RATATOSKRATATOSK
로그인

Crossplane

v2.1.4Orchestration & Management
2026년 2월 3일

ACTION 4OTHER 2

Crossplane `v2.1.4`는 보안 관련 의존성 업데이트를 포함합니다. 사용 중인 의존성 버전과 보안 수정 사항을 확인해야 하는 릴리스입니다.

조치 필요 (4)

  • securitygithub.com/quic-go/quic-go 모듈 업데이트

    github.com/quic-go/quic-go 모듈을 v0.57.0으로 업데이트했습니다.

  • securitysigstore 의존성 업데이트

    sigstore 의존성을 업데이트해 CVEs를 수정했습니다.

  • securitygithub.com/theupdateframework/go-tuf/v2 모듈 업데이트

    github.com/theupdateframework/go-tuf/v2 모듈을 v2.4.1으로 업데이트했습니다.

  • securitygithub.com/go-chi/chi/v5 모듈 업데이트

    github.com/go-chi/chi/v5 모듈을 v5.2.4로 업데이트했습니다.

그 외 기록된 변경 2건 전체fixes 2

fixes (2)

  • fix one of the issues reported in #3423, where shared transitive dependencies could not be upgraded successfully
  • fix(render): propagate root composite identity through nested XR trees
Crossplane 스택에 추가

조치가 필요한 릴리스가 나왔을 때 주간 메일로 알려드립니다. 이번 릴리스의 보안 패치 같은 것들입니다.

스택에 추가