TL;Der — Platform

tlder@devPlatform
tlder@dev:~$

Filtered to Platform. 20 items. covering May 1 → Jun 2

└─worth-opening/(1 item)

The upgrade notes and the full reliability-fix list are here — worth ten minutes before you bump the operator on a production cluster.
└─·data,platform

└─cross-cutting/(9 items)

CVE-2026-41091 lets a local attacker escalate to SYSTEM through Defender's Malware Protection Engine, while CVE-2026-45498 kills definition updates — patched together, federal deadline June 3.
└─·security,platform·WinBuzzer / The Hacker News
CISA added three infrastructure CVEs to its Known Exploited Vulnerabilities catalog on May 27 — a Linux kernel local privilege escalation to root, an Ivanti EPMM authenticated RCE, and an unauthenticated out-of-bounds write in PAN-OS that also lands root.
└─·security,platform·CISA
May 29
May 29·cat news/20260529-cloud-cloudflare-one-client-redesign
cat news/20260529-cloud-cloudflare-one-client-redesign
Cloudflare's desktop client can now lock traffic until you log in
Beta builds of the Cloudflare One client for macOS and Windows landed with a redesigned interface, and the Windows build can block all internet traffic from boot until the user authenticates.
└─Cloudflare
May 28
May 28·cat news/20260528-cloud-aws-resilience-hub-next-gen-ga
cat news/20260528-cloud-aws-resilience-hub-next-gen-ga
Next-gen AWS Resilience Hub reaches general availability
The reworked Resilience Hub adds a systems-to-services hierarchy and AI-assisted failure-mode analysis for SRE teams.
└─AWS
May 20
May 20·cat news/20260520-cloud-gcp-apigee-ssrf-cve-2026-2264
cat news/20260520-cloud-gcp-apigee-ssrf-cve-2026-2264
GCP Apigee X Security Bulletin GCP-2026-034: SSRF via SetIntegrationRequest Policy
Google issued security bulletin GCP-2026-034 for a server-side request forgery vulnerability in Apigee X that allows attackers to exfiltrate service account tokens through an unvalidated IntegrationRegion parameter.
└─GCP Release Notes
May 20
May 20·cat news/20260520-cloud-gcp-guest-env-critical-fix
cat news/20260520-cloud-gcp-guest-env-critical-fix
GCP Guest Environment v20260511.00 Fixes Control Plane Error That Broke SSH and Password Reset
Google shipped Guest Environment version 20260511.00 to repair a May 4–11 control plane error that accidentally removed the core plugin, disabling SSH access and password reset on affected instances.
└─GCP Release Notes
May 17
May 17·cat news/20260517-cloud-cisco-sdwan-cve-2026-20182
cat news/20260517-cloud-cisco-sdwan-cve-2026-20182
CISA Mandates Federal Patch for Critical Cisco Catalyst SD-WAN Auth Bypass CVE-2026-20182
CISA has ordered federal agencies to patch a CVSS 10.0 authentication bypass in Cisco Catalyst SD-WAN Controller and Manager by May 17, 2026, following confirmed active exploitation.
└─BleepingComputer
May 12
May 12·cat news/20260512-cloud-cisa-kev-cve-2026-32202
cat news/20260512-cloud-cisa-kev-cve-2026-32202
CISA KEV Patch Deadline Arrives for Windows Shell Spoofing CVE-2026-32202
The FCEB mandatory patching deadline for CVE-2026-32202, a zero-click Windows Shell spoofing vulnerability actively exploited by APT28, falls today, May 12, 2026.
└─CISA / The Hacker News
May 9
May 9·cat news/20260509-cloud-cisa-pan-os-0300-deadline
cat news/20260509-cloud-cisa-pan-os-0300-deadline
CISA May 9 Deadline Forces PAN-OS CVE-2026-0300 Mitigations Ahead of Planned May 13 Patch
CISA's May 9 enforcement deadline for federal agencies to mitigate the actively exploited PAN-OS root-level RCE (CVE-2026-0300) arrives while Palo Alto's patch remains four days away.
└─The Hacker News
May 21
May 21·cat news/20260521-k8s-cncf-obs-summit-na-opened
cat news/20260521-k8s-cncf-obs-summit-na-opened
CNCF Observability Summit North America 2026 Opens in Minneapolis
The CNCF Observability Summit North America 2026 opened on May 21 in Minneapolis, moving from a scheduled conference to an active two-day event.
└─CNCF
May 20
May 20·cat news/20260520-k8s-cncf-cloud-svc-mesh-status
cat news/20260520-k8s-cncf-cloud-svc-mesh-status
GCP Cloud Service Mesh Adds Acceptance and Rejection Status Reporting for Istio APIs
Google Cloud Service Mesh now surfaces acceptance and rejection status codes for Istio API resources, letting operators see detailed error codes through resource and mesh state displays.
└─GCP Release Notes
May 13
May 13·cat news/20260513-k8s-cncf-kubecon-japan-2026-sc
cat news/20260513-k8s-cncf-kubecon-japan-2026-sc
CNCF Debuts KubeCon + CloudNativeCon Japan 2026 Schedule
CNCF has published the full session schedule for KubeCon + CloudNativeCon Japan 2026, taking place July 29-30 at PACIFICO Yokohama, with registration open through June 16.
└─CNCF
May 8
May 8·cat news/20260508-k8s-cncf-microcks-incubating
cat news/20260508-k8s-cncf-microcks-incubating
Microcks Promoted to CNCF Incubating Project
The CNCF TOC voted on May 7 to advance Microcks from Sandbox to Incubating status, recognizing its growth as a cloud-native API mocking and contract testing platform.
└─CNCF Blog
May 8
May 8·cat news/20260508-cicd-github-agentic-wf-sec
cat news/20260508-cicd-github-agentic-wf-sec
GitHub Details Defense-in-Depth Security Architecture for Agentic CI/CD Workflows
GitHub published a comprehensive security model for agentic workflows, covering sandboxed execution, credential isolation, and full traceability across trust boundaries.
└─InfoQ
May 1 → Jun 2Platform20 entries