Week 40, Sep 28 - Oct 4, 2026

This week: 71 releases, 160 news items.

👋 Welcome

This week saw a focus on container runtime security with multiple patch releases across containerd and CRI-O addressing a common CVE. The cloud native community also discussed the evolving landscape of AI agents, their security implications, and tools for their management and orchestration. Observability and Kubernetes ecosystem updates rounded out the week’s developments.

🚀 Notable Releases

Container Runtimes

  • containerd v2.4.1 - Includes security patch CVE-2026-53493 and fixes a bug where failed container start cleanup leaked tasks, preventing container removal.
  • containerd v2.3.6 - Incorporates security patch CVE-2026-53493 and addresses an issue where container creation failed when SELinux relabeling was unsupported by the filesystem.
  • containerd v2.2.9 - Contains security patch CVE-2026-53493 and fixes a bug where container creation failed due to unsupported SELinux relabeling on the filesystem.
  • containerd v2.0.13 - Includes security patch CVE-2026-53493 and ensures all layers are fetched when multiple manifests in an index share a config descriptor.
  • containerd v1.7.36 - Provides security patch CVE-2026-53493 and ensures all layers are fetched when multiple manifests in an index share a config descriptor.
  • CRI-O v1.37.1 - A patch release for the container runtime interface, with changelog available for commit range v1.37.0...v1.37.1.
  • CRI-O v1.36.6 - A patch release for the container runtime interface, with changelog available for commit range v1.36.5...v1.36.6.
  • CRI-O v1.35.9 - A patch release for the container runtime interface, with changelog available for commit range v1.35.8...v1.35.9.
  • CRI-O v1.34.14 - A patch release for the container runtime interface, with changelog available for commit range v1.34.13...v1.34.14.

Orchestration

  • Crossplane v2.4.2 - Fixes a bug where ownership of ServiceAccounts was not correctly transferred to newly active package revisions.
  • KEDA v2.21.0 - Contains three breaking changes and fixes CVE-2026-77524 related to service account token audience enforcement.
  • Kubernetes v1.37.1 - A patch release; consult the changelog for detailed changes.
  • Kubernetes v1.36.5 - A patch release; consult the changelog for detailed changes.
  • Kubernetes v1.35.9 - A patch release; consult the changelog for detailed changes.
  • Kubernetes v1.34.12 - A patch release; consult the changelog for detailed changes.

Security

  • Falco 0.45.0 - Integrates with LIBS 0.26.0 and DRIVER 11.0.0+driver.
  • Open Policy Agent v1.21.0 - Introduces improved rule indexing and recursion checks, and YAML is now parsed against the 1.2 core schema, which is a breaking change.
  • External Secrets helm-chart-2.11.0 - A new Helm chart release for external secrets management in Kubernetes.
  • Kubewarden Controller v1.38.2 - Adds memory bounds and replaces a denylist with an allowlist for namespaced policies, which is a breaking change with security implications.
  • BOMHort 0.7.1 - Fixes issues where license exceptions from published registries were silently ignored and a packaging defect in previous chart releases.
  • BOMHort 0.7.0 - Closes the pre-1.0 schema wave with nine migrations, fixes VEX suppression bugs, and repairs a packaging defect pointing chart releases to old images.

Networking

  • etcd v3.7.2 - A patch release; users should consult the changelog and upgrade guide for detailed changes and potential breaking changes.
  • etcd v3.6.15 - A patch release; users should consult the changelog and upgrade guide for detailed changes and potential breaking changes.
  • etcd v3.5.34 - A patch release; users should consult the changelog and upgrade guide for detailed changes and potential breaking changes.
  • Kube-OVN v1.16.8 - Fixes VIP reconciliation and VMI migration handling, reduces IPv6 neighbor solicitation flooding, updates containerd to v2.2.9 for CVE-2026-53493, and adds image pull secret support for VPC NAT gateway pods.
  • Kube-OVN v1.15.29 - Prevents underlay IPv6 neighbor solicitations from flooding L2, addressing OVS 4096 resubmit limit issues.
  • Kube-OVN v1.14.46 - Uses OVN’s native localnet ARP/ND responder to prevent underlay ARP probes and IPv6 NS from exceeding OVS 4096 resubmit-limit drops.
  • Kube-OVN kube-ovn-v2-v1.14.46 - Helm chart for Kube-OVN.
  • Kube-OVN kube-ovn-v1.14.46 - Helm chart for Kube-OVN.
  • Kube-OVN v1.16.7 - Restores the historical underlay ARP flood option to prevent broadcast ARP/ND probes from exceeding the OVS 4096 resubmit limit, includes KubeVirt live-migration identity coverage, and an EVPN gateway VRF IPv6 fix.
  • Kube-OVN v1.15.28 - Restores the historical underlay ARP flood option to prevent broadcast ARP/ND probes from exceeding the OVS 4096 resubmit limit.
  • Kube-OVN v1.14.45 - Restores the historical underlay ARP flood option to prevent broadcast ARP/ND probes from exceeding the OVS 4096 resubmit limit.
  • Kube-OVN kube-ovn-v2-v1.14.45 - Helm chart for Kube-OVN.
  • Kube-OVN kube-ovn-v1.14.45 - Helm chart for Kube-OVN.
  • Submariner v0.24.2 - A patch release for the Submariner project.
  • Submariner v0.23.4 - A patch release for the Submariner project.
  • Submariner v0.23.3 - A patch release for the Submariner project.
  • Submariner v0.22.2 - A patch release for the Submariner project.

