NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #769 by repository stars
Last release today
08 Oct 2026
Ships on a steady schedule
a new release about every 8 days
Nearly every release is documented
notes for 60 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
2182 releases · first in 2019
This release fixes per-port DHCP preservation, duplicate logical switch/router creation, security-group preservation, ARP/ND flood suppression, stale
This release fixes per-port DHCP preservation, duplicate logical switch/router creation, security-group preservation, ARP/ND flood suppression, stale load balancer mappings, and VPC Egress Gateway validation on release-1.16.
95bb94791 Preserve per-port DHCP options during subnet reconciliation. (#7578)ba817ee41 Use atomic Wait+Insert to prevent duplicate logical switches and routers. (#7542, #7572)9aa83d81c Wait for informer service deletion in tests. (#7570)604a825bf Preserve security groups when routing pods. (#7567)30365b86e Preserve router-owned ARP and ND with flood suppression. (#7555)5c2ff8135 Clear stale Switch Load Balancer Rule VIP mappings. (#7559)8fa558658 Restore VPC Egress Gateway CRD validations. (#7558)One column per quarter.
This release fixes VIP reconciliation, external-gateway node handling, VMI protection, and IPv6 tunnel address selection on release-1.16.
This release fixes VIP reconciliation, external-gateway node handling, VMI protection, and IPv6 tunnel address selection on release-1.16.
b87d88573 Backport full-mask tunnel address selection to release-1.16. (#7552)6e7deda4b Reconcile attachSubnets for switch load balancer VIPs. (#6969, #7548)e3ebfecf0 Do not require ovn-external-gw-config on external-gateway nodes. (#7452, #7547)62234f8c4 Protect VMs from incorrect chassis settings. (#7543)…and updates containerd to v2.2.9 to address CVE-2026-53493 . It also adds image pull secret support for VPC NAT gateway pods.
This release fixes VIP reconciliation and VMI migration handling, reduces IPv6 neighbor solicitation flooding in underlay networks, and updates containerd to v2.2.9 to address CVE-2026-53493. It also adds image pull secret support for VPC NAT gateway pods.
95130b034 Update containerd to v2.2.9. (#7540)87a7065d8 Backport pending VMI migration handling. (#7535)e4ab04abc Serialize VIP virtual port reconciliation. (#7525)1dddc42a2 Support image pull secrets for VPC NAT gateway pods. (#7511)bd4630d6a Avoid flooding IPv6 neighbor solicitations in underlay networks. (#7516)925057f36 Delete node router policies by owner on node deletion. (#7510)6b283d503 Keep a single OVN NB monitor for ACL sampling. (#7509)62ba759a3 Reconcile distributed-subnet allowed-address-pair VIP ports. (#7506)Full Changelog: v1.16.7...v1.16.8
This release restores the historical underlay ARP flood option so broadcast ARP/ND probes do not exceed the OVS 4096 resubmit limit, and includes Kube
This release restores the historical underlay ARP flood option so broadcast ARP/ND probes do not exceed the OVS 4096 resubmit limit, and includes KubeVirt live-migration identity coverage plus an EVPN gateway VRF IPv6 fix.
6295b7f97 Restore bcast_arp_req_flood with default false. The MC_UNKNOWN northd change only rewrites router-IP ARP/ND; underlay VIF ARP probes can still flood and exceed the 4096 resubmit limit. With the option disabled, broadcast ARP requests skip L2 flood and localnet ARP for known LSP IPs is unicast-forwarded.317930749 Add KubeVirt live migration network identity coverage.a649b1dca Preserve IPv6 addresses for EVPN gateway VRF.This release prevents the initial OVN monitor setup from blocking indefinitely when a connection or server startup stalls.
This release prevents the initial OVN monitor setup from blocking indefinitely when a connection or server startup stalls.
d5a3e8cd8 Bound the initial OVN monitor RPC by the configured connection timeout while preserving the monitor_cond method and monitor options, with regression coverage for the reconnect read/write lock deadlock and timeout cleanup.This release replaces the historical underlay ARP flood option with the upstream OVN northd behavior that forwards broadcast ARP/ND requests to MC_UNK
This release replaces the historical underlay ARP flood option with the upstream OVN northd behavior that forwards broadcast ARP/ND requests to MC_UNKNOWN.
877d314db Replace the Kube-OVN-specific NB option bcast_arp_req_flood with the upstream northd change that forwards broadcast ARP/ND requests to MC_UNKNOWN instead of flooding MC_FLOOD_L2. GARP packets still use MC_FLOOD_L2.This release includes dependency and security updates, dual-stack EIP/SNAT policy fixes, FRR BGP test reliability improvements, DHCP option parsing fi
This release includes dependency and security updates, dual-stack EIP/SNAT policy fixes, FRR BGP test reliability improvements, DHCP option parsing fixes, ACL sampling support, and KubeVirt E2E installation updates.
faa56e26c Update containerd to v2.2.8.cb3e5b872 Update golang.org/x/exp.4c1c92601 Update the Go toolchain.2e4c673c5 Use per-family matches for dual-stack EIP/SNAT policies.d5a6191c8 Persist FRR BGP topology configuration in E2E tests.b91874436 Preserve commas inside braced DHCP option values.e8dc3a867 Backport ACL sampling support.6537d5bb6 Install Multus and KubeVirt from the release checkout in conformance E2E.e570188ae fix(controller): reconcile missing node logical switch ports
280ef5e54 chore(deps): bump containerd/v2 to v2.2.4 to fix CVE-2026-46680
d1a541c1e fix(controller): keep VM LSP port-group memberships when a sibling pod is alive
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →