Update GO modules dependencies (main) (major)
This MR contains the following updates:
| Package | Change | Age | Confidence |
|---|---|---|---|
| gopkg.in/yaml.v2 |
v2.4.0 -> v3.0.1
|
||
| helm.sh/helm/v3 |
v3.19.5 -> v4.1.1
|
Release Notes
helm/helm (helm.sh/helm/v3)
v4.1.1: Helm v4.1.1
Helm v4.1.1 is a patch release. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Notable Changes
- fix: fine-grained context options for waiting #31735
- fix: kstatus do not wait forever on failed resources #31730
- fix: Revert "Consider GroupVersionKind when matching resources" #31772
- fix: handle nil elements in slice copying #31751
Installation and Upgrading
Download Helm v4.1.1. The common platform binaries are here:
- MacOS amd64 (checksum / 6b8dbb03abb74e9ab8e69ca3f9b6459178be11317d0ac502f922621c05fdc866)
- MacOS arm64 (checksum / b8f49e105b1d2fd8c8a90ba3fc9af48db91d2d1ca3b9e788352fc7c896bbb71a)
- Linux amd64 (checksum / 5d4c7623283e6dfb1971957f4b755468ab64917066a8567dd50464af298f4031)
- Linux arm (checksum / e8b42ce9210ca6dc96c8dad24192544fc99ddbdf93292e25d762569156c09b85)
- Linux arm64 (checksum / 02a5fb7742469d2d132e24cb7c3f52885894043576588c6788b6813297629edd)
- Linux i386 (checksum / a5d237c606a7b520340d288a94dbd54aa7f1ab09f882221272227515b9bc4a74)
- Linux ppc64le (checksum / 080c411ba2bbed1c0a6d1c91c31c5079e23ae5db1e82ef563d5db6edbc3be2bf)
- Linux s390x (checksum / d2af312a4cfb525133ede9990daafd36381d3e000ccec32ad5ab08ba400b0ad0)
- Linux riscv64 (checksum / 2d2aa1cdd4d53cdd50204c9548ab8a696f2a0603bd04c98ec4b34cbc3294ada8)
- Windows amd64 (checksum / 665161eba861d86bdb6969aa15d0d0cac3f04ce950ca12b4ee0552d7967a61fa)
- Windows arm64 (checksum / bd73ebc89311de201d6d86fc20ced76d7f448579332c54093fc086a2279d905d)
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
This release was signed by @gjenkins8 with key BF88 8333 D96A 1C18 E268 2AAE D79D 67C9 EC01 6739, which can be found at https://keys.openpgp.org/vks/v1/by-fingerprint/BF888333D96A1C18E2682AAED79D67C9EC016739. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 4.2.0 and 3.21.0 are the next minor releases and will be on May 13, 2026
- 4.1.2 and 3.20.2 are the next patch releases and will be on March 11, 2026
Changelog
- feat(kstatus): fine-grained context options for waiting
5caf004(Matheus Pimenta) - bugfix(kstatus): do not wait forever on failed resources
2519a88(Matheus Pimenta) - Revert "Consider GroupVersionKind when matching resources"
b2c487c(Matheus Pimenta) - fix(copystructure): handle nil elements in slice copying
261387a(Philipp Born)
v4.1.0: Helm v4.1.0
Helm v4.1.0 is a feature release. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Notable Changes
- Feature: added chart name to dependency logs, namespace to resource waiting logs, and confirmation message when all resources are ready #31530
- Feature: improved plugin name validation error messages and field name detection #31491
- Feature: improved the --wait flag by allowing explicit strategy selection (including explicit --wait=hookOnly) and preventing SDK timeout errors when timeout is not specified #31421
- Feature: allow concurrent dependency build with atomic file write #30984
- Feature: added a --no-headers flag to the 'helm repo list' command, allowing users to suppress table headers in the output. Useful for scripting and automation #31448
- SDK feature: added a LoadArchive to common loader #31462
- SDK feature: introduced support for custom kstatus readers #31706
- Fixed bug where a plugin name could already be used by another command #31427
- Fixed bug where --server-side flag was not passed to install when using upgrade --install #31635
- Fixed bug where HELM_ environment variables were not passed to plugins. this fixes a regression which was blocking some getter plugins #31613
- Fixed bug where Helm test --logs failed with hook-delete-policy "hook-failed" or "hook-succeed" #31579
- Fixed kube client logging issue #31560
- Fixed regression where vendor-specific suffixes were stripped from .Capabilities.KubeVersion.GitVersion, breaking charts that detect managed Kubernetes platforms #31528
- Fixed a bug where helm uninstall with --keep-history did not suspend previous deployed releases #12564
- SDK: bump k8s API versions to v0.35.0
- docs: updated
helm templatehelp text to document --api-versions #31683 - docs: fixed documentation about default wait strategy
Installation and Upgrading
Download Helm v4.1.0. The common platform binaries are here:
