Temporal Server shipped security fixes across all supported versions, with the most critical being a medium-severity authorization vulnerability in replicated deployments that requires opting out via system.disableStreamingAuthorizer if affected. The v1.30.x line continued maturing worker versioning with upgrade-on-continue-as-new entering public preview, allowing pinned workflows to detect and upgrade to new worker versions, while v1.30.1 introduced breaking changes to Docker images by removing bash, curl, deprecated CLI tools, and other unnecessary binaries for a slimmer security posture—a shift that required careful migration planning for users relying on those utilities in containers.
Temporal Server's March focus split between worker versioning capabilities and security hardening. The 1.30.2 release shipped Upgrade-on-Continue-as-New in public preview, letting pinned long-running workflows automatically detect and upgrade to new worker versions, alongside fixes for task queueing metrics and archived workflow retrieval. Earlier releases addressed dependency CVEs across supported versions, and 1.30.1 introduced breaking Docker image changes—removing bash, curl, Python, and deprecated tools from admin-tools and server images for security, while embedding sprig to replace dockerize's template processing.