RATATOSKRATATOSK
Sign in

Releases

AI-analyzed release notes for CNCF graduated and incubating projects.

Dragonflyv2.4.2Storage & DataMar 9, 2026

A feature and maintenance release that expands configuration and scheduler capabilities while changing configuration controls and the priorities type. Dependency versions are updated, and no security advisories or explicitly described vulnerabilities are mentioned.

Action needed (1)

  • breakingThe priorities type, changed to int32

    The priorities type changed from string to int32 in v2.4.2.

Check if affected (1)

  • breakingThe Enable flag, removed from seedPeer

    Applies if you configure Enable.

Source
Vitessv22.0.4Storage & DataFeb 27, 2026

A maintenance release with security fixes in backup restore behavior, along with routine bug fixes, a Go toolchain dependency update, and a performance improvement. The backup changes affect manifest-based external decompression and protection against path traversal during restores.

Check if affected (2)

  • securitycriticalBackup restore path traversal protection

    Applies if you use backup storage.

  • securityhighManifest-based external decompression default, changed

    Applies if you use an external decompressor command and do not pass --external-decompressor-use-manifest.

Source
Vitessv23.0.3Storage & DataFeb 27, 2026

A security-focused maintenance release with changes to backup and restore behavior, bug fixes, and additional hardening. Backup MANIFEST handling now requires explicit opt-in for compressor commands, and restore blocks path traversal through MANIFEST files.

Check if affected (2)

  • securityLoading compressor commands from MANIFEST, opt-in

    Applies if you use --external-decompressor-use-manifest.

  • securityPath traversal through backup MANIFEST on restore blocked

    Applies if backupengine runs.

Source
Rookv1.19.2Storage & DataFeb 24, 2026

This release includes operator-facing behavior and API updates, along with default, image, and dependency changes. It also contains an internal build-tooling update and fixes for storage and gateway handling.

Check if affected (1)

  • breakingDefault gateway topology spread constraints for nvmeof

    Applies if you use nvmeof.

Source
Vitessv23.0.2Storage & DataFeb 10, 2026

Vitess v23.0.2 is a maintenance release focused on defect corrections and a Go toolchain dependency update. The release also includes a performance-related change in query execution.

Source
Rookv1.19.1Storage & DataFeb 5, 2026

A maintenance release with operator-facing removals, default and behavior changes, new CRD fields, expanded configuration support, and dependency updates. No security advisory is disclosed.

Action needed (1)

  • breakingNodes/proxy RBAC enablement removal

    The unnecessary nodes/proxy RBAC enablement is removed.

Check if affected (2)

  • breakingDefault Ceph image pull policy

    Applies if you do not configure ceph image pull policy.

  • breakingAutomated node fencing code removal

    Applies if automated node fencing runs.

Source
Vitessv23.0.1Storage & DataFeb 4, 2026

Vitess v23.0.1 is a maintenance release focused on bug fixes and behavior corrections. It also adds CLI and TabletManager capabilities and updates dependencies.

Action needed (1)

  • securityThe golang.org/x/crypto dependency, updated

    Vitess v23.0.1 updates golang.org/x/crypto from 0.42.0 to 0.45.0.

Source
Vitessv22.0.3Storage & DataFeb 4, 2026

Vitess v22.0.3 is a maintenance release focused on correctness across query serving, replication, tablet management, and orchestration. It also adds new vtbench credential and DemotePrimary force flags and upgrades the Go toolchain; no security fixes are described.

Source
Longhornv1.11.0Storage & DataJan 29, 2026

A substantial feature and maintenance release with V2 Data Engine changes, new capabilities, dependency updates, numerous fixes, and hotfix image replacements. It also deprecates V2 Backing Image functionality and includes a fix for an SPDK v25.05 CVE issue without a disclosed advisory identifier.

Action needed (1)

  • securityThe SPDK v25.05 CVE issue fix

    The CVE issue in SPDK v25.05 is fixed in this release.