- MacOS amd64 (checksum / a326073ae392bed8b73c415d1d9d6880b0f5accb18aa9456975562b44a87c650)
- MacOS arm64 (checksum / f12e2723c5e8eaff3e4b3670536867289fb6ab7f797fa2efedd1c53cfaca62fb)
- Linux amd64 (checksum / 8e7ae5cb890c56f53713bffec38e41cd8e7e4619ebe56f8b31cd383bfb3dbb83)
- Linux arm (checksum / e3aa65aded232adb56fc5b5bdd034f5ad5fa501ab0f68099d15abd93133e6006)
- Linux arm64 (checksum / 81315e404b6d09b65bee577a679ab269d6d44652ef2e1f66a8f922b51ca93f6b)
- Linux i386 (checksum / 1a7ca55d28f11cb15c5c482a29db6781a6cc75ac62e5d38447377a4987c5b9b9)
-
Linux loong64 (checksum /
BlobNotFoundThe specified blob does not exist. RequestId:4a82a5e5-801e-006f-411a-8bffc7000000 Time:2026-01-21T21:10:33.0504029Z) - Linux ppc64le (checksum / 6cb5ad5fb790e63056b71210f0a50566f4faf85709a49f17407c331f6923db56)
- Linux s390x (checksum / 109a32040f7325ef44234c594a1b7883b94ce37ba1f0ca7c5fa8452254bd71b8)
- Linux riscv64 (checksum / 944cfc9aea67db27eb46e52126ca4acee0cd416f0314369bf3364c77a13a7803)
- Windows amd64 (checksum / 48b527c52c0ea4b33436536b4accefc2cfe1665f6f0520c5b72e478338551833)
- Windows arm64 (checksum / 257f3ff25187d66208d08cabf063df7245ed72430436d7ca971ff9bd3fe0bc64)
This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @scottrigby keybase account. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 4.1.1 and 3.20.1 are the next patch releases, scheduled for March 11, 2026
- 4.2.0 and 3.21.0 are the next minor releases, scheduled for May 13, 2026
Changelog
- Update pkg/kube/statuswait.go
f46f1ce(Evans Mungai) - pkg/kube: introduce support for custom kstatus readers
59ece92(Matheus Pimenta) - chore(deps): bump golang.org/x/term from 0.38.0 to 0.39.0
de0becd(dependabot[bot]) - chore(deps): bump golang.org/x/text from 0.32.0 to 0.33.0
46e5264(dependabot[bot]) - fix(release): fix test compilation error
e751a70(Evans Mungai) - Suppress SC2154 without changing behavior
9125b84(Sarfraj Khan) - chore(deps): bump github.com/foxcpp/go-mockdns from 1.1.0 to 1.2.0
0e0c02e(dependabot[bot]) - Lint sync-repo.sh with ShellCheck
d4a2787(sarfraj89) - chore: move Evans Mungai from triage to maintainers
fd090cc(Evans Mungai) - Replace reflect.Ptr with reflect.Pointer
2d6d9c0(Mads Jensen) - fix: typo in the function names
138f730(Gergely Brautigam) - Add documentation for --api-versions flag in template command
c7cc77b(majiayu000) - Fixing failing tests for cli-tools update
fe1c749(Matt Farina) - chore(deps): bump github.com/fluxcd/cli-utils
5e82698(dependabot[bot]) - Replace deprecated
NewSimpleClientseta15db7f(George Jenkins) - docs(README): add mise alternate installation documentation
04198dc(jylenhof) - enable exhaustive linter
9a898af(Brenden Ehlers) - fix: add default casess to switch statements
1c119bc(Brenden Ehlers) - build: set kube version via
debug.BuildInfoc6d9a5b(Branch Vincent) - chore(deps): bump github.com/tetratelabs/wazero from 1.10.1 to 1.11.0
97cde79(dependabot[bot]) - chore(deps): bump github.com/BurntSushi/toml from 1.5.0 to 1.6.0
9123143(dependabot[bot]) - doc: update based on review suggestion
55a4aed(Deepak Chethan) - test(statuswait): fix Copilot code review suggestion for goroutine in tests
d6b35ce(Mohsen Mottaghi) - test(statuswait): add more tests suggested by Copilot code review
a1543d5(Mohsen Mottaghi) - test(statuswait): add some tests for statuswait
dd44f4e(Mohsen Mottaghi) - fix: use namespace-scoped watching to avoid cluster-wide LIST permissions
3dd54ed(Mohsen Mottaghi) - fix(doc): Update default wait strategy
f92ae18(Deepak) - Update to use slog
9772037(tison) - Fix TestCliPluginExitCode
3c6557d(tison) - Check plugin name is not used
5196b84(tison) - chore(deps): bump github.com/fluxcd/cli-utils
364a7aa(dependabot[bot]) - Fix
TestConcurrencyDownloadIndextypo592815e(George Jenkins) - Use errors.Is to check for io.EOF and gzip.ErrHeader
a490bb3(Mads Jensen) - chore(deps): bump actions/upload-artifact from 4.6.2 to 6.0.0
09ae0d4(dependabot[bot]) - chore(deps): bump the k8s-io group with 7 updates
1f8e84d(dependabot[bot]) - chore(deps): bump golang.org/x/crypto from 0.45.0 to 0.46.0
e9a0510(dependabot[bot]) - chore: fix some comments to improve readability
858cf31(wangjingcun) - chore(deps): bump golang.org/x/text from 0.31.0 to 0.32.0
7fb1728(dependabot[bot]) - feat: move TerryHowe triage to maintainers
e900a25(Terry Howe) - Use latest patch release of Go in releases
8f636b5(Matt Farina) - chore(deps): bump github.com/rubenv/sql-migrate from 1.8.0 to 1.8.1
