STAGE™

Release Notes

The STAGE Release Notes list for any given software release for:

  • New Features, Enhancements, and Improvements.

  • Bugfixes, Performance, and Stability Improvements.

See also Known Limitations and Compatibility List.

The following STAGE versions are found here:

STAGE Release 2.1.0

New Features, Enhancements, and Improvements

  • Introduces a baseline northbound control API that can be used by different Riedel products as they are integrated in STAGE.​

  • Introduces a first version of a boilerplate integration toolkit to help various Riedel development teams to integrate their product in STAGE.

Bugfixes, Performance, Stability Improvements

CVE-2026-65600: Security vulnerability bug fix for the STAGE Suite file.

STAGE version 2.0.1 and lower of the STAGE server endpoint is vulnerable to an authentication bypass via path traversal in the ReplacePathRegex middleware of Traefik. This release fixes this critical security issue and should be applied without delay.

Filtering for "Unassigned Location" in Event View

A Bug in the User Interface of STAGE prevents the user from filtering for the "Unassigned Location". When the "Unassigned Location" is selected in the filter section, the result in the Event List will not be updated. This release fixes this issue.

Can not use NMOS Senders / Receivers without a redundant interface binding if redundant network scopes are configured on the NMOS Host

When the network interfaces of an NMOS Host in STAGE are assigned to at least two Network Scopes that are marked as Main and Redundant, STAGE will only use senders and receivers on the Host that have redundant network interface bindings. This release fixes this issue.

Syncing large Active Directories

When connecting to large Active Directory instances with 1000+ users, the initial synchronization process might take longer than indicated in the UI. On first synchronization, allow a few minutes for the process to complete. This release fixes this issue.

Re-arranging Locations that are already part of an existing Location may duplicate Locations

In some cases, when editing the Location structure, Locations can get duplicated. This occurs more often when moving locations that are already part of a parent Location to another parent Location. To avoid duplicate Locations, consider creating a new Location in the desired position, move Hosts and Devices to this new Location and then delete the previous Location. This release fixes this issue.

STAGE temporarily consuming a second multicast address from the pool when activating already configured sender

When activating a new sender on Job Activation or Job Configuration changes, STAGE will temporarily consume a new address from the multicast address ranges configured in the assigned network scope of the interface, even if the sender is already configured with a valid multicast address. This can lead to an exhaustion of the multicast address pool if the size of the pool does not provide enough headroom. When using a custom configuration for the multicast address ranges on a network scope, make sure the number of addresses is at least twice the number of active senders across all jobs in STAGE. This release fixes this issue.

Multicast Address Allocations for deregistered Hosts only freed after STAGE reboot

When a Host is unregistered, while still having senders that are using multicast addresses from the configured ranges of the assigned network scopes, these addresses are only released on the next STAGE reboot. This can lead to an exhaustion of the multicast address pool if the ranges are very small and large hosts are registered and unregistered multiple times. When using a custom configuration for the multicast address ranges on a network scope, make sure the number of addresses is sufficient. This release fixes this issue.


STAGE Release 2.0.1

New Features, Enhancements, and Improvements

  • N/A

Bugfixes, Performance, Stability Improvements

  • Security vulnerability bug fix for the STAGE Suite file. STAGE version 2.0.0 of the STAGE server endpoint is vulnerable to HTTP Request Smuggling through a header-injection de-synchronization using Expect: 100-continue. An unauthenticated attacker can poison the request queue (RQP) to redirect legitimate user traffic, capture session cookies and authentication tokens from live users' requests, and trigger server-side requests to arbitrary hosts. This release fixes this critical security issue and should be applied without delay.


STAGE Release 2.0.0

New Features, Enhancements, and Improvements

  • Job Management: Added the ability to define a collection of resources required for a production or live event.

  • NMOS Device Support: Added discovery of AMWA NMOS devices capable of providing AES67 senders and receivers.

  • SAME Support: Added support for Riedel SAME DSP Engines within a STAGE system.

  • Virtual Devices: Added the ability to define and map real-world elements, such as a mono microphone, that are not directly visible to STAGE.

  • Unmanaged Hosts: Added support for devices that are not managed by STAGE but can provide AES67 streams.

Bugfixes, Performance, Stability Improvements

  • N/A


STAGE Release 1.0.3

New Features, Enhancements, and Improvements

  • N/A

Bugfixes, Performance, Stability Improvements

  • Security vulnerability bug fix for the STAGE Suite file. STAGE Versions 1.0.2 and lower of the STAGE server endpoint is vulnerable to HTTP Request Smuggling through a header-injection de-synchronization using Expect: 100-continue. An unauthenticated attacker can poison the request queue (RQP) to redirect legitimate user traffic, capture session cookies and authentication tokens from live users' requests, and trigger server-side requests to arbitrary hosts. This release fixes this critical security issue and should be applied without delay.


STAGE Release 1.0.2

New Features, Enhancements, and Improvements

  • N/A

Bugfixes, Performance, Stability Improvements

  • Fixed an issue where STAGE cannot load more than 50 Active Directory users in the user management view

  • Fixed an issue that prevents the user from changing the TURN server configuration

  • Fixed an issue where custom group filters of the Active Directory are not applied correctly


STAGE Release 1.0.1

New Features, Enhancements, and Improvements

  • N/A

Bugfixes, Performance, Stability Improvements

  • N/A


STAGE Release 1.0.0

  • Initial Release.