New
Machine Runner Orchestrator (previously Runner Provisioner), which automatically scales self-hosted machine runner VMs to match CI demand, is now generally available (GA).
Machine Runner Orchestrator adds:
Multi-resource-class support: CPU, GPU, and ARM workloads can all autoscale from a single deployment, removing the single-resource-class limit from the preview release.
Support for GKE, AKS, and EKS, in addition to any KubeVirt-based Kubernetes cluster.
Machine Runner Orchestrator is included with self-hosted runners on every CircleCI plan, at no additional cost.
Breaking
The product was fully renamed from runner-provisioner to machine-runner-orchestrator: Helm chart name, container image repository, and Packagecloud package repository all changed to reflect that. Existing deployments must be uninstalled and reinstalled under the new name.
helm list -n <k8s_namespace>
helm uninstall runner-provisioner -n <k8s_namespace>
helm repo add circleci_machine-runner-orchestrator https://packagecloud.io/circleci/machine-runner-orchestrator/helm
helm repo update
helm install machine-runner-orchestrator circleci_machine-runner-orchestrator/machine-runner-orchestrator \
--namespace <k8s_namespace> \
--version 1.0.0 \
--values my-values.yaml
Keep in mind that Runners for the configured resource classes will be offline between uninstalling the old chart and installing the new one.
Security
This version patches two high-severity gRPC-Go denial-of-service vulnerabilities: heap memory exhaustion via HTTP/2 frame fragmentation (CVE-2026-84304) and a crash on requests missing :authority/Host headers (CVE-2026-84445).
Machine Runner Orchestrator (previously Runner Provisioner), which automatically scales self-hosted machine runner VMs to match CI demand, is now generally available (GA).
Machine Runner Orchestrator adds:Machine Runner Orchestrator is included with self-hosted runners on every CircleCI plan, at no additional cost.
BreakingThe product was fully renamed from runner-provisioner to machine-runner-orchestrator: Helm chart name, container image repository, and Packagecloud package repository all changed to reflect that. Existing deployments must be uninstalled and reinstalled under the new name.
helm list -n <k8s_namespace>
helm uninstall runner-provisioner -n <k8s_namespace>
helm repo add circleci_machine-runner-orchestrator https://packagecloud.io/circleci/machine-runner-orchestrator/helm
helm repo update
helm install machine-runner-orchestrator circleci_machine-runner-orchestrator/machine-runner-orchestrator \
--namespace <k8s_namespace> \
--version 1.0.0 \
--values my-values.yaml
Keep in mind that Runners for the configured resource classes will be offline between uninstalling the old chart and installing the new one.
SecurityThis version patches two high-severity gRPC-Go denial-of-service vulnerabilities: heap memory exhaustion via HTTP/2 frame fragmentation (CVE-2026-84304) and a crash on requests missing :authority/Host headers (CVE-2026-84445).
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Runner Provisioner Beta Release 0.1.3 | 0 | 8.42 | 26-08-2026 |
| 2 | Hosted MCP server now available | 0 | 6.31 | 14-09-2026 |
| 3 | Server Release 4.9.6 | 0 | 11.48 | 11-08-2026 |
| 4 | Runner Release 3.1.12 | 0 | 5.3 | 24-08-2026 |
| 5 | Native GitHub Actions YAML Workflow Support — Preview | 0 | 6.81 | 22-09-2026 |
| 6 | Server Release 4.10.1 | 0 | 8.99 | 11-08-2026 |
| 7 | Android Gen2 Machine Executor Now Generally Available | 0 | 13.31 | 01-09-2026 |
| 8 | Gen2 x86 Docker resource classes now available on Free plans | 0 | 18.38 | 28-08-2026 |
| 9 | CircleCI Response to CVE-2026-64600 ("RefluXFS") Linux Kernel Vulnerability | 0 | 9.38 | 29-07-2026 |
| 10 | API Change: Pipeline Error Response Format Update | 0 | 9.16 | 21-09-2026 |