ea52f87(dependabot[bot]) - fix(upgrade): pass --server-side flag to install when using upgrade --install
2dc581d(Evans Mungai) - chore(deps): bump github.com/spf13/cobra from 1.10.1 to 1.10.2
a9bbffb(dependabot[bot]) - chore(deps): bump golang.org/x/term from 0.37.0 to 0.38.0
d195cfa(dependabot[bot]) - Run the vulnerability check on MR that change the file
24a8258(Matt Farina) - Fix govulncheck in CI
bc9462f(Matt Farina) - Update the govulncheck.yml to run on change
b825a18(Matt Farina) - Enable the sloglint linter
a18e59e(Mads Jensen) - fix(cli): handle nil config in EnvSettings.Namespace()
8534663(Zadkiel AHARONIAN) - fix(getter): pass settings environment variables
119341d(Zadkiel AHARONIAN) - fixes comment in install.go
a109ac2(Stephanie Hohenberg) - chore(deps): bump actions/stale from 10.1.0 to 10.1.1
581ab1a(dependabot[bot]) - chore(deps): bump golangci/golangci-lint-action from 9.1.0 to 9.2.0
e62bf7f(dependabot[bot]) - fixes tests after merge
2f598ff(Stephanie Hohenberg) - fixes lint issue
bb9356e(Stephanie Hohenberg) - updates tests after rebase from master
8cf4ad7(Stephanie Hohenberg) - Add tests to action package to improve coverage
31131cf(Stephanie Hohenberg) - chore(deps): bump actions/checkout from 6.0.0 to 6.0.1
e6b2068(dependabot[bot]) - Inform we use a different golangci-lint version than the CI
faa8912(Benoit Tigeot) - Deal with golint warning with private executeShutdownFunc
45c5f3a(Benoit Tigeot) - Use length check for MetaDependencies instead of nil comparison
b33d4ae(Calvin Bui) - Code review
70fc5f9(Benoit Tigeot) - Fix linting issue
9f1c8a2(Benoit Tigeot) - Update pkg/action/hooks.go
6bb5bcc(Michelle Fernandez Bieber) - added check for nil shutdown
d930144(Michelle Fernandez Bieber) - cleaned up empty line
7a61ebf(Michelle Fernandez Bieber) - updated comment and made defer of shutdown function return errors as before and not the possible shutdown error
1071477(Michelle Fernandez Bieber) - added shutdown hook that is executed after the logs have been retrieved
7a55758(Michelle Fernandez Bieber) - chore: fix typo in pkg/downloader/chart_downloader.go
e71a29c(megha1906) - Bump required go version (
go.modversion)b859163(George Jenkins) - Use modernize to use newer Golang features.
6cceead(Mads Jensen) - Remove two redundant if-checks.
380abe2(Mads Jensen) - Fix kube client logging
936cd32(Matt Farina) - chore(deps): bump golangci/golangci-lint-action from 9.0.0 to 9.1.0
cb35947(dependabot[bot]) - chore(deps): bump actions/checkout from 5.0.1 to 6.0.0
4fddc64(dependabot[bot]) - chore(deps): bump actions/setup-go from 5.5.0 to 6.1.0
b87f2da(dependabot[bot]) - fix: prevent segmentation violation on empty yaml in multidoc
81d244c(Benoit Tigeot) - fix: prevent reporting fallback on version when none specified
40e22de(Benoit Tigeot) - chore(deps): bump golang.org/x/crypto from 0.44.0 to 0.45.0
c2405ce(dependabot[bot]) - chore(deps): bump github.com/cyphar/filepath-securejoin
28baa97(dependabot[bot]) - bump version to 4.1
63e060f(Matt Farina) - fix: add missing context to debug logs
2dc5864(shuv0id) - fix: preserve vendor suffixes in KubeVersion.GitVersion
ce273ee(Benoit Tigeot) - chore(deps): bump actions/checkout from 5.0.0 to 5.0.1
f6ceae9(dependabot[bot]) - fixup test
f8a49f1(George Jenkins) - logs
a9cdc78(George Jenkins) - fix
b1a9760(George Jenkins) - chore: add warning for registry login with namespace
5f3c617(Terry Howe) - style: linting
71591ee(Benoit Tigeot) - test: split tests between valid and invalid
b296cbe(Benoit Tigeot) - test: convert tests to table drive tests
9b242dd(Benoit Tigeot) - test: refactor TestMetadataLegacyValidate to be more generic
c81a09b(Benoit Tigeot) - update tests
8c87024(yxxhero) - fix: Use server-side apply for object create during update
18616e6(George Jenkins) - Copy adopted resource info
855ebb6(George Jenkins) - Refactor environment variable expansion in PrepareCommands and update tests
2d49f0c(yxxhero) - fix: correct LDFLAGS path for default Kubernetes version
b6a8c65(Benoit Tigeot) - fix: improve plugin name validation err messages early via unmarshalling
acf331a(Benoit Tigeot) - fix: Make invalid name error message more similar and move tests
9e1e3d2(Benoit Tigeot) - fix: focus only on plugin name but give more info about what we get
cf077ce(Benoit Tigeot) - Make validation error similar and explicit for both metadatas
f4b139a(Benoit Tigeot) - fix: improve plugin name validation error messages
c04e18e(Benoit Tigeot) - Fix syntax errors in the document
