This update for cloudflared fixes the following issues:
Changes in cloudflared:
- Update version to 2026.5.2
* Add more information to proxy-dns removal message
* Update tail command to use /management/logs endpoint
* Add cloudflared management token command
* Fix bugs
* Update golang.org/x/net to 0.55.0 (boo#1266794, boo#1265920, CVE-2026-39821
CVE-2026-33814)
- Update version to 2026.2.0
* Fix bugs
- Update version to 2025.11.1
* bump coredns to solve CVE
* add vulncheck to cloudflared
* Remove references to cloudflare-go
* Add logging format as JSON
* Centralize UDP origin proxy dialing as ingress service
* Add virtual DNS service
* Add OriginDialerService to include TCP
* Add --dns-resolver-addrs flag
* Remove P256Kyber768Draft00PQKex curve from nonFips curve preferences
* Bump go-boring from 1.24.2 to 1.24.4
* Add metrics for virtual DNS origin
* set proper url and hostname for cloudflared tail command
* Add support for login...
Read the Full Advisory- openSUSE Leap 16.0:
cloudflared-2026.5.2-bp160.1.1
* bsc#1234582
* bsc#1239422
* bsc#1253918
* bsc#1265920
* bsc#1266794
References:
* https://www.suse.com/security/cve/CVE-2024-45337.html
* https://www.suse.com/security/cve/CVE-2025-22869.html
* https://www.suse.com/security/cve/CVE-2025-58181.html
* https://www.suse.com/security/cve/CVE-2026-33814.html
* https://www.suse.com/security/cve/CVE-2026-39821.html
Get the latest Linux and open source security news straight to your inbox.