- All Argo CD container images and CLI binaries are now signed with cosign and include SLSA Level 3 provenance for verification
- Critical vulnerability GHSA‑2hj5‑g64g‑fp6p is patched
- Bug fixes include corrected appset requeue behavior and a fixed e2e test
