Crossplane
v2.2.6Orchestration & Management2026년 9월 15일
보안에 초점을 둔 유지 보수 릴리스로, 의존성 업데이트와 패키지 판본 인계의 정확성 수정이 포함됩니다. 패키지 판본 인계는 수동 조치 없이 완료되도록 바뀌었습니다.
조치 필요 (3)
securityhigh
google.업데이트golang. org/grpc google.를golang. org/grpc v1.로 업데이트해 상위 프로젝트의83. 2 CVE수정 사항을 반영했습니다. gRPC 권고문 GHSA-2v4p-qf9q-27wj도 포함됩니다.security
Go도구 모음 업데이트Go도구 모음을1.로 올려 상위 프로젝트의26. 7 CVE수정 사항을 반영했습니다. 잠금 파일도 새로 갱신했습니다.security
golang.업데이트org/x/crypto golang.를org/x/crypto v0.으로 올려 상위 프로젝트의56. 0 CVE수정 사항을 반영했습니다.
그 외 기록된 변경 1건 전체fixes 1
fixes (1)
- * **Package revisions now take control of established objects from the revision they replace:** An outgoing package revision could fail to relinquish control of the package's CRDs, leaving the incoming revision permanently unhealthy with
cannot establish control of object. The provider's pod would never be created, so that provider could do no work without manual intervention by someone either deleting the stale revision or editing the CRD's owner reference by hand. Package revisions now directly take control from the revision they replace, so the hand-off succeeds without any intervention. Backported in #7828, originally fixed in #7733.
Crossplane 스택에 추가
조치가 필요한 릴리스가 나왔을 때 주간 메일로 알려드립니다. 이번 릴리스의 보안 패치 같은 것들입니다.