Zum Inhalt springen

Elestio Release Notes

3 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Folge Elestio, um die Release Notes in deinen Feed zu holen.

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Elestio

Bitbucket wird als Quelle für Elestio CI/CD unterstützt

Bitbucket ist jetzt eine vollwertige Quelle in Elestio CI/CD, sodass jeder Push auf einen gewählten Branch die App auf einer eigenen VM automatisch neu bereitstellt.

Bitbucket + Elestio: Auto-Deploy Your Repo on Every Push

If your team lives in Bitbucket, you know how deployment usually goes. Someone writes a bitbucket-pipelines.yml that builds the app, then SSHes into a server and runs a deploy script that only one person fully understands. It works until that person goes on vacation, the SSH key gets rotated, or the server needs a security patch nobody scheduled.

Until now, Elestio's CI/CD could build and deploy straight from GitHub and GitLab, and Bitbucket users had to mirror their repos or move them. That changed this week: Bitbucket is now a first-class source in Elestio CI/CD. You connect your Bitbucket account, pick a repository and a branch, and every push to that branch redeploys your app on a VM that's yours alone. This guide walks through the setup, what happens under the hood, and the few things that trip people up.

What You Get

Elestio CI/CD builds your code on every push, the way Heroku, Render or Railway do. The difference is where it runs: on a dedicated VM in your Elestio project, not on a shared cluster. That VM can also host any of Elestio's 400+ managed open-source services, so your app, its PostgreSQL database, a Redis cache and a Keycloak login server can all live in the same project, managed the same way.

With Bitbucket support, the deployment sources are now:

Source

What it deploys

Redeploys on push

GitHub …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Elestio

Elestio Catalog Updates: 113 neue Releases (27. September – 3. Oktober 2026)

In der Woche vom 27. September bis 3. Oktober erschienen 113 stabile Releases für 47 Services im Elestio-Katalog, darunter Sicherheitspatches für Keycloak 26.7.5 und Zitadel 4.19.2.

Elestio Catalog Updates: 113 New Releases This Week (September 27 - October 3, 2026)

One hundred and thirteen stable releases shipped across 47 services in the Elestio catalog between September 27 and October 3. Most of the urgent work this week is in identity: Keycloak fixed 14 CVEs in one patch release, and Zitadel closed two account takeover bugs. If a project shipped one fix to several branches on the same day, those versions are grouped on one line.

Security alerts

Patch these first.

  • Keycloak 26.7.5 (Sept 30): 14 CVEs, 10 of them in Keycloak itself. They include an incomplete fix for the CIBA brute-force lockout bypass (CVE-2026-16103), SAML redirect binding parameter pollution (CVE-2026-18217), client secrets visible to the view-clients role (CVE-2026-89298), and device grants still issuing tokens to locked accounts (CVE-2026-88770).
  • Zitadel 4.19.2 (Sept 28): two High severity account takeovers, one through SAML identity provider confusion and one through the unsigned Login V2 session cookie. Set ZITADEL_SESSION_COOKIE_SECRET (at least 32 characters, identical on every replica) on the Login UI before you upgrade, or it reports not ready. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Elestio

Elestio Catalog Updates: 106 neue Releases (20.–26. September 2026)

In der Woche vom 20. bis 26. September erschienen 106 stabile Releases für 47 Services im Elestio-Katalog, darunter kritische Sicherheitspatches für GitLab und WordPress 7.1.2.

Elestio Catalog Updates: 106 New Releases This Week (September 20-26, 2026)

One hundred and six stable releases shipped across 47 services in the Elestio catalog between September 20 and 26. The headline is security again: GitLab pushed a critical patch for two flaws in its regular expression engine, and WordPress 7.1.2 was being exploited the day it came out. If a project shipped one fix to several branches on the same day, those versions are grouped on one line.

Security alerts

Patch these first.

  • GitLab 19.4.1 / 19.3.3 / 19.2.7 (Sept 23): a critical patch release. It fixes two Critical issues in the regular expression parser and compiler (a double free and an integer overflow), a High severity XSS in the merge request diff viewer, and an authorization gap in MCP API scope enforcement. GitLab says to upgrade immediately.
  • WordPress 7.1.2 and nine older branches down to 6.2.13 (Sept 22): fixes CVE-2026-87902 (CVSS 9.2), a path traversal in page template resolution that lets an unauthenticated attacker include a local PHP file. Exploitation attempts started the same day. …

Originalquelle(öffnet in neuem Tab)Problem melden