faa0adc(Fish-pro) - chore(deps): bump the k8s-io group with 7 updates
c81e267(dependabot[bot]) - docs: Fix LFX Health Score badge URL in README.md
40856bf(Michael Crenshaw) - chore(deps): bump golang.org/x/crypto from 0.43.0 to 0.44.0
fb82e0e(dependabot[bot]) - chore(deps): bump github.com/tetratelabs/wazero from 1.9.0 to 1.10.1
72a84fb(dependabot[bot]) - Publish Helm v4 ->
helm-latest-versione4353dc(George Jenkins) - Adding script to download Helm v4
5ae8586(Matt Farina) - chore(deps): bump golang.org/x/term from 0.36.0 to 0.37.0
6cd0bf8(dependabot[bot]) - refactor: use strings.Builder to improve performance
d8c4040(promalert) - chore(deps): bump sigs.k8s.io/kustomize/kyaml from 0.20.1 to 0.21.0
0089a07(dependabot[bot]) - chore(deps): bump golangci/golangci-lint-action from 8.0.0 to 9.0.0
7a85358(dependabot[bot]) - Update pkg/cmd/flags.go
02312a1(Benoit Tigeot) - Error strategy list match help
277c140(Benoit Tigeot) - Prevent surprising failure with SDK when timeout is not set
5f6fa43(Benoit Tigeot) - Do not change the default waiting strategy when --wait is not set
52a2828(Benoit Tigeot) - Provide more help for SDK user when setting up WaitStrategy
1112865(Benoit Tigeot) - Avoid confusion between
--wait(watcher) and no --wait (hookOnly)8535e9f(Benoit Tigeot) - The default is not HookOnlyStrategy but WaitStrategy
1836f37(Benoit Tigeot) - Make wait strategy selection more obvious
a5e110f(Benoit Tigeot) - Update pkg/cmd/flags.go
e8b0cff(Benoit Tigeot) - Increase documentation of --wait flag
95e1ee1(Benoit Tigeot) - While testing SDK features for v4. I was surprised with the error:
5cbd9b3(Benoit Tigeot) - fix: do not run release workflow on forks
d93ef03(Terry Howe) - Convert pkg/cmd/load_plugins.go to slog
6de83c5(saimanojk1) - Rename copilot-instructions.md to AGENTS.md
caff03f(Yarden Shoham) - fix(rollback):
errors.Isinstead of string compd158708(Hidde Beydals) - fix(uninstall): supersede deployed releases
2f1ecc7(Hidde Beydals) - for remaining local variable case inconsistency
4576a81(tison) - Properly test error messages on pull command's test
ed6cf0e(Benoit Tigeot) - Adding a LoadArchive to common loader
0f5eda7(Matt Farina) - for all other similar cases
90d0191(tison) - chore(deps): bump github.com/cyphar/filepath-securejoin
21af58b(dependabot[bot]) - chore(deps): bump sigs.k8s.io/controller-runtime from 0.22.3 to 0.22.4
60aaa8a(dependabot[bot]) - chore: increase logging package test coverage
558cea7(Evans Mungai) - feat(repo): add --no-headers option to 'helm repo list'
6ef79bb(Paul Van Laer) - chore: fix typo of public field
0d6de28(tison) - rename interface{} to any
ffb3940(Terry Howe) - test: protect unknown hook delete policies
269a32a(Marcin Owsiany) - chore: replace github.com/mitchellh/copystructure
bee9c1a(Terry Howe) - fix: Fix Helm v4 release distribtion/get-helm-3 script
d5d1ea3(George Jenkins) - fix test
ae4af69(Artem Vdovin) - Make test scripts run without /bin/bash
6181e0a(Tom Wieczorek) - Ignore duplicated URN in logs
8025a39(Benoit Tigeot) - jsonschema: warn and ignore unresolved URN $ref to match v3.18.4
03bb62f(Benoit Tigeot) - chore: delete unused var in installer.go
8068578(zyfy29) - fix: assign KUBECONFIG environment variable value to env.Kubeconfig
b25fa86(LinPr) - add concurrency test on write & load index file
118d0eb(Artem Vdovin) - update writing index files to writeAtomicFile
314bd19(Artem Vdovin) - fix index concurrency
351bb78(Artem Vdovin)
v4.0.5: Helm v4.0.5
Helm v4.0.5 is a patch release. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Notable Changes
- Fixed bug where helm uninstall with --keep-history did not suspend previous deployed releases #12556
- Fixed rollback error when a manifest is removed in a failed upgrade #13437
- Fixed check to ensure CLI plugin does not load with the same name as an existing Helm command
- Fixed helm test --logs failure with hook-delete-policy "hook-failed" or "hook-succeed" #9098
- Fixed a bug where empty dependency lists were incorrectly treated as present
- Fixed a bug where the watch library did not only watch namespaces associated with the objects
- Fixed regression in downloader plugins environment variables #31612
- Fixed bug where --server-side flag is not respected with helm upgrade --install #31627
- For SDK users: exposed KUBECONFIG to env
Installation and Upgrading
Download Helm v4.0.5. The common platform binaries are here:
- MacOS amd64 (checksum / 270d906140eadbe95584d2cebae1fa0e46950027d82de0c4db937dc936b564a6)
