Skip to main content

Release Notes

tip

Looking for breaking changes that might impact your Palette upgrade? Visit the Find Breaking Changes page for a filtered view of relevant updates.

To view release notes for a specific Palette version, use the version selector below.

December 19, 2025 - Component Updates

The following components have been updated for Palette version 4.8.6 - 4.8.12.

ComponentVersion
Spectro Cloud Terraform provider0.26.2
Spectro Cloud Crossplane provider0.26.2
Palette Management Appliance4.8.12
VerteX Management Appliance4.8.12

Bug Fixes

  • Fixed an issue that caused duplicate cluster packs errors to appear when Terraform spectrocloud_cluster_profile updates triggered API validation errors.

Packs

Pack Notes

Pack NameLayerNon-FIPSFIPSNew Version
CalicoCNI3.31.2
HarborAdd-on1.18.1
IstioAdd-on1.28.1
KongAdd-on3.0.0
Prometheus AgentAdd-on27.49.0
Prometheus OperatorAdd-on79.11.0
Spectro Kubernetes DashboardAdd-on7.13.0
Ubuntu (Azure)OS22.04
Ubuntu (MAAS)OS22.04
Ubuntu (vSphere)OS22.04

December 17, 2025 - Release 4.8.12

The following component updates are applicable to this release:

Features

  • The Spectro Cloud Terraform provider and Spectro Cloud Crossplane provider now support CloudStack.

    • The spectrocloud_cloudaccount_apache_cloudstack data source supports the creation of CloudStack cloud accounts.
    • The spectrocloud_cluster_apache_cloudstack resource supports configuration and deployment of CloudStack clusters.

Improvements

  • The default timeout of Local UI JWT tokens has been reduced to 15 minutes. Additionally, tokens are now revoked upon log out.
  • The dependencies of the imageswap and imageswap-init Palette images were updated to the latest versions, ensuring that they have the latest security patches. Additionally, the ubuntu-systemd image has been removed from Palette.
  • The performance of the /clusterprofiles Palette API endpoint has been improved.

Bug Fixes

  • Fixed an issue that caused EKS clusters to fail to provision due to missing retry logic for trust policy ConfigMaps.
  • Fixed an issue that caused add-on deployments provisioned through the Spectro Cloud Crossplane provider to remain in an unrecoverable, unhealthy state following a deployment error, even after fixing the root cause.
  • Fixed an issue that prevented agent mode from retaining network configurations after boot.
  • Fixed an issue that caused an incorrect version of the palette-agent image to be referenced by the Palette ally service.
  • Fixed an issue that prevented the Delete action from correctly displaying for cluster templates in the Palette UI.
  • Fixed an issue that caused the CloudStack PCG type to appear under Tenant Settings even though it was disabled using a system administration feature flag.

Packs

Pack Notes

  • The following packs support CloudStack deployment:
    • Ubuntu 24.04
    • Palette eXtended Kubernetes versions 1.31.14, 1.32.10, and 1.33.6
    • Calico 3.30.3-rev1
    • CloudStack CSI 2.5.0
Pack NameLayerNon-FIPSFIPSNew Version
Azure DiskStorage1.33.7
External Secrets OperatorAdd-on1.1.0
GCE Persistent Disk CSIStorage1.22.4
Nvidia GPU OperatorAdd-on25.10.1
Palette eXtended KubernetesKubernetes1.33.6
Palette eXtended KubernetesKubernetes1.32.10
Palette eXtended KubernetesKubernetes1.31.14
Prometheus AgentAdd-on27.47.0
Prometheus OperatorAdd-on79.8.2
Volume Snapshot ControllerAdd-on8.4.0
vSphere CSIStorage3.6.0

December 12, 2025 - Component Updates

The following components have been updated for Palette version 4.8.6 - 4.8.9.

ComponentVersion
Palette Management Appliance4.8.10
VerteX Management Appliance4.8.10

Review the active known issues that affect this component update on the Known Issues page.

Bug Fixes

  • Fixed an issue that caused stylus to incorrectly map some image references.

December 5, 2025 - Component Updates

The following components have been updated for Palette version 4.8.6 - 4.8.9.

Improvements

Packs

Pack Notes

Pack NameLayerNon-FIPSFIPSNew Version
Amazon EFSAdd-on2.1.15
AWS Application LoadbalancerAdd-on2.16.0
AWS VPC CNIAdd-on1.20.4
Azure DiskCSI1.33.6
CalicoCNI3.31.2
Calico Network PolicyAdd-on3.31.2
KAI SchedulerAdd-on0.10.0
KubeRay OperatorAdd-on1.5.1
Open Policy AgentAdd-on3.21.0
Prometheus AgentAdd-on27.45.0
Prometheus OperatorAdd-on79.5.0
Ubuntu (GCP)OS24.04
Zot RegistryAdd-on0.1.89

December 5, 2025 - Release 4.8.9

The following component updates are applicable to this release:

Bug Fixes

  • Fixed an issue that caused Palette's cluster-management-agent service to continually restart on data center clusters due to a duplicate CloudStack cloud type introduced by Palette 4.8.6.

November 28, 2025 - Component Updates

The following components have been updated for Palette version 4.8.6 - 4.8.8.

