# RFC: Een nieuwe versiebeheerstrategie voor Discourse

**URL:** https://meta.discourse.org/t/rfc-a-new-versioning-strategy-for-discourse/383536
**Category:** Development
**Tags:** dev-news
**Created:** [23 september 2025 om 07:55 UTC](https://meta.discourse.org/t/rfc-a-new-versioning-strategy-for-discourse/383536 "2025-09-23T07:55:33Z")
**Posts on this page:** 1
**Showing post:** 62

<div class="post-metadata">

### Author: ![frye\_bradley](https://avatars.discourse-cdn.com/v4/letter/f/848f3c/32.png) [@frye\_bradley](https://meta.discourse.org/u/frye_bradley)
#### Post date: [28 augustus 2026 om 16:53 UTC](https://meta.discourse.org/t/rfc-a-new-versioning-strategy-for-discourse/383536/62 "2026-08-28T16:53:18Z")

</div>

What is the protocol in regards to backporting security updates to ESR versions? In particular, dependency version updates. Our site is currently running on v2026.1.3, with an upgrade to v2026.7.2 happening soon. Looking at security scans and vulnerabilities being flagged, and cross-referencing package updates in monthly releases that resolve CVE’s, I’ve noticed updates that aren’t making it to the ESR version.

---

_[View the full topic](https://meta.discourse.org/t/rfc-a-new-versioning-strategy-for-discourse/383536)._
