Skip to content

chore(base-cluster/dependencies): update docker.io/fluxcd/flux-cli docker tag to v2.7.3#1798

Merged
renovate[bot] merged 1 commit intomainfrom
renovate/base-cluster-docker.io-fluxcd-flux-cli-2.x
Nov 24, 2025
Merged

chore(base-cluster/dependencies): update docker.io/fluxcd/flux-cli docker tag to v2.7.3#1798
renovate[bot] merged 1 commit intomainfrom
renovate/base-cluster-docker.io-fluxcd-flux-cli-2.x

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Nov 24, 2025

This PR contains the following updates:

Package Update Change
docker.io/fluxcd/flux-cli minor v2.6.4 -> v2.7.3

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

fluxcd/flux2 (docker.io/fluxcd/flux-cli)

v2.7.3

Compare Source

Highlights

Flux v2.7.3 is a patch release that comes with various fixes. Users are encouraged to upgrade for the best experience.

ℹ️ Please follow the Upgrade Procedure for Flux v2.7+ for a smooth upgrade from Flux v2.6 to the latest version.

Fixes:

  • Restore SOCKS5 proxy support in all controllers
  • Fix status reporting of HelmReleases with RetryOnFailure strategy
  • Automated retries for ImagePolicies when no image tags are found in the database
  • Fix alerting for Telegram's message_thread_id
  • Allow running kustomize-controller and helm-controller on the same loopback interface as source-watcher

⚠️ Note that signature verification for OCI artifacts in source-controller is not compatible with Cosign v3. Users are advised to use Cosign v2.6 for signing Flux OCI artifacts and Helm charts, until support for Cosign v3 is added in Flux v2.8.

Components changelog

CLI changelog

Full Changelog: fluxcd/flux2@v2.7.2...v2.7.3

v2.7.2

Compare Source

Highlights

Flux v2.7.2 is a patch release that comes with security fixes. Users are encouraged to upgrade for the best experience.

ℹ️ Please follow the Upgrade Procedure for Flux v2.7+ for a smooth upgrade from Flux v2.6 to the latest version.

All Flux components are now built with Go 1.25.2 which includes fixes for vulnerabilities in the Go stdlib that could lead to denial of service. The list of security fixes can be found in the Go 1.25.2 release notes.

Components changelog

CLI changelog

Full Changelog: fluxcd/flux2@v2.7.1...v2.7.2

v2.7.1

Compare Source

Highlights

Flux v2.7.1 is a patch release that comes with various improvements and fixes. Users are encouraged to upgrade for the best experience.

ℹ️ Please follow the Upgrade Procedure for Flux v2.7+ for a smooth upgrade from Flux v2.6 to the latest version.

Improvements:

  • Extend flux migrate with support for migrating manifests in Git repositories to the latest API versions.
  • Add recommendations for configuring HelmReleases on production environments.

Fixes:

  • Fix flux migrate command to handle managed fields properly.
  • Fix self-signed TLS cert handling for public Helm repositories in source-controller.
  • Fix the default API versions used by receivers in notification-controller.
  • Fix redundant Ready condition patching in helm-controller.
  • Fix workload identity configuration examples for kubeconfig in helm-controller and kustomize-controller.

Components changelog

CLI changelog

Full Changelog: fluxcd/flux2@v2.7.0...v2.7.1

v2.7.0

Compare Source

Highlights

Flux v2.7.0 is a feature release. Users are encouraged to upgrade for the best experience.

For a compressive overview of new features and API changes included in this release, please refer to the Announcing Flux 2.7 GA blog post.

Overview of the new features:

  • General availability release of the Image Automation APIs (ImagePolicy, ImageRepository, ImageUpdateAutomation)
  • Watch for changes in ConfigMaps and Secrets references (Kustomization, HelmRelease)
  • Support for remote cluster authentication using Workload Identity (Kustomization, HelmRelease)
  • Extend the readiness evaluation of dependencies with CEL expressions (Kustomization, HelmRelease)
  • Support for global SOPS Age decryption keys on single-tenant clusters (Kustomization)
  • Support for optional Kustomize components (Kustomization)
  • Introduce RetryOnFailure lifecycle management strategy (HelmRelease)
  • Support mTLS for sending alerts to external systems (Provider)
  • Object-level workload identity authentication (Bucket, Provider)
  • Support mTLS for GitHub App transport (GitRepository, ImageUpdateAutomation, Provider)
  • OpenTelemetry tracing for Kustomization and HelmRelease reconciliation (Provider)
  • Support for 3rd-party source controllers (ExternalArtifact)
  • Support for source composition and decomposition patterns (ArtifactGenerator)
  • CancelHealthCheckOnNewRevision feature gate (kustomize-controller)
  • GitSparseCheckout feature gate (image-automation-controller)

❤️ Big thanks to all the Flux contributors that helped us with this release!

Kubernetes compatibility

This release is compatible with the following Kubernetes versions:

Kubernetes version Minimum required
v1.32 >= 1.32.0
v1.33 >= 1.33.0
v1.34 >= 1.34.1

[!NOTE]
Note that the Flux project offers support only for the latest three minor versions of Kubernetes.
Backwards compatibility with older versions of Kubernetes and OpenShift is offered by vendors such as
ControlPlane that provide enterprise support for Flux.

OpenShift compatibility

Flux can be installed on Red Hat OpenShift cluster directly from OperatorHub using Flux Operator. The operator allows the configuration of Flux multi-tenancy lockdown, network policies, persistent storage, sharding, vertical scaling and the synchronization of the cluster state from Git repositories, OCI artifacts, and S3-compatible storage.

