GCP Releases

Google Cloud releases and Terraform Google provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.

Tracking 829 GCP releases · Updated

  • Google Cloud release notes securitygcpengineergcp-bigquery ·

    Colab Enterprise Security Vulnerability in BigQuery, Dataform

    A critical security vulnerability, GCP-2026-047, has been identified in BigQuery, Dataform, and Colab Enterprise. An authenticated attacker could escalate permissions to achieve cross-tenant repository takeover. Users of these services should consult the security bulletin for details on the vulnerability and its potential impact.

    security
  • Google Cloud release notes securitygcpengineer ·

    Developer Connect enhances security for GitLab/Bitbucket connections

    Developer Connect now enforces granular permissions for GitLab Enterprise and Bitbucket Data Center connections by checking both the calling principal and the service agent against Secret Manager secrets. This change adheres to the principle of least privilege, enhancing security by ensuring only authorized entities can access sensitive Git provider credentials. The update affects users managing these specific types of repository connections and is detailed in the Developer Connect security bulletin.

    security
  • Google Cloud release notes datasecuritygcpengineergcp-bigquery ·

    Dataform Security Vulnerability in BigQuery and Colab Enterprise

    A security vulnerability was found in Dataform repositories within BigQuery and Colab Enterprise, allowing authenticated attackers to escalate privileges and take over cross-tenant repositories. This impacts users of Dataform, BigQuery, and Colab Enterprise. Further details are available in the GCP-2026-047 security bulletin.

    security
  • Google Cloud release notes infragcpdeprecationengineer ·

    Managed Service for Apache Airflow: New Builds and Deprecations

    Managed Airflow has released new builds for both Generation 3 and Generation 2, offering updated Apache Airflow versions. Concurrently, several older versions and builds across both generations have reached their end of support and are now deprecated. This impacts users on older Managed Airflow deployments who need to plan for upgrades.

    deprecation patch
  • Google Cloud release notes infradeprecationgcp-gke ·

    GKE Updates Include New Versions and Security Patches

    Google Kubernetes Engine (GKE) has released new cluster versions across its Rapid, Regular, Stable, and Extended channels, enabling upgrades and new cluster creation. This update also incorporates security fixes through updated Container-Optimized OS images, enhancing system security for all users. Specific versions are being deprecated in the Extended channel, with removal scheduled within 90 days, requiring users to plan their upgrades accordingly.

    security patch
  • Google Cloud release notes infragcpengineer ·

    Apigee hybrid v1.16.7 includes security fixes

    Google Cloud has released Apigee hybrid v1.16.7, incorporating various security and CVE fixes. This patch release also includes updates to container images integrated with Apigee hybrid Helm charts. Users can upgrade via the Helm chart, which automatically updates the necessary images. The release is available now for users of Apigee hybrid.

    security announcement
  • Google Cloud release notes infradeprecationgcp-gke ·

    Google Kubernetes Engine: Cluster version updates and deprecations

    Google Kubernetes Engine has updated cluster versions across its Rapid, Regular, Stable, and Extended channels. This release introduces new versions for cluster creation and upgrades, while also deprecating older versions, which will be removed in 90 days or at end of support. These changes primarily affect users managing GKE clusters and their versioning strategies.

    patch
  • Google Cloud release notes infragcpengineer ·

    Cloud Deploy now uses a Google-specific Skaffold fork

    Cloud Deploy's internal image has been updated to use a custom fork of Skaffold. This change is reflected in the versioning seen via `gcloud` commands and the Cloud Console, now showing 'cd-skaffold'. This update is part of Google's internal management of Skaffold within Cloud Deploy.

    patch
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineerenergy ·

    Container Optimized OS Updates: Kernel, Docker, Security Fixes, NVIDIA Drivers

    This release of Container Optimized OS (COS) includes multiple updates across kernel versions, Docker, and Containerd. Notably, it addresses several security vulnerabilities, including CVE-2026-53359 and KCTF-d82ba05 in the Linux kernel, and adds support for specific NVIDIA GRID driver versions. These updates are primarily targeted at users of COS who rely on containerization and GPU acceleration.

    security patch
  • Google Cloud release notes infragcpengineergcp-gke ·

    Google Distributed Cloud for VMware 1.33.1000-gke.59 Released

    Google Distributed Cloud (software only) for VMware 1.33.1000-gke.59 is now available, running on Kubernetes v1.33.11-gke.100. This release includes vulnerability fixes and addresses an issue preventing patch releases for the VMware software-only edition. The update is available for download, with rollout to GKE On-Prem API clients taking 7-14 days.

    patch announcement
  • Google Cloud release notes infragcpengineergcp-gke ·

    Google Distributed Cloud for Bare Metal 1.33.1000-gke.59 Released

    Google Distributed Cloud (software only) for bare metal version 1.33.1000-gke.59 is now available, running on Kubernetes v1.33.11-gke.100. This release addresses vulnerabilities and resolves a critical CA rotation failure issue for self-managing clusters, which previously could render them unmanageable. Users must upgrade to this version before performing CA rotation to prevent disruption.