- MacOS arm64 (checksum / b4d04ccf68004604e13878fce4a893711490914512f8759879f848136a9f5fca)
- Linux amd64 (checksum / 730e4e9fbff94168249ddd0b9b1b8c357b7f64815462dd88c6b39f09bf18b814)
- Linux arm (checksum / 812668560e720248dc166226c94b8280d54168711eeb4b9d5eb991ed5a30ba36)
- Linux arm64 (checksum / 206a7747702d13994a93629eaed4259bd9d0aec6e23ca52d640f47f7edfdc863)
- Linux i386 (checksum / fd0e09cb0468984ab21fa78f7c214408624277face6555b010179494a555c02d)
-
Linux loong64 (checksum /
BlobNotFoundThe specified blob does not exist. RequestId:258042f6-701e-0026-72aa-85bd2c000000 Time:2026-01-14T23:09:05.0367123Z) - Linux ppc64le (checksum / c1e0d6e781a574cebfb8b0b77885523165f4088e23ff7e6cecf69d5f5fbfb89b)
- Linux s390x (checksum / 9d4210cfccb9fa17e6aac9fb9c13d24836dab5859a542a230d14d129ed55e6a2)
- Linux riscv64 (checksum / 7f55782db0b2f16d7c9bc134eee521d0fce321ae8dbe1f1884f82160486362e2)
- Windows amd64 (checksum / 44035d49d9e7d93c249cef0a056f464c05c8638d074e651d586481e4d4d0208b)
- Windows arm64 (checksum / 45efc334dd5a2e9cae4aed333e9d638baec80c4cedd11a7669fe215991a69eb2)
This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @scottrigby keybase account. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 4.1.0 and 3.20.0 is the next minor releases and will be on January 21, 2026
- 4.1.1 and 3.20.1 are the next patch releases and will be on March 11, 2026
Changelog
- fix(upgrade): pass --server-side flag to install when using upgrade --install
1b6053d(Evans Mungai) - fix(cli): handle nil config in EnvSettings.Namespace()
1e3ee1d(Zadkiel AHARONIAN) - fix(getter): pass settings environment variables
31bd995(Zadkiel AHARONIAN) - test(statuswait): fix Copilot code review suggestion for goroutine in tests
41a6b36(Mohsen Mottaghi) - test(statuswait): add more tests suggested by Copilot code review
2a2e6f7(Mohsen Mottaghi) - test(statuswait): add some tests for statuswait
3818c02(Mohsen Mottaghi) - fix: use namespace-scoped watching to avoid cluster-wide LIST permissions
66cab24(Mohsen Mottaghi) - Use length check for MetaDependencies instead of nil comparison
abf2007(Calvin Bui) - Deal with golint warning with private executeShutdownFunc
4b3de18(Benoit Tigeot) - Code review
3212770(Benoit Tigeot) - Fix linting issue
417aae9(Benoit Tigeot) - Update pkg/action/hooks.go
6c838b4(Michelle Fernandez Bieber) - added check for nil shutdown
c5d87f2(Michelle Fernandez Bieber) - cleaned up empty line
53175b7(Michelle Fernandez Bieber) - updated comment and made defer of shutdown function return errors as before and not the possible shutdown error
d2df1ab(Michelle Fernandez Bieber) - added shutdown hook that is executed after the logs have been retrieved
5b223de(Michelle Fernandez Bieber) - Fix TestCliPluginExitCode
e845b68(tison) - Check plugin name is not used
30bfd57(tison) - Fix rollback for missing resources
0fd2c41(Feruzjon Muyassarov) - fix: assign KUBECONFIG environment variable value to env.Kubeconfig
b456e27(LinPr) - fix(rollback):
errors.Isinstead of string compe2021f8(Hidde Beydals) - fix(uninstall): supersede deployed releases
af7c153(Hidde Beydals)
v4.0.4: Helm v4.0.4
Helm v4.0.4 is a security fix for a Go CVE in the previous tag. This patch release rebuilds the Helm v4.0.2 release with the latest Go toolchain, to fix the Go CVE. Users are encouraged to upgrade. Note that tag v4.0.3 was skipped due to a build failure.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Installation and Upgrading
Download Helm v4.0.4. The common platform binaries are here:
- MacOS amd64 (checksum / 73bcfd6ab000fdc95acf9fe1c59e8e47179426a653e45ae485889869d4a00523)
- MacOS arm64 (checksum / a7ea99937a9679b3935fa0a2b70e577aa1ea84e5856e7c0821ca6ffa064ea976)
- Linux amd64 (checksum / 29454bc351f4433e66c00f5d37841627cbbcc02e4c70a6d796529d355237671c)
- Linux arm (checksum / 9255732e31b5aa5ee7b55be8497eea4723e3dfb08a63c37603ae0d15a9a9d82c)
- Linux arm64 (checksum / 16b88acc6503d646b7537a298e7389bef469c5cc9ebadf727547abe9f6a35903)
- Linux i386 (checksum / e6dbf45313bab48e51a2b7a5f3271a19bb3d8b9f07b4bb48ba342389d902af53)
-
Linux loong64 (checksum /
BlobNotFoundThe specified blob does not exist. RequestId:11673868-901e-003e-10cd-6b624b000000 Time:2025-12-13T01:15:26.0922049Z) - Linux ppc64le (checksum / c108d181a0e29dadf281fbb4f4a0e0f2149922b119ec745ced1a5ae6f0918703)
- Linux s390x (checksum / cdf172c59379f0a3fe1db4743c16f122745fdaaebb2fbbfa40ce5722a4787717)
- Linux riscv64 (checksum / 2cf1c77d993bf5386e85249007bdaf38358d2516b18454212206a81b132e1330)
- Windows amd64 (checksum / 135bffadd3c87aff8856e06efb366bea2a48ac4d1742d73af80250410246f14d)
- Windows arm64 (checksum / b65d05f15260e78311f463773f54fe68f6d74444b3c3e84cecf270cdb927cd8a)
This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @scottrigby keybase account. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 3.19.5 and 4.0.5 are the next patch releases and will be on January 14, 2026
- 3.20.0 and 4.1.0 is the next minor releases and will be on January 21, 2026
Changelog
- Bump v4.0.2 CVE deps
cd700e0(George Jenkins) - Use latest patch release of Go in releases
9db13ee(Matt Farina)
v4.0.2: Helm v4.0.2
Helm v4.0.2 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Installation and Upgrading
Download Helm v4.0.2. The common platform binaries are here:
- MacOS amd64 (checksum / 1dd2ce37855f5380abc86d56ab38387d4f1b8b05be296760addfe32d7c56a393)
- MacOS arm64 (checksum / fed6a23bba5db8a21e40175f44c159e057b26a6361f4280e24c820d0841e150b)
- Linux amd64 (checksum / 980756a9b2fd501a1d6ddd1b21741678875df005c91bb05bb41093988bb83bb7)
- Linux arm (checksum / 24ba97abd1d62194c75293f775f80a342feff872aa5f00df55dd73a47cd9cb8f)
- Linux arm64 (checksum / 3de681b463fb783f49f5ab72d700c057124ef73fa74062624b8fe95deafded4b)
- Linux i386 (checksum / f9d369d25e4b2a2f1c830633f45d4a6d63a61c6a297cc25609888c260c979b96)
- Linux ppc64le (checksum / 374cfb13ec692654cd16f1aac2aa82b0092ac5c12a13809184e9fae61073a830)
- Linux s390x (checksum / b56b77d5a0921bb53a8190e60b520c2e72a58581cb15c38b0d08cc9a238edffd)
- Linux riscv64 (checksum / 48f2366775dff3b0f40d931e0300e1d7068b06accfe21588ab742f521a3aa12f)
- Windows amd64 (checksum / 3a160ca07a0da72bf872601116ed1363120c3fe1d48afb0bb7f53bbba4673f7f)
- Windows arm64 (checksum / dd94baf0ceb0dced8615343ed7a7b1cd5543996a8177866ead3f8a9ce60c8d14)
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 3.20.0 and 4.1.0 is the next minor releases and will be on January 21, 2026
Changelog
- fix: prevent reporting fallback on version when none specified
94659f2(Benoit Tigeot) - fix: prevent segmentation violation on empty yaml in multidoc
2dd1f66(Benoit Tigeot) - Ignore duplicated URN in logs
bbad438(Benoit Tigeot) - jsonschema: warn and ignore unresolved URN $ref to match v3.18.4
bdcf920(Benoit Tigeot) - Publish Helm v4 ->
helm-latest-version9ac7c2b(George Jenkins) - fix: Fix Helm v4 release distribtion/get-helm-3 script
0bef6bd(George Jenkins)
v4.0.1: Helm v4.0.1
Helm v4.0.1 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Installation and Upgrading
Download Helm v4.0.1. The common platform binaries are here:
- MacOS amd64 (checksum / a8d1ca46c3ff5484b2b635dfc25832add4f36fdd09cf2a36fb709829c05b4112)
- MacOS arm64 (checksum / 8e0b9615cf72a62faaa0cfc0e22115f05bcddfd3d7ee58406ef97bc1ba563ae8)
- Linux amd64 (checksum / e0365548f01ed52a58a1181ad310b604a3244f59257425bb1739499372bdff60)
- Linux arm (checksum / b946401f857de078c744990188f8f664ecb1c72cdafde1ed239020fa3bb2fc3c)
- Linux arm64 (checksum / 959fa52d34e2e1f0154e3220ed5f22263c8593447647a43af07890bba4b004d1)
- Linux i386 (checksum / 6a358de71c8dc2cf4a7946930ff9a70a7a3716531e64093a88182f64bdaea5a3)
- Linux ppc64le (checksum / 29ef01eed29b3ba676cf6db45dc90b50e07f2b5ec4b1ea40071326bff4922a4e)
- Linux s390x (checksum / ecf11996bd01a483eca01aa258a58f9e3b3d8e732cd5c84d6975d51ab2abf538)
- Linux riscv64 (checksum / e9a1ce6aa004027ba0349982279b0ecab847ddc51b961b963e64eb800de3ec6c)
- Windows amd64 (checksum / a976ee9f3016ae86d8948c0a6d3fc5ed7489cd264cffdbff4860bd97120bd256)
- Windows arm64 (checksum / 5ecbcd8e50577a325e22d365cd4c4de2e2bd014d81f73b356dbd4f7e6c2427fb)
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 3.19.3 and 4.0.2 are the next patch releases and will be on December 10, 2025
- 3.20.0 and 4.1.0 is the next minor releases and will be on January 21, 2026
Changelog
- Copy adopted resource info
12500dd(George Jenkins) - fixup test
1cf3841(George Jenkins) - logs
32e2d08(George Jenkins) - fix
4b6472f(George Jenkins) - fix: Use server-side apply for object create during update
9dfe3b3(George Jenkins) - Fix kube client logging
861adc2(Matt Farina) - update tests
b2f7872(yxxhero) - Refactor environment variable expansion in PrepareCommands and update tests
77f97a1(yxxhero) - Fix syntax errors in the document
a156195(Fish-pro) - fix: correct LDFLAGS path for default Kubernetes version
2c0dcda(Benoit Tigeot)
v4.0.0: Helm v4.0.0
The Helm Team is proud to announce the first stable release of Helm 4.
New Features
Helm 4 has numerous new features, but a few deserve highlighting here:
- Redesigned plugin system that supports Web Assembly based plugins
- Post-renderers are now plugins
- Server side apply is now supported
- Improved resource watching, to support waiting, based on kstatus
- Local Content-based caching (e.g. for charts)
- Logging via slog enabling SDK logging to integrate with modern loggers
- Reproducible builds of chart archives
- Updated SDK API including support for multiple chart API versions (new experimental v3 chart API version coming soon)
For full release notes, please see: https://helm.sh/docs/overview/
Compatibility with Helm v3
Helm v4 is a major version with backward incompatible changes including to the flags and output of the Helm CLI and to the SDK.
Please evaluate the changes to your workflows. The changes are not as extensive as those from Helm v2 to v3, with the goal that the majority of workflows remain compatible between Helm v3 and v4.
Helm charts apiVersion v2 (majority of today's charts) will continue to be supported in Helm v4. Existing charts should continue to install, upgrade, and otherwise work. Please test the installation and upgrade of charts to ensure it works as expected. Changes (e.g., server side apply) may impact the experience.
Community
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Installation and Upgrading
Download Helm v4.0.0. The common platform binaries are here:
- MacOS amd64 (checksum / 125233cf943e6def2abc727560c5584e9083308d672d38094bae1cc3e0bfeaa2)
- MacOS arm64 (checksum / 4f5d367af9e2141b047710539d22b7e5872cdaef788333396077236feb422419)
- Linux amd64 (checksum / c77e9e7c1cc96e066bd240d190d1beed9a6b08060b2043ef0862c4f865eca08f)
- Linux arm (checksum / 23498ff8f5fb358ad2576269cd41fa9a54b9469332806dff0d689470323180be)
- Linux arm64 (checksum / 8c5c77e20cc29509d640e208a6a7d2b7e9f99bb04e5b5fbe22707b72a5235245)
- Linux i386 (checksum / eda0b6508def454ba07e2f938c55f73be795e7f99552078ccc8af2c2bbd58a45)
- Linux ppc64le (checksum / 73ae83e9888aafa0e9c57a1d4d77dcb6c97c253ef175a4983a8bb4bcc771d2eb)
- Linux s390x (checksum / 9c7368b18c76fcae9e0281e1ee875ea0d9b5970ac3a00c4eb963205948594bad)
- Linux riscv64 (checksum / a688c2559c57d6a858c49b9237b7d6bbce5c634aa5204c4342bdc8a06818b9f1)
- Windows amd64 (checksum / 0f9a8c891b8d908a37fbb68f12dea92b633eb29e49070bd650f5760a1a99aa8d)
- Windows arm64 (checksum / f3ff262427547cc1b1dc3356d587ed8ffaa23f2abf24bc06660a350b9b7925f9)
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 3.19.3 and 4.0.1 are the next patch releases and will be on December 10, 2025
- 3.20.0 and 4.1.0 is the next minor releases and will be on January 21, 2026
Thank You!
The Helm project has enjoyed code contributions from many community members. Many more community members have assisted by filing issues and working with us to identify and eliminate bugs while adding new features. The #helm-users slack channel has long been a friendly and open forum for getting help and learning more about Helm. We cannot thank you enough for making this a helpful, friendly, and welcoming community for all.
v3.20.0: Helm v3.20.0
Helm v3.20.0 is a feature release. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
- Join the discussion in Kubernetes Slack:
- for questions and just to hang out
- for discussing MRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
- Test, debug, and contribute charts: ArtifactHub/packages
Notable Changes
- SDK: bump k8s API versions to v0.35.0
- v3 backport: Fixed a bug where helm uninstall with --keep-history did not suspend previous deployed releases #12564
- v3 backport: Bump Go version to v1.25
Installation and Upgrading
Download Helm v3.20.0. The common platform binaries are here:
- MacOS amd64 (checksum / 724aef60f737ca73cfcc77924219dbfb229dde8492b2722cb372da617fd77367)
- MacOS arm64 (checksum / 1cb8022ef9c88026adf236cbdf02a80bf7678632d1c39d3d8045e815959ab20e)
- Linux amd64 (checksum / dbb4c8fc8e19d159d1a63dda8db655f9ffa4aac1b9a6b188b34a40957119b286)
- Linux arm (checksum / e66b9bcb51130f372b4750b2da83679e59d04633bfa825a1936c0b1039035bf0)
- Linux arm64 (checksum / bfb14953295d5324d47ab55f3dfba6da28d46c848978c8fbf412d4271bdc29f1)
- Linux i386 (checksum / e8e39f6df8b1c6d9d0f98f658d619c22c5a249a72975510d367def5e19adc7eb)
- Linux ppc64le (checksum / 3a44cf2df45274f907743997b9cef069e94589238324cf5116f9a3c092c743bf)
- Linux s390x (checksum / f38b6bb56db05fb7da82668d0cc82470a07fe17a5f881378d536cee68384c974)
- Linux riscv64 (checksum / b4336a2bf9b9a914897cb36b4343d4fd583cb4703dc2478d696a667391f30f2c)
- Windows amd64 (checksum / f9c7f686788d7b78775d3a3592fd98596aa825010cb9d157c9fbe3baabee1084)
- Windows arm64 (checksum / 4095cb1c46e29e9a7487fdbbee384d14656d3fa43dd8ef789061db6e29f0457b)
This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @scottrigby keybase account. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.
