HAProxy 2.0 lifecycle
Current status
HAProxy 2.0 reached end of life on 16 Jun 2019. Security and bug fixes are no longer provided by the project according to published lifecycle data.
This line is end of life.
Plan your upgrade →Security: 4 tracked advisories affecting this line. Details below — lifecycle and vulnerability status are separate.
Official lifecycle source: HAProxy Homepage Branch Table
- Support phase
- end of life
- End of life
- 16 Jun 2019
- Latest release
- 2.0.0
- Released
- 16 Jun 2019
At a glance
- Version line
- 2.0
- Initial release
- 16 Jun 2019
- Lifecycle phase
- end of life
- Latest stable
- 2.0.0
- Latest release date
- 16 Jun 2019
- EOL
- 16 Jun 2019
- Risk
- high
- Releases tracked
- 1
Lifecycle timeline
Phases from published LifecyclePeriod records. Missing phases are not inferred.
Release
16 Jun 2019
end of lifecurrent
16 Jun 2019 → —
Source: HAProxy Homepage Branch Table
HAProxy 2.0 reached end of life on 16 Jun 2019. Security and bug fixes are no longer provided by the project according to published lifecycle data.
Upgrade options
Newer supported HAProxy version lines from CompatHub lifecycle data. Compatibility and security context use existing evidence only.
You are on HAProxy 2.0
End of lifeEOL 16 June 2019
Supported upgrade options
- HAProxy 3.4Upgrade planner →SupportedEOL 30 June 2031· ~144 months more support· 1 major version newer
- HAProxy 3.2Upgrade planner →SupportedEOL 30 June 2030· ~132 months more support· 1 major version newer
- HAProxy 3.0Upgrade planner →SupportedEOL 30 June 2029· ~120 months more support· 1 major version newer
Security
Advisories affecting HAProxy 2.0 (OSV.dev evidence). Known exploited status, due dates, and ransomware use from CISA KEV when matched.
- Known vulnerabilities
- 4
- Known exploited
- 0
- Highest CVSS
- —
- CVE-2026-55204
HAProxy - NULL Pointer Dereference in hpack_dht_insert Function
- Affected:
- <=3.4.0
- Source:
- OSV source · Advisory
- CVE-2026-55203
HAProxy - Integer Overflow in FCGI Demux Record Length Field
- Affected:
- <=3.4.0
- Source:
- OSV source · Advisory
- CVE-2023-45539
- Affected:
- <2.8.2
- Fixed in:
- 2.8.2
- Source:
- OSV source · Advisory
- CVE-2019-18277
- Affected:
- <2.0.6
- Fixed in:
- 2.0.6
- Source:
- OSV source
Latest release
Release history
1 concrete release tracked for this line.
| Version | Release date | Channel | Source |
|---|---|---|---|
| 2.0.0 | 16 Jun 2019 | stable | Source |
Release activity
- Total releases
- 1
- Last 30 days
- 0
- Last 90 days
- 0
- Most recent
- 16 Jun 2019
Should I use this version?
Not recommended for new deployments
Upgrade to a currently supported release line. Recommended target: HAProxy 3.4.
Version comparison
Compact comparison against the nearest relevant release lines.
Sources
Where this information comes from.
Lifecycle sources
- HAProxy Homepage Branch Tablefirst party · high confidence
Official source: https://www.haproxy.org/
Last verified 2 Sept 2026
- CISA Known Exploited Vulnerabilitiesfirst party
Official source: https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Verification time not recorded
- NVD (NIST)first party
Official source: https://nvd.nist.gov
Verification time not recorded
- OSV.devfirst party
Official source: https://osv.dev
Verification time not recorded
Release sources
- HAProxy Homepage Branch Tablefirst party · high confidence
Official source: https://www.haproxy.org/
Last verified 2 Sept 2026
- HAProxy GitHub Tagsfirst party
Official source: https://github.com/haproxy/haproxy/tags
Verification time not recorded
Data coverage
Last checked = last successful upstream check. Latest source update = when upstream content last changed.
- Releases tracked
- 1
- Lifecycle periods
- 1
- EOL
- Known
- Provenance records
- 2
- Data last checked
- 2 Sept 2026
- Latest source update
- 2 Sept 2026
