🎉 Welcome to the v2.4.6 release of the kgateway project!
Release Notes
Changes since v2.4.5
Bug Fixes
- Fix repeated NotFound errors and interrupted ListenerSet status updates when the report map contains listener-set kinds handled by custom status handlers. (#14732)
- A TCPRoute or TLSRoute whose backendRef names a Backend that only works on HTTP routes (dynamicForwardProxy, aws.lambda, gcp) now reports ResolvedRefs=False with reason InvalidKind and routes to the blackhole cluster, instead of programming a cluster that can never carry traffic while reporting success. Backend plugins can declare the route kinds a backend supports via BackendObjectIR.SupportedRouteKinds. (#14738)
- An AWS Backend whose referenced Secret has an empty
accessKeyorsecretKeyis now rejected at translation time and reported on the Backend'sAcceptedcondition, instead of producing an inline credential provider that Envoy rejects (which in the default validation mode discarded the whole CDS update). Error messages now reference the actual Secret data keys (accessKey,secretKey,sessionToken). (#14742) - Fixed delegated child HTTPRoutes getting no status when their HTTPRoute parentRef omits the namespace. (#14759)
- Fixed endpoints without a locality receiving no traffic when other endpoints of the same backend have a locality. (#14788)
Dependency Updates
- Upgrade OpenTelemetry Go dependencies to address CVE-2026-81870. (#14762)
Contributors
Thanks to all the contributors who made this release possible:
Installation
The kgateway project is available as a Helm chart and docker images.
Helm Charts
The Helm charts are available at:
- oci://cr.kgateway.dev/kgateway-dev/charts/kgateway
- oci://cr.kgateway.dev/kgateway-dev/charts/kgateway-crds
Docker Images
The docker images are available at:
- cr.kgateway.dev/kgateway-dev/kgateway:v2.4.6
- cr.kgateway.dev/kgateway-dev/sds:v2.4.6
- cr.kgateway.dev/kgateway-dev/envoy-wrapper:v2.4.6
Quickstart
Try installing this release:
helm install kgateway-crds oci://cr.kgateway.dev/kgateway-dev/charts/kgateway-crds --version v2.4.6 --namespace kgateway-system --create-namespace
helm install kgateway oci://cr.kgateway.dev/kgateway-dev/charts/kgateway --version v2.4.6 --namespace kgateway-system --create-namespace
For detailed installation instructions and next steps, please visit our quickstart guide.