What's Next
- 4.1.1 and 3.20.1 are the next patch releases, scheduled for March 11, 2026
- 4.2.0 and 3.21.0 are the next minor releases, scheduled for May 13, 2026
Changelog
- bump version to v3.20
f6e17f6(Scott Rigby) - chore(deps): bump golang.org/x/text from 0.32.0 to 0.33.0
4f5a655(dependabot[bot]) - chore(deps): bump golang.org/x/term from 0.38.0 to 0.39.0
65c504a(dependabot[bot]) - chore(deps): bump github.com/foxcpp/go-mockdns from 1.1.0 to 1.2.0
f3b8af4(dependabot[bot]) - chore(deps): bump the k8s-io group with 7 updates
89c2c61(dependabot[bot]) - [dev-v3] Replace deprecated
NewSimpleClientset526076e(George Jenkins) - [dev-v3] Bump Go v1.25,
golangci-lintv20ae8e4f(George Jenkins) - chore(deps): bump github.com/BurntSushi/toml from 1.5.0 to 1.6.0
e0d2595(dependabot[bot]) - chore(deps): bump github.com/containerd/containerd from 1.7.29 to 1.7.30
858acb1(dependabot[bot]) - fix(rollback):
errors.Isinstead of string comp0cd9a60(Hidde Beydals) - fix(uninstall): supersede deployed releases
8bb0b37(Hidde Beydals) - Use latest patch release of Go in releases
930ba6f(Matt Farina) - chore(deps): bump the k8s-io group with 7 updates
582211c(dependabot[bot]) - chore(deps): bump golang.org/x/crypto from 0.45.0 to 0.46.0
585c25c(dependabot[bot]) - chore(deps): bump golang.org/x/text from 0.31.0 to 0.32.0
6f17d46(dependabot[bot]) - chore(deps): bump golang.org/x/term from 0.37.0 to 0.38.0
46ff427(dependabot[bot]) - chore(deps): bump github.com/spf13/cobra from 1.10.1 to 1.10.2
28b813a(dependabot[bot]) - chore(deps): bump github.com/rubenv/sql-migrate from 1.8.0 to 1.8.1
5dde5d6(dependabot[bot]) - chore(deps): bump golang.org/x/crypto from 0.44.0 to 0.45.0
362900b(dependabot[bot]) - chore(deps): bump github.com/cyphar/filepath-securejoin
ec61de5(dependabot[bot]) - chore(deps): bump the k8s-io group with 7 updates
a490607(dependabot[bot]) - chore(deps): bump golang.org/x/text from 0.30.0 to 0.31.0
8509bcc(dependabot[bot]) - chore(deps): bump golang.org/x/crypto from 0.43.0 to 0.44.0
d495a94(dependabot[bot]) - Remove dev-v3
helm-latest-versionpublish01dc6cc(George Jenkins) - chore(deps): bump golang.org/x/term from 0.36.0 to 0.37.0
6647f84(dependabot[bot]) - chore(deps): bump github.com/containerd/containerd from 1.7.28 to 1.7.29
b548118(dependabot[bot]) - Revert "pkg/registry: Login option for passing TLS config in memory"
6a67b55(Scott Rigby) - chore(deps): bump github.com/cyphar/filepath-securejoin
6d4f8c0(dependabot[bot]) - jsonschema: warn and ignore unresolved URN $ref to match v3.18.4
3f0da15(Benoit Tigeot) - Fix
helm pulluntar dir check with repo urlse5e101c(Luna Stadler) - chore(deps): bump golang.org/x/crypto from 0.42.0 to 0.43.0
6aae923(dependabot[bot]) - chore(deps): bump github.com/gofrs/flock from 0.12.1 to 0.13.0
1900c6a(dependabot[bot]) - chore(deps): bump golang.org/x/text from 0.29.0 to 0.30.0
43e9297(dependabot[bot]) - chore(deps): bump github.com/cyphar/filepath-securejoin
d347e2b(dependabot[bot]) - [backport] fix: get-helm-3 script use helm3-latest-version
bd337b4(George Jenkins) - pkg/registry: Login option for passing TLS config in memory
b80959f(Matheus Pimenta) - chore(deps): bump the k8s-io group with 7 updates
1ac9d34(dependabot[bot]) - Fix deprecation warning
9a366b4(Benoit Tigeot) - chore(deps): bump golang.org/x/crypto from 0.41.0 to 0.42.0
0c5a17e(dependabot[bot]) - chore(deps): bump golang.org/x/term from 0.34.0 to 0.35.0
b999021(dependabot[bot]) - Avoid "panic: interface conversion: interface {} is nil"
2fe49f9(Benoit Tigeot) - bump version to v3.19.0
c3610ab(Scott Rigby) - chore(deps): bump github.com/spf13/pflag from 1.0.7 to 1.0.10
73b449f(dependabot[bot]) - fix: set repo authorizer in registry.Client.Resolve()
ffbc537(Eric Stroczynski) - fix null merge
f0b699e(Ben Foster) - Add timeout flag to repo add and update flags
79a9cc5(Reinhard Nägele)
Configuration
- If you want to rebase/retry this MR, check this box
This MR has been generated by Renovate Bot.