- Introduced JetStream persistence, WebSocket and MQTT support with new authentication methods and added several monitoring endpoints (jsz, accountz, tag‑filtered PING, etc.)
- Added extensive JWT and security enhancements such as scoped signing keys, strict signing usage, export thresholds, TLS/ authentication timeout defaults and TLSMap overrides
- Fixed numerous bugs and stability issues including logging, duplicate subscriptions, route parsing, TLS leafnode handling, monitoring inaccuracies, and other reliability problems