Lua 4.x — End of Life
EOLLua 4.x reached end of life on Jul 4, 2002, 8861 days ago, and no longer receives security fixes. The most recent release in this series is 4.0.1. No CVE is currently tracked for Lua 4.x. The next major version is Lua 5. See Lua 5 →
Lua 4.x — All releases
| Version | Released | Active support | EOL date | Latest patch | Status | Alert me |
|---|---|---|---|---|---|---|
| 4.0 | Nov 6, 2000 | — | Jul 4, 2002 | 4.0.1 | EOL |
CVEs affecting Lua 4.x (0)
Lua 4.x is EOL — migrate to Lua 5.x
Lua 5.x is the next major release. Plan your upgrade before Lua 4.x stops receiving security patches.
Add a Lua 4 EOL badge to your README
Show your users which Lua version your project runs and whether it is still supported. The badge updates automatically. More formats and options →
[](https://eolcanary.com/explore/lua/4)Frequently asked questions
Is Lua 4 end of life?
Yes. All Lua 4.x releases have reached end of life and no longer receive security patches. Migrate to Lua 5.x as soon as possible.
What CVEs affect Lua 4?
No CVEs are currently tracked for Lua 4.x in the NVD data we monitor.
What is the latest Lua 4 version?
The latest Lua 4.x patch release is 4.0.1, released on July 4, 2002. Always run the latest patch to benefit from all security fixes.
How to migrate from Lua 4 to Lua 5?
To migrate from Lua 4 to Lua 5: (1) review the official Lua 5 migration guide for breaking changes, (2) update dependencies and configuration accordingly, (3) test thoroughly in a staging environment, (4) deploy with a rollback plan. Starting early gives you time to resolve compatibility issues before your current version reaches end of life.
Is it safe to run Lua 4 in production?
No. Lua 4 has reached end of life and security vulnerabilities are no longer patched. Upgrade to a supported version immediately.
Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA
