Extends this existing upgrade PR (branch upgrade-6cb491b). It now carries the meet bump on top of
last week's redis bump; there is one evolving upgrade PR per recipe.
Images
service
image
current
new
app
lasuite/meet-frontend
v1.31.0
v1.32.1
backend
lasuite/meet-backend
v1.31.0
v1.32.1
celery
lasuite/meet-backend
v1.31.0
v1.32.1
redis
redis
8.10.1
8.10.2
db
pgautoupgrade/pgautoupgrade
18-debian
18-debian (unchanged)
livekit
livekit/livekit-server
v1.13.7
v1.13.7 (latest, unchanged)
web
nginx
1.31.6
1.31.6 (latest, unchanged)
web, db and livekit are already newest for their lines (abra agrees); no change.
None. No breaking changes, no schema migration is operator-visible (backend runs manage.py migrate automatically on boot; v1.32.0 adds core.0023_alter_recording_status and applies
cleanly — verified live), no new/renamed env vars are required:
The new default-video-codec setting is optional.
redis is cache-only here (no volume/persistence); not using TLS or cluster mode, so the cluster-bus-port-protected-mode default-no option and the cluster-bus startup warning do not apply.
Dockerflow health/endpoint changes in v1.32.0 are internal; the recipe's healthchecks (manage.py check, wget /, celery inspect ping, redis-cli ping) are unchanged and all pass.
Recommended release command
PR does not bump the version label. New feature + security → minor. After merging upstream, publish with:
abra recipe release lasuite-meet -y
→ 0.8.0+v1.32.1 (from current label 0.7.0+v1.31.0).
Verification
Deployed the recipe head directly on cc-ci (--chaos): all 7 services 1/1, backend migrations applied
OK, gunicorn serving, celery connected to redis, landing page HTTP 200. Torn down fully.
Full cc-ci recipe CI (!testme) on this PR head.
Tested green on the cc-ci recipe CI server (full suite, cold, against this PR head). NOT merged — for operator review.
## Upgrade: lasuite/meet v1.31.0 → v1.32.1 (+ redis 8.10.1 → 8.10.2)
Extends this existing upgrade PR (branch `upgrade-6cb491b`). It now carries the meet bump on top of
last week's redis bump; there is **one evolving upgrade PR per recipe**.
### Images
| service | image | current | new |
|---------|-------|---------|-----|
| app | lasuite/meet-frontend | v1.31.0 | **v1.32.1** |
| backend | lasuite/meet-backend | v1.31.0 | **v1.32.1** |
| celery | lasuite/meet-backend | v1.31.0 | **v1.32.1** |
| redis | redis | 8.10.1 | **8.10.2** |
| db | pgautoupgrade/pgautoupgrade | 18-debian | 18-debian (unchanged) |
| livekit | livekit/livekit-server | v1.13.7 | v1.13.7 (latest, unchanged) |
| web | nginx | 1.31.6 | 1.31.6 (latest, unchanged) |
`web`, `db` and `livekit` are already newest for their lines (abra agrees); no change.
### Upstream release notes
**Upstream release notes:** meet v1.31.0→v1.32.1: https://github.com/suitenumerique/meet/releases
- v1.32.1 — security fixes: CVE-2026-73228 / CVE-2026-73229 in DRF; **CRITICAL** CVE-2026-63072 / CVE-2026-63073 in libssl3t64.
- v1.32.0 — features: configurable LiveKit default video codec, screen-share zoom controls; fixes incl. CVE-2026-93990 (libexpat), base image bumped to python:3.13.5-alpine3.24.
**Upstream release notes:** redis 8.10.1→8.10.2: https://github.com/redis/redis/releases/tag/8.10.2
- transaction ACL-revocation bypass (#15673); cluster-bus auth warning hardening (#15722, new `cluster-bus-port-protected-mode`, default `no`); TimeSeries/RedisSearch/VectorSets crash fixes.
### Operator Action Required
**None.** No breaking changes, no schema migration is operator-visible (backend runs
`manage.py migrate` automatically on boot; v1.32.0 adds `core.0023_alter_recording_status` and applies
cleanly — verified live), no new/renamed env vars are required:
- The new default-video-codec setting is optional.
- redis is cache-only here (no volume/persistence); not using TLS or cluster mode, so the
`cluster-bus-port-protected-mode` default-`no` option and the cluster-bus startup warning do not apply.
- Dockerflow health/endpoint changes in v1.32.0 are internal; the recipe's healthchecks (`manage.py
check`, `wget /`, `celery inspect ping`, `redis-cli ping`) are unchanged and all pass.
### Recommended release command
PR does **not** bump the version label. New feature + security → minor. After merging upstream, publish with:
```
abra recipe release lasuite-meet -y
```
→ `0.8.0+v1.32.1` (from current label `0.7.0+v1.31.0`).
### Verification
- Deployed the recipe head directly on cc-ci (`--chaos`): all 7 services 1/1, backend migrations applied
OK, gunicorn serving, celery connected to redis, landing page HTTP 200. Torn down fully.
- Full cc-ci recipe CI (`!testme`) on this PR head.
Tested green on the cc-ci recipe CI server (full suite, cold, against this PR head). NOT merged — for operator review.
cc @trav @notplants
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Upgrade: lasuite/meet v1.31.0 → v1.32.1 (+ redis 8.10.1 → 8.10.2)
Extends this existing upgrade PR (branch
upgrade-6cb491b). It now carries the meet bump on top oflast week's redis bump; there is one evolving upgrade PR per recipe.
Images
web,dbandlivekitare already newest for their lines (abra agrees); no change.Upstream release notes
Upstream release notes: meet v1.31.0→v1.32.1: https://github.com/suitenumerique/meet/releases
Upstream release notes: redis 8.10.1→8.10.2: https://github.com/redis/redis/releases/tag/8.10.2
cluster-bus-port-protected-mode, defaultno); TimeSeries/RedisSearch/VectorSets crash fixes.Operator Action Required
None. No breaking changes, no schema migration is operator-visible (backend runs
manage.py migrateautomatically on boot; v1.32.0 addscore.0023_alter_recording_statusand appliescleanly — verified live), no new/renamed env vars are required:
cluster-bus-port-protected-modedefault-nooption and the cluster-bus startup warning do not apply.manage.py check,wget /,celery inspect ping,redis-cli ping) are unchanged and all pass.Recommended release command
PR does not bump the version label. New feature + security → minor. After merging upstream, publish with:
→
0.8.0+v1.32.1(from current label0.7.0+v1.31.0).Verification
--chaos): all 7 services 1/1, backend migrations appliedOK, gunicorn serving, celery connected to redis, landing page HTTP 200. Torn down fully.
!testme) on this PR head.Tested green on the cc-ci recipe CI server (full suite, cold, against this PR head). NOT merged — for operator review.
cc @trav @notplants
!testme
🌻 cc-ci —
lasuite-meet@6cb491b7✅ passedfull logs · dashboard
chore: upgrade redis to 8.10.2to chore: upgrade lasuite/meet to v1.32.1!testme
🌻 cc-ci —
lasuite-meet@547536dc✅ passedfull logs · dashboard
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.