<a id="lambda-sink-connector-changelog"></a>

# Changelog for AWS Lambda Sink Connector for Confluent Platform

## Version 3.0.8

* CC-43157: Updated `io.netty` to 4.1.136.Final to fix CVE-2026-55831, CVE-2026-55833, CVE-2026-56745, CVE-2026-56746, CVE-2026-56819, CVE-2026-59898, CVE-2026-59899, CVE-2026-59900, CVE-2026-59901, and CVE-2026-59921

## Version 3.0.7

* CC-42483: Updated `com.fasterxml.jackson.core:jackson-databind` to 2.22.1 to fix CVE-2026-54515

## Version 3.0.6

* CC-41919: Updated `io.netty` to 4.1.135.Final to fix CVE-2026-44249, CVE-2026-45416, CVE-2026-50010, CVE-2026-47244, CVE-2026-48043, CVE-2026-50560, and CVE-2026-50020
* CC-42317: Updated `com.fasterxml.jackson.core:jackson-databind` to 2.22.0 to fix CVE-2026-54512, CVE-2026-54513, CVE-2026-54514, CVE-2026-54516, CVE-2026-54517, and CVE-2026-54518

## Version 3.0.5

* CC-41156: Bumped `io.netty:netty-codec-http` to `4.1.133.Final`.
* CC-41254: Bumped `io.netty:netty-codec-http2` to `4.1.133.Final`.
* CC-41255: Bumped `io.netty:netty-codec` to `4.1.133.Final`.

## Version 3.0.4

* CC-40260: Bumped `io.netty:netty-codec-http` to 4.1.132.Final to fix CVE-2026-33870
* CC-40259: Bumped `io.netty:netty-codec-http2` to 4.1.132.Final to fix CVE-2026-33871

## Version 3.0.3

* CC-39539: Bumped `com.fasterxml.jackson.core:jackson-core` to 2.21.1 to address GHSA-72hv-8253-57qq

## Version 3.0.2

* CC-38606: Updated `org.bitbucket.b_c:jose4j` to 0.9.6 to fix CVE-2024-29371
* CC-38264: Updated `io.netty:netty-codec-http` to 4.1.129.Final to address multiple CVEs

## Version 3.0.1

* CC-37088: Pinned io.netty to 4.1.125.Final to address CVE-2025-55163 & CVE-2025-58057

## Version 3.0.0

CC-36001: Migrated the connector to use AWS SDK v2
