# Contour v1.33.7

> Networking & Messaging · 2026-09-07

A security maintenance release updates Envoy, Go, and other dependencies to address CVEs. It is tested against Kubernetes 1.32 through 1.34, with no stated operator configuration changes.

## Action needed
- **[security]** The `Envoy` version, updated to `v1.38.4`
  - `Envoy` is updated to `v1.38.4` to address CVEs. The update ships in this release.
- **[security]** The `Go` version, updated to `1.26.8`
  - `Go` is updated to `1.26.8` to address CVEs. The update ships in this release.
- **[security]** Dependency updates for CVE fixes
  - Dependencies are updated to address CVEs. The dependency updates ship in this release.

## Other recorded changes
- 1 (constraint_changed 1)

[Full analysis](https://ratatosk.io/en/releases/contour/v1.33.7)

[Original release notes](https://github.com/projectcontour/contour/releases/tag/v1.33.7)
