Contour
Kubernetes ingress controller built on the Envoy proxy
Three supported branches, patched in lockstep within the same minute.
◆Recent moves
- 4mo ago
Contour 1.33.3 bumps Envoy to 1.35.9 for security fixes
Bumps Envoy to v1.35.9 for security fixes on the newest supported branch, updates gRPC for CVE-2026-33186 while noting Contour is not affected, and drops the Envoy metrics hostPort from example manifests. Released within two minutes of the equivalent 1.32 and 1.31 patches.
View source ↗ - 4mo ago
Contour 1.32.4 bumps Envoy to 1.34.13 for security fixes
The 1.32 instance of the same March batch, carrying Envoy v1.34.13 rather than 1.35.9 because of the branch's compatibility window. Same gRPC update and same manifest change as its siblings.
View source ↗ - 4mo ago
Contour 1.31.5 bumps Envoy to 1.34.13 for security fixes
The oldest branch in the March batch, identical in content to 1.32.4 down to the Envoy version. Released first, one minute ahead of the other two.
View source ↗ - 5mo ago
Contour 1.33.2 fixes HTTPProxy status updates and shutdown throttling
Fixes load balancer status update failures caused by the HTTPProxy CRD schema marking status.loadBalancer.ingress[].ports[].error as required. Uniquely among the February batch it also raises the shutdown-manager CPU limit from 50m to 200m under the Gateway Provisioner to stop throttling.
View source ↗ - 5mo ago
Contour 1.32.3 fixes the HTTPProxy status schema
Carries the HTTPProxy CRD schema fix and a Go update to the 1.32 branch, without the shutdown-manager change that only 1.33.2 received.
View source ↗ - 5mo ago
Contour 1.31.4 fixes the HTTPProxy status schema
The 1.31 instance of the February batch, identical to 1.32.3. Three branches, one fix, three tags one minute apart.
View source ↗