Observability

  • Fluentd v1.19.4 - Fixes buffer issues including enforcing decompression_size_limit, clamping exported metrics, and addressing spurious BufferOverflowError and stage_byte_size leaks.
  • Prometheus v3.15.0 - Corrects a PromQL range query issue that caused subqueries to evaluate past the parent’s last step, inflating peakSamples and wasting storage I/O.
  • Inspektor Gadget v0.56.1 - Includes bugfixes for USDT related issues, specifically addressing panics when parsing USDT notes in 32-bit ELF binaries and rejecting compressed USDT note sections.
  • Kepler v0.12.0 - Adds MIG power attribution via dcgm-exporter and energy readings to hwmon power meter, alongside multi-arch support for ARM64 builds and container images.

Build

  • Backstage v1.55.2 - Contains a fix to normalize TechDocs Markdown extension configuration.
  • Backstage v1.54.9 - Contains a fix to normalize TechDocs Markdown extension configuration.
  • Backstage v1.50.7 - Contains a fix to normalize TechDocs Markdown extension configuration.
  • Backstage v1.55.1 - Fixes the Yarn patch verifier failing to load without a separate Yarn CLI package installation and addresses TechDocs addons not rendering on the new frontend system.
  • Telepresence v2.32.1 - Provides installers with an option to run the root daemon as a system service, removing the need for elevated privileges during use.
  • Telepresence v2.32.0 - Provides installers with an option to run the root daemon as a system service, removing the need for elevated privileges during use.

Service Mesh

Registry

  • Distribution v3.1.2 - Includes security fixes (CVE-2026-85747), storage and pagination fixes, and dependency updates. It verifies manifest and blob content against the requested digest in the registry client.

Backup

  • Velero v1.18.4 - Fixes a bug where the backup queue could become permanently stuck if a dequeued backup completed during the patch operation.

Framework

  • KServe v0.21.0 - Adds resourceClaims support for Dynamic Resource Allocation (DRA) and restructures CRD management for independent installation.

Configuration

  • Baremetal Operator v0.14.1 - Bumps several dependencies including github.com/onsi/ginkgo/v2 to 2.32.2, OpenTelemetry otel to 1.45.0, and CAPI to 1.14.2.

📰 This Week in Cloud Native

The cloud native landscape this week was significantly shaped by discussions and developments around AI agents. Docker announced Cloud Sandboxes for coding agents, allowing longer tasks to be offloaded from local machines to the cloud. This aligns with a new open specification for agent permissions, developed in partnership between Docker and CNCF, aiming to standardize how AI agents interact with system resources. Nvidia also introduced an Open Agent Safety Platform, indicating a growing focus on securing AI agents against unintended actions, following reports of agents breaching systems or consuming excessive resources. AWS released Strands harness, an open-source runtime for AI agents designed to reduce token usage and operate locally. These developments highlight the industry’s push towards enabling scalable, secure, and efficient deployment of agentic AI workloads, with a clear emphasis on establishing robust governance and control mechanisms.

Security and Observability continued to be prominent themes. The CNCF announced the “Security Slam 2026 – Fall Edition,” a virtual event focused on open-source security. Multiple container runtime projects, including containerd and Kube-OVN, released patches addressing CVE-2026-53493, a security vulnerability. KEDA also released a version fixing CVE-2026-77524 related to service account token audience enforcement. In observability, the community looked forward to Observability Day at KubeCon + CloudNativeCon North America 2026. Discussions also focused on the interoperability between OpenTelemetry and Prometheus, identifying areas for further integration and improved data collection. AWS introduced CloudWatch Omni, a new interface for monitoring applications and AI agents, with agents also assisting in incident analysis.

The Kubernetes ecosystem saw updates and strategic discussions. Kubernetes v1.37 promotes the PersistentVolumeClaimUnusedSinceTime feature gate to Beta, enabling the PVC protection controller to track when a PVC was last used. The Kubernetes blog also spotlighted SIG Apps, which focuses on managing complex application lifecycles. Cloud providers like AWS detailed strategies for deploying Amazon EKS across various edge locations and implementing per-pod image pull permissions with ECR repository policies on multi-tenant EKS clusters. There were also discussions on the operations gap between deploying and continuously running applications, with new deployment models like AWS Elastic Beanstalk’s Cluster Mode aiming to bridge this. The broader industry conversation touched on open-source approaches to avoiding vendor lock-in and the ongoing challenge of enabling Kubernetes self-service while maintaining platform team governance.

💬 Community Buzz

On Hacker News this week, discussions frequently revolved around AI agents, including how to use self-hosted AI agent sandboxes on Kubernetes and the broader implications of agents for developers. The relevance of open source contributions in an AI-assisted coding environment was a recurring topic. Interoperability between OpenTelemetry and Prometheus for observability was also discussed. Additionally, there was a conversation on the fundamental differences between declarative vs. imperative programming paradigms.

📊 Numbers of the Week

  • Total stable releases: 55 across 24 projects
  • Top 3 projects by commits this week:
    1. kubernetes/kubernetes — 186 commits
    2. envoyproxy/envoy — 153 commits
    3. telepresenceio/telepresence — 130 commits
  • Top 3 projects by merged pull requests this week:
    1. envoyproxy/envoy — 109 merged PRs
    2. cilium/cilium — 104 merged PRs
    3. kubernetes/kubernetes — 100 merged PRs

📚 View all articles from this week →