Maintenance and security roll-up release.
This release contains two bugfixes and addresses the following vulnerabilities in dependencies:
GO-2026-4970 CVE-2026-39822
GO-2026-5026 GHSA-w2q5-6q6x-x959
GO-2026-5158 CVE-2026-41178 GHSA-5wrp-cwcj-q835
GO-2026-5856 CVE-2026-42505
GO-2026-5942 CVE-2026-46600 GHSA-gg3m-vvp2-p2c5
GO-2026-5972 CVE-2026-33818 GHSA-xc2p-8ggw-6cr5
GO-2026-6061 GHSA-hrxh-6v49-42gf
GO-2026-6088 CVE-2026-56859 GHSA-76p8-fhrm-vpc7
GO-2026-6089 CVE-2026-56853 GHSA-xphw-4f88-5f39
GO-2026-6090 CVE-2026-56862 GHSA-7qch-w8m5-g3h3
GO-2026-6091 CVE-2026-56858 GHSA-c974-w86c-vpfw
GO-2026-6094 GHSA-gcjh-h69q-9w9g
GO-2026-6179 CVE-2026-56865
GO-2026-6180 CVE-2026-56864
GO-2026-6218 CVE-2026-56860 GHSA-25mv-j2qr-v5jq
CVE-2026-84304 GHSA-vp52-pcj8-j9qc
What's Changed
Dependencies
- Go 1.26.6
- CAPI 1.12.11
- k8s 0.34.11
- go-proxmox 0.8.1
Bugfixes
- Fixed an issue where after a Velero restore of a CAPMOX management cluster, already-running workload VMs could lose their address state @Leonorus #799
- Clarified additive IP pool behavior on primary NIC and zone-based single-pool configuration, thanks @biendara-hermle #810
Misc
- Added maintainer scripts
- Increased strictness of PR checks
- Added ginkgolinter, govulncheck
- Improved CI
Full Changelog: v0.9.0...v0.9.1