Check if affected (7)

  • breakingThe longhornio/longhorn-instance-manager:v1.11.0 image replacement

    Applies if you use longhornio/longhorn-instance-manager:v1.11.0.

  • breakingThe longhornio/longhorn-manager:v1.11.0 image replacement

    Applies if you use longhornio/longhorn-manager:v1.11.0.

  • breakingBackupstore-related settings removal

    Applies if you configure backupstore related settings.

  • + 4 more on the release page

Plan ahead (2)

  • deprecatedBacking Image for the V2 Data Engine deprecationremoval planned in v1.12.0

    Applies if you use Backing Image and the V2 Data Engine.

  • deprecatedV2 Backing Image Feature deprecation

    Applies if you use the V2 Backing Image Feature.

Source
Longhornv1.10.2Storage & DataJan 28, 2026

A maintenance release includes a hotfixed operator image, a security-relevant DNS query correction, and fixes across volume, replica, CSI, and management paths. It also adds namespace inheritance for longhorn-share-manager in FastFailover mode.

Check if affected (2)

  • securityThe instance-manager DNS query behavior

    Applies if you do not use a hard or solid state disk.

  • breakingThe backing-image-manager:v1.10.2 image, replaced with backing-image-manager:v1.10.2-hotfix-1

    Applies if you use backing-image-manager:v1.10.2.

Source
Dragonflyv2.4.1Storage & DataJan 23, 2026

A maintenance release that removes deprecated preheat API endpoints and fixes unauthenticated access to the Dragonfly manager job API. Both changes affect users of the corresponding APIs.

Check if affected (2)

  • securityDragonfly manager job API unauthenticated access fix

    Applies if you use Dragonfly manager job API.

  • breakingDeprecated preheat API endpoints removed

    Applies if you use deprecated preheat API endpoints.

Source
Rookv1.19.0Storage & DataJan 20, 2026

A breaking release changes supported Kubernetes versions and configuration behavior and removes automatic CSI client creation in external mode. It also adds storage features, reconciliation improvements, and operational changes including experimental NVMe-oF support, block volume statistics, encryption settings, and improved fencing and logging.

Check if affected (4)

  • breakingSupported Kubernetes versions

    Applies if you run Kubernetes v1.30 through v1.35.

  • breakingactiveStandby behavior in the CephFilesystem CRD

    Applies if activeStandby is set to false.

  • breakingCeph image settings in the rook-ceph-cluster chart

    Applies if you use the rook-ceph-cluster chart.

  • + 1 more on the release page
Source
TiKVv8.5.5Storage & DataJan 15, 2026

TiKV v8.5.5 adds graceful shutdown and related configuration while changing how flow control interacts with RocksDB compaction thresholds. It also improves performance and resource behavior and fixes correctness issues in replication, metrics, recovery, snapshots, and Raft behavior; no security advisories or explicitly described vulnerabilities are present.

Source
Harborv2.14.2Storage & DataJan 15, 2026

Harbor v2.14.2 includes dependency and component updates alongside corrections to user-facing behavior. No security advisories or explicitly described vulnerabilities are present.

Source
Harborv2.13.4Storage & DataJan 15, 2026

Harbor v2.13.4 fixes an ORM mapping defect and updates Trivy-related components and base images. No security advisory or operator migration is described for this release.

Source
Rookv1.18.9Storage & DataJan 13, 2026

Rook v1.18.9 includes operator-facing behavior changes, new configuration capabilities, a corrected CSI behavior, and expanded CRD validation. No security advisories are disclosed.

Source
Dragonflyv2.4.0Storage & DataJan 12, 2026

Dragonfly v2.4.0 adds scheduling, transfer, preheating, download, and configuration capabilities. It also improves performance and fixes several correctness issues, with no security advisories or explicitly described security flaws present.

Source
CubeFSv3.5.3Storage & DataDec 23, 2025

CubeFS v3.5.3 adds client, FlashNode, remote-cache, and decommissioning capabilities, alongside performance improvements and bug fixes. The release includes an upgrade order that operators should follow, and clients must be newer than v3.2.0.

Source
← Newer
Browse by month