GCP Releases

Google Cloud releases and Terraform Google provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.

Tracking 819 GCP releases · Updated

  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Guest Environment Updates Include OS Login Fixes and Security Patches

    The Guest Environment Fixed Version 20260716.00 is now available, addressing issues with OS Login zombie processes and the extensions monitor. This update also includes dependency updates to patch multiple high-severity CVEs. The release benefits all supported operating systems by improving stability and security.

    patch
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·

    Container Optimized OS Security and Bug Fixes

    This release of Container Optimized OS addresses numerous security vulnerabilities across the Linux kernel, systemd, Python, and OpenSSH. It also includes fixes for an xfs file system bug and an update to fluent-bit. These updates are crucial for maintaining system integrity and security for all users running Container Optimized OS.

    security patch
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·

    Container Optimized OS Updates Address Security Vulnerabilities and Bugs

    Several updates have been released for Container Optimized OS (COS) addressing multiple security vulnerabilities across glib, Python, wget, and the Linux kernel. These updates also include fixes for a bug in the XFS file system and upgraded versions of Docker and containerd. The changes are available for various COS versions and are relevant to users running containerized workloads on Google Cloud.

    security patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineergcp-looker ·

    Looker Security Advisory: Cross-Site Scripting Vulnerability

    A critical Cross-Site Scripting (XSS) vulnerability in Looker could allow an attacker to execute arbitrary scripts by tricking an administrator into opening a malicious URL. This affects both Looker-hosted and self-hosted instances. Looker-hosted instances are already mitigated, while self-hosted instances require an urgent update to patched versions.

    security
  • Google Cloud release notes aigcpsecurity-advisoryengineer ·

    Gemini Enterprise Agent Platform Security Update

    A Server-Side Request Forgery (SSRF) vulnerability in Agent Studio's auto-generated API proxy backend has been fixed. This addresses a potential security risk for web applications generated before July 1, 2026. Users who created applications before this date should regenerate and redeploy their apps from Agent Studio to incorporate the security patch, which includes strict domain allowlist validation.

    security
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Container Optimized OS Updates Address Security and Memory Errors

    This update to Container Optimized OS includes several security fixes for CVEs in systemd and the Linux kernel, alongside a feature that enhances memory error handling for CUDA workloads on ARM64. It also contains patches for Docker and GPU drivers. Users running CUDA on ARM64 may see improved stability, and all users benefit from the security remediations.

    security feature patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Apigee X 1-18-0-apigee-1 Release

    This release of Apigee X includes several security fixes and bug resolutions, enhancing reliability and patching vulnerabilities. It affects users of Apigee X, particularly those using cache policies, API proxy deployments, and SAML assertions. The rollout began today and may take several business days to complete across all Google Cloud zones.

    security patch announcement
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Cloud Service Mesh updates address multiple critical CVEs

    New versions of Cloud Service Mesh (1.29.5-asm.12, 1.28.10-asm.4, and 1.27.9-asm.15) are available, bringing fixes for numerous platform CVEs, including several rated Critical. These updates are crucial for maintaining the security posture of your service mesh deployments. Users are advised to consult the provided upgrade documentation to apply these security patches.

    patch announcement
  • Google Cloud release notes securityinfragcpgapreviewdeprecationsecurity-advisoryengineergcp-bigquerygcp-cloud-rungcp-gkegcp-cloud-sqlgcp-cloud-storagegcp-dataprocgcp-compute-enginegcp-looker ·

    Cloud SDK 576.0.0: BigLake, GKE, Compute Engine updates

    Cloud SDK version 576.0.0 introduces several feature promotions to GA, including BigLake Delta sharing commands and GKE rollbackable upgrades, alongside numerous enhancements across Compute Engine, Cloud SQL, and other services. A breaking change updates gcloud storage rsync to decompress gzip files by default, impacting users who previously relied on the default behavior. Linux bundled Python was updated to address a security vulnerability, and a performance regression in Artifact Registry was fixed. Most changes are applicable to engineers and architects managing Google Cloud resources.

    breaking
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineerenergy ·

    Container Optimized OS Updates: Kernel, Docker, Security Fixes, NVIDIA Drivers

    This release of Container Optimized OS (COS) includes multiple updates across kernel versions, Docker, and Containerd. Notably, it addresses several security vulnerabilities, including CVE-2026-53359 and KCTF-d82ba05 in the Linux kernel, and adds support for specific NVIDIA GRID driver versions. These updates are primarily targeted at users of COS who rely on containerization and GPU acceleration.

    security patch
  • Google Cloud release notes securitygcpsecurity-advisorygcp-bigquery ·

    Apigee X Security Vulnerability Affecting BigQuery DAO

    A vulnerability in Apigee X's BigQuery Data Access Object allowed authenticated attackers to exfiltrate cross-tenant data. This issue has been patched and affects specific versions on Google Cloud Platform, with Apigee hybrid remaining unaffected. No customer action is required for this security fix.

