Release Date: 28 July 2026

Release (1.15.3)

Patch release

  • All releases from Neo4j Ops Manager 1.15.0 and later require Neo4j persistence to be version 5.26 LTS or greater. 
  • Monitoring instances with versions of 4.4 LTS and greater is still supported, although 4.4 LTS is out of support with Neo4j.
See Version Compatibility Docs

Changes

  • Updated to use Neo4j Design Library v4

Fixes

  • This release resolves the following high and critical priority CVEs: – CVE-2026-29181 – CVE-2026-50289 – CVE-2026-12151 – CVE-2026-6734 – CVE-2026-9697 – CVE-2026-12143 – CVE-2026-27606 – CVE-2026-27699 – CVE-2026-26996 – CVE-2026-26318 – CVE-2026-26280 – CVE-2026-1774 – CVE-2026-22029 – CVE-2025-68154 – CVE-2026-44240 – CVE-2026-41324 – CVE-2026-42280 – CVE-2026-39363 – CVE-2026-39364 – CVE-2026-4800 – CVE-2026-33671 – CVE-2026-33228 – CVE-2026-32141 – CVE-2026-44724 – CVE-2026-44728 – CVE-2026-9277

Internal

  • apollo/client to 3.12.4
  • auth0/auth0-react to 2.17.0
  • auth0/auth0-spa-js to 2.19.2
  • azure/msal-browser to 5.11.0
  • azure/msal-react to 5.4.2
  • casl/ability to 6.8.1
  • casl/react to 6.0.0
  • dnd-kit/core to 6.3.1
  • dnd-kit/sortable to 10.0.0
  • headlessui/react to 2.2.10
  • neo4j-bloom/dagre to 0.8.14
  • neo4j-ndl/base to 4.15.0
  • neo4j-ndl/react to 4.15.1
  • okta/okta-auth-js to 8.0.1
  • segment/analytics-next to 1.84.0
  • sentry/react to 7.119.0
  • table-nav/core to 0.0.9
  • table-nav/react to 0.0.9
  • tanstack/react-table to 8.21.3
  • auth0-js to 10.0.0
  • classnames to 2.5.1
  • date-fns to 4.4.0
  • dompurify to 3.4.11
  • generate-password-browser to 1.1.0
  • graphql to 16.14.1
  • history to 5.3.0
  • immer to 11.1.8
  • lodash to 4.18.1
  • randomcolor to 0.6.2
  • react to 19.2.7
  • react-dom to 19.2.7
  • react-flow-renderer to 9.4.2
  • react-hook-form to 7.77.0
  • react-hot-toast to 2.6.0
  • react-router-dom to 7.17.0
  • react-select to 5.10.2
  • react-syntax-highlighter to 16.1.1
  • semver to 7.8.2
  • uplot to 1.6.32
  • use-resize-observer to 9.1.0
  • yup to 1.7.1
  • golang.org/x/crypto to 0.54.0
  • org.apache.tomcat.embed:tomcat-embed-core to 11.0.22
  • pmd to 7.25.0
  • com.google.errorprone:error_prone_annotations to 2.50.0
  • google.golang.org/grpc to 1.82.1
  • org.jsoup:jsoup to 1.22.2
  • org.springframework.grpc:spring-grpc-spring-boot-starter to 1.0.3
  • caffeine to 3.2.4
  • com.networknt:json-schema-validator to 3.0.5
  • neo4j-migrations-spring-boot-starter to 4.1.1
  • com.nimbusds:nimbus-jose-jwt to 10.9.1
  • github.com/kardianos/service to 1.3.0
  • net.bytebuddy:byte-buddy to 1.18.10
  • grpc to 1.82.2
  • com.google.protobuf:protobuf-java to 4.35.1
  • github.com/prometheus/common to 0.70.1
  • spring-boot to 4.1.0