Scheduled Maintenance: Composer Security Update to Version 2.10.3

Scheduled Maintenance Report for Nexcess

Completed

The scheduled maintenance has been completed.
Posted Sep 10, 2026 - 00:00 EDT

In progress

Scheduled maintenance is currently in progress. We will provide updates as necessary.
Posted Sep 09, 2026 - 22:00 EDT

Scheduled

Nexcess will be updating Composer from version 2.9.6 to 2.10.3 across the Nexcess platform. This update addresses the security vulnerability identified as CVE-2026-84361 and applies to customers who use Composer to manage their application dependencies.

Scheduled Date: September 9, 2026
Start Time: 10:00 PM EDT
Expected Duration: Approximately two hours

The update will be deployed gradually across the platform. No downtime or service interruption is anticipated, although some customers may experience brief periods of degraded performance while the update is applied.

No customer action is required. We will monitor the platform throughout the rollout to ensure services continue operating as expected. Our Support team will be available if you need assistance or have any questions or concerns.

You can contact us through the following channels:

Live Chat: https://portal.liquidweb.com
Email: support@liquidweb.com

Thank you,
The Nexcess Team
Posted Sep 04, 2026 - 14:05 EDT