{
 "schema": "bumplog.app.v1",
 "generatedAt": "2026-07-26T13:02:49.520Z",
 "slug": "traefik",
 "name": "Traefik",
 "repo": "traefik/traefik",
 "latestVersion": "v3.7.6",
 "safeToUpdate": "breaking",
 "rationale": "The release notes open with an explicit directive to consult a version-specific migration guide, which is the clearest upstream signal that manual upgrade steps or breaking changes are present. The CORS wildcard and Max-Age behavioral fixes may silently alter responses for existing configurations that happened to rely on the prior (buggy) defaults. The new server options for header underscore removal and max header size may also carry default-value changes that affect running deployments.",
 "changelogSummary": "v3.7.6 patches three security CVEs related to HTTP/2 header memory exhaustion and ships a collection of bug fixes across middleware, Kubernetes integrations, and TLS. Notable corrections include CORS Max-Age defaulting incorrectly to zero, CORS wildcard handling when allow-credentials is enabled, and x-forwarded-port in forward-auth. Kubernetes users benefit from Gateway API status fixes, more deterministic EndpointSlice ordering, and ingress-nginx SSL passthrough and force-ssl-redirect corrections. Two new server-level options are introduced: one to strip request headers containing underscores, and one to configure the maximum request header size. A migration guide is explicitly required before upgrading.",
 "sourceUrl": "https://github.com/traefik/traefik/releases/tag/v3.7.6",
 "lastChecked": "2026-07-04",
 "successor": null,
 "url": "https://bumplog.org/apps/traefik/",
 "badge": "https://bumplog.org/badge/traefik.svg",
 "lifecycle": {
  "product": "traefik",
  "link": "https://endoflife.date/traefik",
  "cycle": "3.7",
  "eol": false,
  "status": "supported",
  "eolDate": null
 }
}