issues CVE-2026-47857 and CVE-2026-47863
Important
- Branch 1.13 of JobScheduler reached its end-of-life in August 2023.
- Users of JobScheduler branches 1.x should consider changes and migration tools being available to upgrade to JS7.
- Please also take note of our Change Management information.



