chore: upgrade app to discourse/discourse:2026.7.2 #9

Open
autonomic-bot wants to merge 1 commits from upgrade-89420d3 into main
Owner

Upgrade discourse app image 2026.7.12026.7.2 (security/patch intermediate on the current 2026.7 ESR line, released 2026-08-25).

Image-tag table

service image upstream main (old) new
app discourse/discourse 2026.7.1 2026.7.2
db discourse/postgres pg18 pg18 (unchanged — floating tag, no digest pin)
redis redis 8.10-alpine 8.10-alpine (unchanged)

Upstream release notes

Operator action required

None beyond a normal app deployment. Patch on the already-running 2026.7 ESR line: no new/renamed
config, no breaking changes, Rails db:migrate runs automatically on boot via the official image
(pg18 auto-upgrades in place — no dump/restore). Fresh CI deploy converges cleanly (chaos-verified).

Recommended release (operator, after this PR merges)

abra recipe release discourse -z

(patch — single security patch to the app image tag on the same ESR line). The version label is NOT
bumped in this PR by policy.

Tested green on the cc-ci recipe CI server (full suite, cold, against this PR head). NOT merged — for operator review.

cc @trav @notplants

Upgrade discourse app image `2026.7.1` → `2026.7.2` (security/patch intermediate on the current **2026.7 ESR** line, released 2026-08-25). ## Image-tag table | service | image | upstream main (old) | new | |---------|-------|---------------------|-----| | app | discourse/discourse | 2026.7.1 | **2026.7.2** | | db | discourse/postgres | pg18 | pg18 (unchanged — floating tag, no digest pin) | | redis | redis | 8.10-alpine | 8.10-alpine (unchanged) | ## Upstream release notes - **discourse/discourse 2026.7.1 → 2026.7.2:** https://releases.discourse.org/changelog/v2026.7.2/ (43 changes: 8 security-fix groups, incl. hidden post-revision exposure, iframe allowlist/userinfo bypasses, embed-URL escaping, chat-history scoping, stored-XSS in video placeholder; plus 1 feature `livestream_allowed_hosts` site setting — optional; no `.hbs` change). - redis 8.10-alpine (unchanged): https://raw.githubusercontent.com/redis/redis/8.0/00-RELEASENOTES - discourse/postgres pg18 (unchanged): https://github.com/discourse/discourse-postgres ## Operator action required None beyond a normal app deployment. Patch on the already-running 2026.7 ESR line: no new/renamed config, no breaking changes, Rails `db:migrate` runs automatically on boot via the official image (pg18 auto-upgrades in place — no dump/restore). Fresh CI deploy converges cleanly (chaos-verified). ## Recommended release (operator, after this PR merges) ``` abra recipe release discourse -z ``` (patch — single security patch to the app image tag on the same ESR line). The version label is NOT bumped in this PR by policy. Tested green on the cc-ci recipe CI server (full suite, cold, against this PR head). NOT merged — for operator review. cc @trav @notplants
autonomic-bot added 1 commit 2026-08-28 02:41:57 +00:00
autonomic-bot requested review from trav 2026-08-28 02:41:57 +00:00
autonomic-bot requested review from notplants 2026-08-28 02:41:57 +00:00
Author
Owner

!testme

!testme
Author
Owner

cc-ci: failed to start a CI run (see bridge logs).

cc-ci: failed to start a CI run (see bridge logs).
Author
Owner

!testme

!testme
Author
Owner

🌻 cc-cidiscourse @ 89420d3f passedhttps://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1303

(summary card unavailable — see the run for details.) full logs · dashboard

<!-- cc-ci:testme --> 🌻 **cc-ci** — `discourse` @ `89420d3f` ✅ **passed** → https://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1303 _(summary card unavailable — see the run for details.)_ [full logs](https://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1303) · [dashboard](https://ci.commoninternet.net/)
Author
Owner

!testme

!testme
Author
Owner

🌻 cc-cidiscourse @ 89420d3f passedhttps://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1305

(summary card unavailable — see the run for details.) full logs · dashboard

<!-- cc-ci:testme --> 🌻 **cc-ci** — `discourse` @ `89420d3f` ✅ **passed** → https://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1305 _(summary card unavailable — see the run for details.)_ [full logs](https://drone.ci.commoninternet.net/recipe-maintainers/cc-ci/1305) · [dashboard](https://ci.commoninternet.net/)
All checks were successful
cc-ci/testme cc-ci: success
You are not authorized to merge this pull request.
This pull request can be merged automatically.
View command line instructions

Checkout

From your project repository, check out a new branch and test the changes.
git fetch -u origin upgrade-89420d3:upgrade-89420d3
git checkout upgrade-89420d3
Sign in to join this conversation.
No Reviewers
No labels
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: recipe-maintainers/discourse#9