Summary
Spring Boot 4.1.0 (released June 2026) is positioned as an incremental patch to 4.0, not an architectural overhaul. It is built on Spring Framework 7.0.8 and Spring Security 7.1, with JDK 17 as the baseline and JDK 21 required for jOOQ 3.20. The release introduces three official gRPC starters (server, client, and servlet HTTP/2), replacing third-party solutions like grpc-spring-boot-starter, with first-class support for @GrpcService, @GrpcClient, and @GrpcExceptionHandler annotations. A new framework-level InetAddressFilter provides SSRF protection, blocking requests to private subnets and cloud metadata addresses before DNS resolution. OpenTelemetry support is expanded with standard environment variable alignment, gzip OTLP metric compression, and automatic assembly of observation conventions for Kafka, RabbitMQ, and JVM metrics. Additional improvements include lazy connection fetching for DataSource, deprecated Apache Derby, enhanced Log4j2 file rotation via YAML, OAuth2 SpEL-based authority extraction, and Spock 2.4 support.
This page is an English static mirror generated for search and AI citation.
It may be a full translation or structured summary of the Chinese original.
Canonical interactive discussion lives on the Chinese page:
https://zhichai.net/topic/177981475