Upgrade procedure

⚠️ The Flux APIs v1beta1 and v2beta1 (deprecated in 2023) have reached end-of-life and have been removed from the CRDs.

Unless you are using Flux Operator to deploy the Flux controllers, you must run the flux migrate command on clusters before upgrading.

For more details, please refer to the Flux v2.7 upgrade guide.

Components changelog

New Documentation

CLI changelog

New Contributors

Full Changelog: fluxcd/flux2@v2.6.0...v2.7.0


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@coderabbitai
Copy link
Copy Markdown

coderabbitai Bot commented Nov 24, 2025

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.


Comment @coderabbitai help to get the list of available commands and usage tips.

@renovate renovate Bot force-pushed the renovate/base-cluster-docker.io-fluxcd-flux-cli-2.x branch 2 times, most recently from 1dff0c9 to 28fdcff Compare November 24, 2025 09:07
@renovate renovate Bot force-pushed the renovate/base-cluster-docker.io-fluxcd-flux-cli-2.x branch from 28fdcff to 7528dd8 Compare November 24, 2025 09:09
@renovate renovate Bot added this pull request to the merge queue Nov 24, 2025
Merged via the queue into main with commit f7b42d1 Nov 24, 2025
9 of 10 checks passed
@renovate renovate Bot deleted the renovate/base-cluster-docker.io-fluxcd-flux-cli-2.x branch November 24, 2025 09:11
github-merge-queue Bot pushed a commit that referenced this pull request Nov 28, 2025
🤖 I have created a release *beep* *boop*
---


##
[10.1.0](base-cluster-v10.0.3...base-cluster-v10.1.0)
(2025-11-28)


### Features

* **base-cluster/logging:** enable automatic resizing
([#1785](#1785))
([167e5e0](167e5e0))
* **base-cluster/tracing:** add gateway to enable tail sampling
([#1736](#1736))
([7c1bd9a](7c1bd9a))


### Bug Fixes

* **base-cluster/backup:** fix secret creation for velero
([#1816](#1816))
([04a8ca0](04a8ca0))
* **base-cluster/monitoring:** alertmanager condition
([#1781](#1781))
([b6abed0](b6abed0))


### Miscellaneous Chores

* **base-cluster/dependencies:** update common docker tag to v1.6.0
([#1796](#1796))
([f1d8f05](f1d8f05))
* **base-cluster/dependencies:** update docker.io/curlimages/curl docker
tag to v8.17.0
([#1797](#1797))
([86362fe](86362fe))
* **base-cluster/dependencies:** update docker.io/fluxcd/flux-cli docker
tag to v2.7.3
([#1798](#1798))
([f7b42d1](f7b42d1))
* **base-cluster/dependencies:** update docker.io/fluxcd/flux-cli docker
tag to v2.7.4
([#1818](#1818))
([6a318a1](6a318a1))
* **base-cluster/dependencies:** update docker.io/fluxcd/flux-cli docker
tag to v2.7.5
([#1823](#1823))
([bcd266e](bcd266e))
* **base-cluster/dependencies:** update
docker.io/grafana/grafana-image-renderer docker tag to v3.12.9
([#1639](#1639))
([e99101a](e99101a))
* **base-cluster/dependencies:** update helm release alloy to v1.2.1
([#1771](#1771))
([87df788](87df788))
* **base-cluster/dependencies:** update helm release alloy to v1.4.0
([#1799](#1799))
([9bc1aaa](9bc1aaa))
* **base-cluster/dependencies:** update helm release descheduler to
v0.34.0
([#1800](#1800))
([33f9a53](33f9a53))
* **base-cluster/dependencies:** update helm release external-dns to
v1.19.0
([#1801](#1801))
([c1f24a4](c1f24a4))
* **base-cluster/dependencies:** update helm release
kube-prometheus-stack to v75.15.2
([#1772](#1772))
([0cc66b2](0cc66b2))
* **base-cluster/dependencies:** update helm release
kube-prometheus-stack to v75.18.1
([#1802](#1802))
([b096b58](b096b58))
* **base-cluster/dependencies:** update helm release loki to v6.46.0
([#1727](#1727))
([ec1b906](ec1b906))
* **base-cluster/dependencies:** update helm release metrics-server to
v3.13.0
([#1805](#1805))
([6ba8633](6ba8633))
* **base-cluster/dependencies:** update helm release oauth2-proxy to
v7.14.2
([#1635](#1635))
([d88c7c0](d88c7c0))
* **base-cluster/dependencies:** update helm release oauth2-proxy to
v7.18.0
([#1806](#1806))
([636a585](636a585))
* **base-cluster/dependencies:** update helm release reflector to
v9.1.39
([#1790](#1790))
([5b032af](5b032af))
* **base-cluster/dependencies:** update helm release reflector to
v9.1.40
([#1819](#1819))
([da8be9d](da8be9d))
* **base-cluster/dependencies:** update helm release tempo-distributed
to v1.48.1
([#1791](#1791))
([d00ac00](d00ac00))
* **base-cluster/dependencies:** update helm release tempo-distributed
to v1.56.2
([#1807](#1807))
([80c67d1](80c67d1))
* **base-cluster/dependencies:** update helm release tetragon to v1.6.0
([#1808](#1808))
([c3fb92d](c3fb92d))
* **base-cluster/dependencies:** update helm release trivy-operator to
v0.31.0
([#1809](#1809))
([59976f6](59976f6))

---
This PR was generated with [Release
Please](https://github.com/googleapis/release-please). See
[documentation](https://github.com/googleapis/release-please#release-please).

---------

Co-authored-by: github-actions <41898282+github-actions[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants