v1.16.2
2026-05-20T08:52:22Z•00207eb6fdf98423363c82c8f0f20da6c5e4cd67d3123271111880481e9571fd
denial-of-servicedependency-upgradegologgingopaopen-policy-agentplugin-managerregressionrelease-notesvulnerability-fix
What happened
Open Policy Agent (OPA) release notes covering v1.13.2 through v1.16.2. Key security-relevant points: v1.16.2 updates the Go toolchain used to build OPA to Go 1.26.3 to address a number of Go standard-library vulnerabilities; v1.15.2 previously bumped Go to 1.26.2 for multiple security fixes; v1.13.2 updated Go to 1.25.7 to address GO-2026-4337. Functional fixes include a plugin-manager regression that could cause the service to hang on shutdown (v1.16.0 -> v1.16.1), logging/bundle download log loss fixes, and various feature additions and improvements. Users are advised to upgrade to the non-
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- open_policy_agent_opa_releases
- Record identifier
- 00207eb6fdf98423363c82c8f0f20da6c5e4cd67d3123271111880481e9571fd
- Enrichment time
- 2026-05-20T08:52:22Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.