This update for alloy fixes the following issues
- CVE-2026-34986: github.com/go-jose/go-jose/v4: crafted JWE input with a missing encrypted key can lead to a denial of
service (bsc#1262955).
- CVE-2026-41602: github.com/apache/thrift: TFramedTransport frame size headers can lead to a uint32 integer overflow
(bsc#1263530).
Changes for alloy:
- Bug Fixes
logging: Fix startup deadlock when components log before
logging config is evaluated
Update to Beyla 3.9.8
Migrate from Docker to Moby