    patch announcement
  • Google Cloud release notes compliancegcpgapreviewengineermediagcp-looker ·

    Looker 26.12 Rolls Out with New Features and Bug Fixes

    Looker 26.12 is rolling out with significant updates, including new features like FIPS 140-3 compliance support and a preview of Table Row Grouping. Several bug fixes address issues ranging from TypeError crashes and access control problems to visualization rendering and API call errors. The release also makes the KPI Visualization preview enabled by default and the Increased Row Limit feature generally available, impacting users of Looker (original) instances.

    feature patch announcement
  • Google Cloud release notes securitygcpengineer ·

    Google SecOps Marketplace Updates

    The Google SecOps Marketplace has released updates across several components. FileUtilities now supports .7z archives, enhancing data extraction capabilities. Google Threat Intelligence has fixed widget rendering issues by properly escaping HTML script tags. Finally, Google Chronicle improves case and alert synchronization by addressing verification handling for external IDs. These updates primarily impact security operations teams and engineers managing security workflows.

    patch
  • Google Cloud release notes securitygcpsecurity-advisorygcp-bigquery ·

    Apigee X Security Vulnerability Affecting BigQuery DAO

    A vulnerability in Apigee X's BigQuery Data Access Object allowed authenticated attackers to exfiltrate cross-tenant data. This issue has been patched and affects specific versions on Google Cloud Platform, with Apigee hybrid remaining unaffected. No customer action is required for this security fix.

    security
  • Google Cloud release notes datagcppreviewengineergcp-bigquery ·

    BigQuery: Simba ODBC Driver Update and Multi-Level Aggregation Preview

    Google Cloud has released an updated Simba ODBC driver for BigQuery and introduced multi-level aggregation in GoogleSQL, now in preview. This enhancement allows for more complex data analysis by enabling aggregate functions within other aggregate functions. The new driver and preview feature are available to BigQuery users, with the aggregation feature requiring preview enablement.

    feature patch
  • Google Cloud release notes governancegcppreviewengineer ·

    Google Cloud CCaaS prerelease notes: New features and fixes

    Google Cloud announced prerelease notes for its Contact Center as a Service (CCaaS) platform. Key new functionality includes Direct Access Points for routing chat conversations directly to queues via API configuration, bypassing default routing logic. The release also addresses numerous bugs, improving agent desktop performance, voicemail handling, reporting accuracy, and integrations with Salesforce. These updates are expected to benefit engineers and architects managing contact center operations on Google Cloud.

    feature patch announcement
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·

    Container Optimized OS Updates: Kernel, Docker, and Security Fixes

    This release of Container Optimized OS includes updates to the Linux kernel, Docker, and Containerd, alongside numerous package upgrades and critical security vulnerability fixes. These updates are crucial for maintaining system security and stability, affecting all users of the OS. Notably, multiple CVEs are addressed, enhancing the overall security posture of the system.

    security patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Cloud SDK Updates Python to Address CVE

    The Google Cloud CLI has updated its bundled Python version to 3.14.6 to address CVE-2026-34182 on Windows. This patch ensures improved security for users of the gcloud CLI. Users who run the gcloud CLI on Windows are affected by this security update.

    patch
  • Google Cloud release notes infragcpengineer ·

    Anthos Config Management Addresses Vulnerabilities

    Anthos Config Management has released an update that addresses multiple Common Vulnerabilities and Exposures (CVEs) by updating its dependencies. The Open Telemetry image has been upgraded to version 0.152.0 to incorporate these crucial security fixes. This patch is recommended for all users of Anthos Config Management to maintain a secure environment. Full details of the changes can be found in the opentelemetry-collector-contrib changelog.

    patch
  • Google Cloud release notes infragcpengineer ·

    Cloud Deploy now uses Kubectl's Kustomize by default

    Cloud Deploy has updated its default Kustomize behavior, now leveraging the Kustomize version embedded within Kubectl. This change affects users who deploy applications using Kustomize, offering a more consistent experience with the Kubectl toolchain. Explicit Kustomize versions can still be specified during release creation if needed.

    patch

About GCP release tracking on ReleaseBytes

Google Cloud publishes release notes per product — BigQuery, GKE, Cloud Run, Cloud SQL, Vertex AI and dozens more — which makes platform-wide awareness hard. ReleaseBytes aggregates the official GCP release notes and the Terraform Google provider changelog into a single feed, with a plain-English summary of each update and tags for breaking changes, deprecations and security fixes.

Frequently asked questions

How often are GCP release notes updated on ReleaseBytes?

Continuously. ReleaseBytes monitors the official GCP release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.

What kinds of GCP changes does ReleaseBytes track?

New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.

How can I get alerts for new GCP releases?

Set up a free email or Slack alert filtered to GCP, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.

Where does the GCP release data come from?

From the official sources: Google Cloud releases and Terraform Google provider. Every item links back to the original vendor announcement.