Istio
Read post

Announcing Istio 1.28.8

Istio 1.28.8 is a patch release addressing one high-severity security vulnerability and three bug fixes. The security update patches CVE-2026-47774 (CVSS 7.5), a denial-of-service vulnerability in Envoy where crafted HTTP/2 requests can exhaust memory due to improper cookie header accounting and HPACK decoding limits. Bug fixes include: TLS certificate delivery failures for HTTPS listeners using ListenerSet with manual Gateway deployment, silent dropping of HTTPRoute/GRPCRoute filters with invalid header values instead of reporting errors, and an ambient mode bug where a Service with publishNotReadyAddresses and zone/node traffic distribution preferences incorrectly propagated healthPolicy:AllowAll to unrelated Services, causing traffic to be routed to not-ready endpoints cluster-wide.

    #security#microservices#istio#service-mesh#envoy
Jun 04•2m read time•From istio.io
Post cover image
Table of contents
Security UpdateChanges
1.7K Impressions
Istio's image
Istio

Istio is an open-source service mesh platform that helps developers connect, secure, and manage micr...

50 Followers

•

229 Upvotes

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard