RATATOSKRATATOSK
Sign in

Releases

AI-analyzed release notes for CNCF graduated and incubating projects.

Project: RookClear ×
Rookv1.20.6Storage & DataAug 20, 2026

A maintenance release with a Ceph security advisory, a disabled Rook manager module, and clearer CephX fallback errors. Users of Ceph are advised to upgrade, while CephX key fallback failures now report the actual error.

Check if affected (2)

  • securityCeph CVE-2025–30156 upgrade advisory

    Applies if you depend on Ceph.

    The advisory recommends upgrading Rook to v1.20.6 or v1.19.10 and Ceph to v20.2.4 or v19.2.6. It also provides instructions for rotating CephX keys.

  • breakingThe rook mgr module, disabled

    Applies if you enable the rook mgr module.

    The rook mgr module is disabled in this release.

Source
Rookv1.19.10Storage & DataAug 20, 2026

A maintenance release with a security-driven Ceph upgrade recommendation and a disabled Rook manager module. It also adds or changes CephCluster and CephX error-reporting behavior.

Action needed (1)

  • breakingThe Rook manager module, disabled

    The Rook manager module is disabled in this release.

Check if affected (1)

  • securityCeph upgrade recommendation for CVE-2025-30156

    Applies if you use Ceph.

    The release calls attention to CVE-2025-30156 in Ceph and includes a Ceph upgrade recommendation.

Source
Rookv1.19.9Storage & DataAug 19, 2026

A maintenance release with security guidance for CVE-2025–30156 and updates across Ceph authentication, core behavior, Multus networking, and the Ceph base image. The release also includes a workaround for a Ceph authentication rotation race.

Action needed (1)

  • securityCVE-2025–30156 upgrade guidance

    Rook users are advised to upgrade to Rook v1.20.5 or v1.19.9 with Ceph v20.2.4 or v19.2.6 in response to CVE-2025–30156.

Source
Rookv1.20.5Storage & DataAug 19, 2026

A security-focused release with an advisory requiring Rook and Ceph upgrades. It also adds support for the new cephx key type, changes external version validation to ignore Ceph commit IDs, and fixes monitor registration in the v1 failover path.

Check if affected (1)

  • securityCeph CVE-2025–30156 advisory

    Applies if you use Ceph.

    The release includes a security advisory for CVE-2025–30156 in Ceph, requiring Rook and Ceph upgrades.

Source
Rookv1.19.8Storage & DataJul 28, 2026

v1.19.8 is a maintenance release with a security-related dependency update and behavioral improvements. The recorded dependency change updates the vulnerable go text package from v0.37 to a newer version.

Action needed (1)

  • securityThe go text package, updated from v0.37

    The go text package is updated from v0.37 to the latest version because v0.37 has a vulnerability. This dependency update ships in v1.19.8.

Source
Rookv1.19.6Storage & DataMay 27, 2026

This release includes a security-related dependency update in CI. The change affects builds that use golang.org/x/net.

Action needed (1)

  • securitycriticalThe golang.org/x/net dependency, updated to v0.55.0

    CI updates golang.org/x/net from its previous version to v0.55.0 to fix GO-2026-5026.

Source
Browse by month