# Latest Open source elasticsearch version

**URL:** <https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938>\
**Category:** Elasticsearch\
**Created:** [May 4, 2022, 11:57am UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938 "2022-05-04T11:57:37Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![anshulgoyal](https://avatars.discourse-cdn.com/v4/letter/a/a87d85/32.png) [@anshulgoyal](https://discuss.elastic.co/u/anshulgoyal)\
**Post date:** [May 4, 2022, 11:57am UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/1 "2022-05-04T11:57:37Z")

</div>

Hi All,

I have configured **Elasticsearch 7.17** version on the system but not sure if it is **open source, non-licensed, and log4j vulnerable or not**. If it is not all of the three, please suggest me a version which has all three:  
1.Open Source  
2.Non-Licensed  
3.Not Log4j Vulnerable

Thanks in Advance.

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [May 4, 2022, 12:24pm UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/2 "2022-05-04T12:24:40Z")

</div>

The last open source version was `7.10.2`, after that all Elasticsearch versions need to use the Elastic license, the free one (basic) or one of the paid ones.

The log4j package in 7.10.2 was not updated to solve the log4j vulnerability, but if you want to use it you can use some mitigations described in this [post](https://discuss.elastic.co/t/apache-log4j2-remote-code-execution-rce-vulnerability-cve-2021-44228-esa-2021-31/291476).

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [May 4, 2022, 1:04pm UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/3 "2022-05-04T13:04:26Z")

</div>

Adding that "open-source" could mean something very different.  
If you are asking for a free to use version, then you can use the 7.17.x version or even better 8.2.0 that has been released yesterday.

---

<div class="post-metadata">

**Author:** ![anshulgoyal](https://avatars.discourse-cdn.com/v4/letter/a/a87d85/32.png) [@anshulgoyal](https://discuss.elastic.co/u/anshulgoyal)\
**Post date:** [May 4, 2022, 2:21pm UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/4 "2022-05-04T14:21:00Z")

</div>

Hi,

Our main concern is we are looking for a non paid version as per the request of the client. And we seek the version support as well so are we good to go with 7.17 as we don't use any paid functionalities of ELK.

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [May 4, 2022, 10:10pm UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/5 "2022-05-04T22:10:32Z")

</div>

> [@anshulgoyal](#):
>
> Our main concern is we are looking for a non paid version as per the request of the client.

8.X Basic is free.

> [@anshulgoyal](#):
>
> 2.Non-Licensed

Apache licensed is licensed.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 1, 2022, 10:10pm UTC](https://discuss.elastic.co/t/latest-open-source-elasticsearch-version/303938/6 "2022-06-01T22:10:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
