diff --git a/docs/docs-content/release-notes/release-notes.md b/docs/docs-content/release-notes/release-notes.md index dd4f49c497..f1c52aaec6 100644 --- a/docs/docs-content/release-notes/release-notes.md +++ b/docs/docs-content/release-notes/release-notes.md @@ -11,6 +11,15 @@ tags: ["release-notes"] +## February 5, 2026 - Release 4.8.27 + +### Improvements + +- The internal Palette Nginx controller has been upgraded to v1.13.7 to address multiple Nginx ingress vulnerabilities. + Refer to + [Security Advisory 008- Nginx ingress Vulnerabilities](../security-bulletins/security-advisories/security-advisories.md#security-advisory-008--nginx-ingress-vulnerabilities) + for further information. + ## January 30, 2026 - Release 4.8.25 ### Breaking Changes diff --git a/docs/docs-content/security-bulletins/security-advisories/security-advisories.md b/docs/docs-content/security-bulletins/security-advisories/security-advisories.md index 3764103045..4a1a4a5431 100644 --- a/docs/docs-content/security-bulletins/security-advisories/security-advisories.md +++ b/docs/docs-content/security-bulletins/security-advisories/security-advisories.md @@ -41,7 +41,8 @@ Nginx controller has been deprecated by the upstream provider, and we are in the controller. Until the migration to Traefik ingress is complete, we will be upgrading Nginx controller to version 1.13.7, which will remediate this vulnerability. -We will update this security advisory when Palette versions with the updated Nginx controller have been released. +Palette version 4.8.27 uses Nginx controller version 1.13.7. Refer to the +[release notes](../../release-notes/release-notes.md#february-5-2026---release-4827) for further information. ### Affected Deployments