    security
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·

    Container Optimized OS Updates: Kernel, Docker, and Security Fixes

    This release of Container Optimized OS includes updates to the Linux kernel, Docker, and Containerd, alongside numerous package upgrades and critical security vulnerability fixes. These updates are crucial for maintaining system security and stability, affecting all users of the OS. Notably, multiple CVEs are addressed, enhancing the overall security posture of the system.

    security patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Cloud SDK Updates Python to Address CVE

    The Google Cloud CLI has updated its bundled Python version to 3.14.6 to address CVE-2026-34182 on Windows. This patch ensures improved security for users of the gcloud CLI. Users who run the gcloud CLI on Windows are affected by this security update.

    patch
  • Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·

    Container Optimized OS Updates Address Security and Features

    This release of Container Optimized OS includes numerous package updates and security patches for the Linux kernel and various libraries. It introduces new features for GPU support and enhances existing components. The updates are relevant for users running workloads on Google Cloud Platform, particularly those utilizing containers and GPU instances.

    security feature patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Apigee Emulator v2.0.1: Security Hotfix for Netty and Go Libraries

    Apigee Emulator v2.0.1, released June 24, 2026, is a security-only hotfix addressing 10 vulnerabilities in the Netty networking library and the embedded Cassandra Go standard library. This update provides a drop-in replacement for v2.0.0 with no functional, API, or configuration changes, affecting users of the Apigee Emulator. The updated image is available via Google Artifact Registry, and users can upgrade by updating their VS Code Cloud Code settings.

    security feature announcement
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Container Optimized OS Releases Include Security Fixes and Minor Updates

    Several recent Container Optimized OS releases have been published, bringing minor updates and significant security patches. These updates include upgraded packages like logrotate, oslogin, and GPU installers, alongside critical fixes for CVEs affecting containerd and glibc. The changes primarily impact users running workloads on Google Cloud's Container Optimized OS.

    security patch announcement
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Container Optimized OS Updates Address Multiple Security Vulnerabilities

    This release of Container Optimized OS (COS) incorporates numerous security fixes for Docker, containerd, and the Linux kernel, including multiple CVEs. These updates are critical for maintaining system integrity and protecting against known vulnerabilities. All users of COS are advised to update to benefit from these security enhancements.

    security patch
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Cloud Service Mesh Security Patch Releases

    Multiple versions of Cloud Service Mesh (1.29.5-asm.3, 1.28.9-asm.2, 1.27.9-asm.8, and managed sidecar versions 1.21.6-asm.38, 1.20.8-asm.88, 1.19.10-asm.78) have been released with fixes for security vulnerabilities, including CVE-2026-34182 and CVE-2026-45447. These updates address critical security issues and are available for in-cluster and managed deployments. Users are advised to upgrade to the latest versions to incorporate these security patches.

    security patch
  • Google Cloud release notes securitynetworkinggcpsecurity-advisoryengineer ·

    Apigee X: Security patches and TLS 1.3 upgrade

    Apigee X has released an updated version (1-17-0-apigee-10) containing numerous security patches for its ingress gateway and an upgrade of the default outbound TLS protocol to TLS 1.3. These changes aim to enhance security and compliance by addressing multiple CVEs and improving TLS configuration. The release includes fixes for certificate creation issues and introduces a new proxyProtocol.mode property for HAProxy compatibility. Rollout is ongoing and may take several business days to complete across all Google Cloud zones.

    security patch announcement
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Container Optimized OS updates kernel, drivers, and security fixes

    Container Optimized OS has released several updates across multiple versions, including kernel upgrades, GPU driver support, and various package updates. These changes address numerous security vulnerabilities, such as CVEs in the Linux kernel and in packages like pyjwt and urllib3. Users of Container Optimized OS should review these updates to ensure their systems are patched against known security risks.

    security patch

About GCP release tracking on ReleaseBytes

Google Cloud publishes release notes per product — BigQuery, GKE, Cloud Run, Cloud SQL, Vertex AI and dozens more — which makes platform-wide awareness hard. ReleaseBytes aggregates the official GCP release notes and the Terraform Google provider changelog into a single feed, with a plain-English summary of each update and tags for breaking changes, deprecations and security fixes.

Frequently asked questions

How often are GCP release notes updated on ReleaseBytes?

Continuously. ReleaseBytes monitors the official GCP release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.

What kinds of GCP changes does ReleaseBytes track?

New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.

How can I get alerts for new GCP releases?

Set up a free email or Slack alert filtered to GCP, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.

Where does the GCP release data come from?

From the official sources: Google Cloud releases and Terraform Google provider. Every item links back to the original vendor announcement.