Kubernetes 1.37 - New Security Features
Sysdig, Wednesday, August 26th, 2026
Sysdig reviews the security implications of Kubernetes 1.37, including volume mounting changes and webhook authentication by default.
Sysdig reviews the security implications of the Kubernetes 1.37 release.
Among the changes covered are new security features for mounting volumes, tightening how workloads gain access to storage, and authentication enabled by default on webhooks, closing a configuration gap that previously depended on operators remembering to secure admission and conversion webhooks.
The post walks through what each change means in practice for cluster operators, including what breaks if existing configurations assumed the old defaults.
It is aimed at platform and security teams planning their upgrade to 1.37.