Hi everyone,
I'd like to better understand Debezium's version deprecation and support policy.
From the releases page (
https://debezium.io/releases/) I can see the list of versions with labels such as "stable", "latest stable" and "development", but it is not entirely clear what these imply in terms of ongoing maintenance and support. There is also a "Tested Versions" section that currently goes back to version 2.7 and I'm unsure whether this should be interpreted as the set of actively supported versions.
To make this more concrete: if a production system is currently running Debezium 2.5., what expectations should be set regarding maintenance, particularly for security fixes? For example, if a vulnerability were discovered in one of Debezium 2.5's dependencies, would a patch release be issued for 2.5 or are fixes only backported to versions listed under "Tested Versions"? In other words, is 2.5 considered stable but effectively unmaintained at this point?
Based on this, should projects still on 2.5 plan to upgrade to 2.7 (or later) in order to remain within the supported window, and what are the general expectations around upgrade cadence?
Apologies for the long message, but this is an important topic for production planning and I couldn't find clear guidance in the documentation.
Thanks in advance for any clarification.
Cheers,
Francesco