RATATOSKRATATOSK
로그인

Crossplane

v2.2.6Orchestration & Management
2026년 9월 15일

ACTION 3OTHER 1

보안에 초점을 둔 유지 보수 릴리스로, 의존성 업데이트와 패키지 판본 인계의 정확성 수정이 포함됩니다. 패키지 판본 인계는 수동 조치 없이 완료되도록 바뀌었습니다.

조치 필요 (3)

  • securityhighgoogle.golang.org/grpc 업데이트

    google.golang.org/grpcv1.83.2로 업데이트해 상위 프로젝트의 CVE 수정 사항을 반영했습니다. gRPC 권고문 GHSA-2v4p-qf9q-27wj도 포함됩니다.

    GHSA-2v4p-qf9q-27wj

  • securityGo 도구 모음 업데이트

    Go 도구 모음을 1.26.7로 올려 상위 프로젝트의 CVE 수정 사항을 반영했습니다. 잠금 파일도 새로 갱신했습니다.

    GHSA-2v4p-qf9q-27wj

  • securitygolang.org/x/crypto 업데이트

    golang.org/x/cryptov0.56.0으로 올려 상위 프로젝트의 CVE 수정 사항을 반영했습니다.

    GHSA-2v4p-qf9q-27wj

그 외 기록된 변경 1건 전체fixes 1

fixes (1)

  • * **Package revisions now take control of established objects from the revision they replace:** An outgoing package revision could fail to relinquish control of the package's CRDs, leaving the incoming revision permanently unhealthy with cannot establish control of object. The provider's pod would never be created, so that provider could do no work without manual intervention by someone either deleting the stale revision or editing the CRD's owner reference by hand. Package revisions now directly take control from the revision they replace, so the hand-off succeeds without any intervention. Backported in #7828, originally fixed in #7733.
Crossplane 스택에 추가

조치가 필요한 릴리스가 나왔을 때 주간 메일로 알려드립니다. 이번 릴리스의 보안 패치 같은 것들입니다.

스택에 추가