Microsoft Build of OpenJDK 25 · Version Status
Microsoft Build of OpenJDK 25 End of Life Date
Microsoft Build of OpenJDK 25 end-of-life date, support status, and CVE risk. Data from endoflife.date and official vendor documentation.
✓
Microsoft Build of OpenJDK 25 is actively supported. EOL date: September 30, 2030.
📅 Get reminded before Microsoft Build of OpenJDK 25 reaches EOL on September 30, 2030 — alerts 90, 30 & 7 days out.
EOL Date
Sep 30, 2030
1513 days remaining
Latest Release
25.0.4
LTS release
Release Date
Sep 16, 2025
Microsoft Build of OpenJDK 25 series
Lifecycle detail
Microsoft Build of OpenJDK 25 was released on September 16, 2025 and support is scheduled to end on September 30, 2030 — a planned supported lifespan of 5 years and 1 month, shorter than the 6 years and 1 month median for Microsoft Build of OpenJDK LTS releases. It is a long-term support (LTS) release, so it carries a longer patch window than the interim releases around it. Its most recent patch is 25.0.4, published July 21, 2026.
Attack Surface
10/30 Medium tier
CISA KEV Exposure
0/20 Not in KEV
Extended Support
0/10 Available
EOL Risk Score™ — proprietary methodology by endoflife.ai. Factors: EOL recency, attack surface breadth, CISA KEV catalog presence, extended support availability. Updated at every build.
Methodology → ·
View score card →
All Microsoft Build of OpenJDK Versions
| Version | Latest | EOL Date | Status |
| 11 LTS |
11.0.32 |
Sep 30, 2027 |
Active |
| 17 LTS |
17.0.20 |
Sep 30, 2027 |
Active |
| 21 LTS |
21.0.12 |
Sep 30, 2028 |
Active |
| → 25 LTS |
25.0.4 |
Sep 30, 2030 |
Active |
What does Microsoft Build of OpenJDK 25 end of life mean?
When Microsoft Build of OpenJDK 25 reaches end of life, the maintainers stop issuing security patches for this version. CVEs discovered after the EOL date are publicly disclosed on the National Vulnerability Database with no patch available. Exploit code frequently appears on GitHub within days of disclosure.
The CVE blind spot: Most vulnerability scanners check for known CVEs but do not flag the ongoing accumulation of unpatched vulnerabilities in EOL software versions. Running Microsoft Build of OpenJDK 25 past its EOL date creates a permanently growing attack surface that standard security tooling will not surface.
Migrate to Microsoft Build of OpenJDK 25 or implement compensating controls — network segmentation, enhanced monitoring, restricted access — while migration is underway.
Frequently Asked Questions
When does Microsoft Build of OpenJDK 25 reach end of life?
Microsoft Build of OpenJDK 25 reached end of life on September 30, 2030. That is 1513 days remaining.
Is Microsoft Build of OpenJDK 25 still supported?
Yes, Microsoft Build of OpenJDK 25 is currently supported. The EOL date is September 30, 2030.
What should I upgrade to from Microsoft Build of OpenJDK 25?
The recommended upgrade from Microsoft Build of OpenJDK 25 is
Microsoft Build of OpenJDK 25 — the latest actively supported version. Check the
Microsoft Build of OpenJDK full timeline for all supported versions.
What are the security risks of running Microsoft Build of OpenJDK 25 past EOL?
When Microsoft Build of OpenJDK 25 reaches end of life, the maintainers stop issuing security patches. Any CVEs disclosed after the EOL date accumulate with no remediation path. Most vulnerability scanners do not flag this — it is the CVE blind spot. Organizations running EOL Microsoft Build of OpenJDK should migrate immediately or implement compensating controls.