Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Top 10 Use Cases of Vibe Coding in Large-Scale Node.js Applications

      September 3, 2025

      Cloudsmith launches ML Model Registry to provide a single source of truth for AI models and datasets

      September 3, 2025

      Kong Acquires OpenMeter to Unlock AI and API Monetization for the Agentic Era

      September 3, 2025

      Microsoft Graph CLI to be retired

      September 2, 2025

      ‘Cronos: The New Dawn’ was by far my favorite experience at Gamescom 2025 — Bloober might have cooked an Xbox / PC horror masterpiece

      September 4, 2025

      ASUS built a desktop gaming PC around a mobile CPU — it’s an interesting, if flawed, idea

      September 4, 2025

      Hollow Knight: Silksong arrives on Xbox Game Pass this week — and Xbox’s September 1–7 lineup also packs in the horror. Here’s every new game.

      September 4, 2025

      The Xbox remaster that brought Gears to PlayStation just passed a huge milestone — “ending the console war” and proving the series still has serious pulling power

      September 4, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Magento (Adobe Commerce) or Optimizely Configured Commerce: Which One to Choose

      September 4, 2025
      Recent

      Magento (Adobe Commerce) or Optimizely Configured Commerce: Which One to Choose

      September 4, 2025

      Updates from N|Solid Runtime: The Best Open-Source Node.js RT Just Got Better

      September 3, 2025

      Scale Your Business with AI-Powered Solutions Built for Singapore’s Digital Economy

      September 3, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      ‘Cronos: The New Dawn’ was by far my favorite experience at Gamescom 2025 — Bloober might have cooked an Xbox / PC horror masterpiece

      September 4, 2025
      Recent

      ‘Cronos: The New Dawn’ was by far my favorite experience at Gamescom 2025 — Bloober might have cooked an Xbox / PC horror masterpiece

      September 4, 2025

      ASUS built a desktop gaming PC around a mobile CPU — it’s an interesting, if flawed, idea

      September 4, 2025

      Hollow Knight: Silksong arrives on Xbox Game Pass this week — and Xbox’s September 1–7 lineup also packs in the horror. Here’s every new game.

      September 4, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Tech & Work»Report: Keeping up with patches is the number one challenge when using open source software

    Report: Keeping up with patches is the number one challenge when using open source software

    April 8, 2025

    A new report is revealing that the most challenging aspect of utilizing open source projects is keeping up with updates and patches.  

    According to the 2025 State of Open Source report from Perforce Software, the Eclipse Foundation, and the Open Source Initiative, when asked to rank challenges on a scale of one to five, over half of the 433 respondents ranked the following as a three or higher:

    • Keeping software updated
    • Meeting security and compliance requirements
    • Maintaining end-of-life (EOL) versions

    “These three are, of course, very connected — keeping up with updates and patches and maintaining end-of-life versions are key to meeting security and compliance requirements. Every year the responses to this question remind us that it is an uphill battle for organizations to stay on the latest versions and/or have access to security updates and patches for EOL software in their stacks,” the report authors wrote. 

    For example, CentOS 7 reached EOL in June 2024 and at the time the survey was conducted (between September and December 2024), 40% of the largest enterprises were still using it and it was the third most common Linux distribution. 

    Further, 28% don’t have a plan in place for addressing CentOS vulnerabilities and 8% said they don’t plan to patch CentOS CVEs. Only 19% percent say they have an LTS vendor providing patches and 13% have an in-house team that does it. 

    RELATED: Sonatype reveals 18,000 malicious open source packages in its Q1 Open Source Malware Index

    When respondents who are using the proprietary version of open source software were asked what’s preventing them from using the open source version, 44% said it was the professional support and maintenance that comes with it. This was the most popular answer by a wide margin, with the next most popular reason—additional features and customization—coming in at 25%. 

    Where open source is being used

    According to the report, the top category for open source usage was cloud and container technologies, with 40% of respondents using open source software in that area. The most popular cloud native open source projects were Docker (59% of respondents using it) and Kubernetes (39%). 

    Databases and data technologies were the second most heavily used open source software, at 33% of respondents. The most popular ones were PostgreSQL (51%), MySQL (37%), and MariaDB (31%).

    The report found that almost half of organizations do not have a lot of confidence in their data management operations. When asked to rank their confidence in Big Data management from one to five, 47% of respondents scored themselves as two or less and less than 10% ranked themselves as a 5. 

    They found that the biggest challenge in working with open source databases or other data technologies was lack of personnel or personnel experience, with over three quarters of respondents saying so.

    “For this reason, some turn to commercial, managed solutions (i.e. Cloudera), but the trade-off is cost. If the organization cannot afford the commercially managed platform, they are stuck with the operational and personnel costs of these complex stacks, often needing to fall back on less-experienced DevOps engineers or turn to outside consultants when they cannot solve problems,” the report states. 

    The third most popular category for open source usage this year was programming languages and frameworks (33%), which was an increase from the previous year. The report authors believe this is an indication that more organizations are now developing open source software and not just consuming it. 

    The report indicates that open source programming languages are the number one investment area for small companies with 1-20 employees, which suggests they are creating their own solutions in-house. 

    The smallest organizations are also contributing to open source projects way more than larger organizations with 5,000 employees or more. Fifty seven percent of small companies contributed compared to 25% of large companies. 

    “The State of Open Source Report demonstrates that big enterprises are not necessarily more mature when it comes to their open source strategy,” said Stefano Maffulli, executive director of the Open Source Initiative (OSI). “It is encouraging to see that even very small organizations are committed to not just consuming open source, but giving back to the community by contributing code and supporting OSS foundations.”

    The post Report: Keeping up with patches is the number one challenge when using open source software appeared first on SD Times.

    Source: Read More 

    news
    Facebook Twitter Reddit Email Copy Link
    Previous ArticleGitHub introduces security campaigns to help developers reduce security debt
    Next Article How Meta’s new teen accounts aim to keep your kids safer on Facebook

    Related Posts

    Tech & Work

    Top 10 Use Cases of Vibe Coding in Large-Scale Node.js Applications

    September 3, 2025
    Tech & Work

    Cloudsmith launches ML Model Registry to provide a single source of truth for AI models and datasets

    September 3, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    Attacks on the education sector are surging: How can cyber-defenders respond?

    Development

    CVE-2025-58158 – “Harness Git LFS Arbitrary File Write Vulnerability”

    Common Vulnerabilities and Exposures (CVEs)

    My ‘Game of the Year’ pick is on sale for a killer discount — and no, it’s not Clair Obscur: Expedition 33

    News & Updates

    CVE-2025-4802 – GNU C Library LD_LIBRARY_PATH Path Traversal Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    Highlights

    CVE-2025-9842 – Das Parking Management System File Inclusion Information Disclosure

    September 2, 2025

    CVE ID : CVE-2025-9842

    Published : Sept. 3, 2025, 12:15 a.m. | 1 hour, 24 minutes ago

    Description : A vulnerability was detected in Das Parking Management System 停车场管理系统 6.2.0. This impacts an unknown function of the file /Operator/Search. The manipulation results in information disclosure. The attack may be performed from remote. The exploit is now public and may be used.

    Severity: 5.5 | MEDIUM

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    CVE-2025-6862 – SourceCodester Best Salon Management System SQL Injection Vulnerability

    June 29, 2025

    Choosing the right font for effective communication

    July 10, 2025

    Oblivion Remastered loses the most helpful settings on PC thanks to a botched Game Pass update

    April 25, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.