Packs

Pack NameLayerNon-FIPSFIPSNew Version
Amazon EFSCSI2.1.14
Argo CDCSI9.1.0
External Secrets OperatorAdd-on1.0.0
GCE Persistent Disk CSICSI1.21.0
GCE Persistent Disk CSICSI1.20.2
IstioAdd-on1.28.0
KarpenterAdd-on1.8.2
NginxAdd-on1.14.0
Piraeus OperatorCSI2.10.1

November 26, 2025 - Release 4.8.8

The following component updates are applicable to this release:

Improvements

Bug Fixes

  • Fixed an issue that caused errors with the internal MongoDB database when upgrading the self-hosted Palette or VerteX installation from 4.7.29 to 4.8.6.
  • Fixed an issue that prevented Edge cluster events from being displayed in the Palette Events tab.
  • Fixed an issue that caused VerteX 4.8.6 to fail to install due to crashing LINSTOR pods.
  • Fixed an issue that caused a duplicate CloudStack cloud type to appear in the custom cloud types API endpoint after upgrading Palette to 4.8.6, resulting in API and validation conflicts.

November 22, 2025 - Release 4.8.0 - 4.8.6

The following component updates are applicable to this release:

Security Notices

Palette Enterprise

Breaking Changes

Features

  • EKS Pod Identity is now a supported authentication method for AWS cloud accounts. This secure authentication mechanism allows Kubernetes pods to assume IAM roles with temporary, automatically refreshed credentials, eliminating the need for long-lived AWS credentials.

    This method is only available for self-hosted Palette and Palette VerteX instances deployed on Amazon EKS clusters. Refer to the Add AWS Accounts guide for more information.

  • Cluster profile variables now support the multiline input type and the Base64 format. This improvement allows users to leverage cluster profile variables for use cases such as saving multiline YAML specifications and storing encoded keys for use during cluster creation.

Improvements

  • Project tags are now displayed in the Project Overview page and the Tenant Admin > Projects page in Palette. This improvement allows users to identify projects based on their tags. Refer to the Project Tags section for more information.

  • Palette now provides the ability to upgrade the vCluster version of your virtual clusters, allowing you to leverage newly introduced features without having to create new cluster groups or migrate workloads. Refer to the Upgrade Cluster Groups guide for further information.

  • Palette has now implemented a mechanism for evacuating and migrating the control planes for MAAS clusters using LXD VMs, reducing high-availability risks during host repaves. This improvement is critical for Day-2 lifecycle operations such as upgrades or repaves.

  • The Palette Management Appliance and VerteX Management Appliance now include the latest Terminal User Interface (TUI). For more details, refer to Initial Edge Host Configuration with Palette TUI.

  • Certificate renewal for clusters provisioned using Palette Optimized K3S and RKE2 can now be triggered externally from Kubernetes. This is applicable for both Edge and public cloud clusters.

Bug Fixes

  • Fixed an issue that caused Palette UI errors related to YAML marshalling when accepting cluster profile updates for cluster profiles configured using the Spectro Proxy pack.
  • Fixed an issue that prevented ipclaim resources from being deleted when repaving VMware clusters.

  • Fixed an issue that prevented the Palette UI from displaying metrics for EKS clusters due to incorrect security group rules.

  • Fixed an issue that prevented rotated IAM keys in AWS cloud accounts from being updated on deployed AWS clusters.

Edge

info

The CanvOS version corresponding to the 4.8.6 Palette release is 4.8.1.

Improvements

  • The Terminal User Interface (TUI) is now always enabled and features a new landing page that displays system information. It also adds support for configuring Virtual Local Area Networks (VLANs). The stylus.includeTui flag in user-data has been deprecated as a result of these changes. For more details, refer to Initial Edge Host Configuration with Palette TUI.

  • CanvOS now provides support for FIPS-compiled Ubuntu 22.04. This is important for users who want to enforce FIPS 140-3 compliance.

Bug Fixes

  • Fixed an issue that caused pack reconciliation to fail in locally managed Edge clusters provisioned with cluster profiles containing duplicate packs.

VerteX

Features

  • Includes all Palette features, improvements, breaking changes, and deprecations in this release. Refer to the Palette section for more details.

Automation

info

Check out the CLI Tools page to find the compatible version of the Palette CLI.

Features

Bug Fixes

Docs and Education

  • The new Find Breaking Changes for Palette Upgrades page contains an interactive component that allows users to list breaking changes between two Palette releases. Use it as guidance for upgrading dedicated SaaS or self-hosted Palette and Palette VerteX installations.

Packs

Deprecations and Removals

Pack Notes

  • The Spectro RBAC pack version 1.0.1 now supports CPU, memory, and storage resource quota specifications.
Pack NameLayerNon-FIPSFIPSNew Version
Amazon EBS CSICSI1.51.0
CalicoCNI3.31.0
CrossplaneAdd-on2.0.1
External Secrets OperatorAdd-on0.20.4
Flux2Add-on2.17.1
KgatewayAdd-on2.2.1
Prometheus AgentAdd-on27.42.1
Prometheus - GrafanaAdd-on79.0.1
ReloaderAdd-on1.4.10
Spectro RBACAdd-on1.0.1
Ubuntu (Azure)OS24.04
Ubuntu (vSphere)OS24.04