build(deps): bump the go_modules group across 1 directory with 10 updates#1
Open
dependabot[bot] wants to merge 1 commit into
Open
build(deps): bump the go_modules group across 1 directory with 10 updates#1dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…ates Bumps the go_modules group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.19.0` | `3.20.2` | | [github.com/moby/buildkit](https://github.com/moby/buildkit) | `0.20.2` | `0.28.1` | | [github.com/moby/spdystream](https://github.com/moby/spdystream) | `0.5.0` | `0.5.1` | | [go.opentelemetry.io/otel](https://github.com/open-telemetry/opentelemetry-go) | `1.39.0` | `1.41.0` | | [google.golang.org/grpc](https://github.com/grpc/grpc-go) | `1.78.0` | `1.79.3` | | [github.com/go-git/go-billy/v5](https://github.com/go-git/go-billy) | `5.6.2` | `5.9.0` | | [github.com/go-git/go-git/v5](https://github.com/go-git/go-git) | `5.16.5` | `5.19.0` | | [golang.org/x/image](https://github.com/golang/image) | `0.27.0` | `0.38.0` | Updates `helm.sh/helm/v3` from 3.19.0 to 3.20.2 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.19.0...v3.20.2) Updates `github.com/moby/buildkit` from 0.20.2 to 0.28.1 - [Release notes](https://github.com/moby/buildkit/releases) - [Commits](moby/buildkit@v0.20.2...v0.28.1) Updates `github.com/moby/spdystream` from 0.5.0 to 0.5.1 - [Release notes](https://github.com/moby/spdystream/releases) - [Commits](moby/spdystream@v0.5.0...v0.5.1) Updates `go.opentelemetry.io/otel` from 1.39.0 to 1.41.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.39.0...v1.41.0) Updates `google.golang.org/grpc` from 1.78.0 to 1.79.3 - [Release notes](https://github.com/grpc/grpc-go/releases) - [Commits](grpc/grpc-go@v1.78.0...v1.79.3) Updates `github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream` from 1.6.8 to 1.7.10 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](aws/aws-sdk-go-v2@service/rum/v1.6.8...service/account/v1.7.10) Updates `github.com/docker/cli` from 29.0.3+incompatible to 29.2.1+incompatible - [Commits](docker/cli@v29.0.3...v29.2.1) Updates `github.com/go-git/go-billy/v5` from 5.6.2 to 5.9.0 - [Release notes](https://github.com/go-git/go-billy/releases) - [Commits](go-git/go-billy@v5.6.2...v5.9.0) Updates `github.com/go-git/go-git/v5` from 5.16.5 to 5.19.0 - [Release notes](https://github.com/go-git/go-git/releases) - [Changelog](https://github.com/go-git/go-git/blob/main/HISTORY.md) - [Commits](go-git/go-git@v5.16.5...v5.19.0) Updates `golang.org/x/image` from 0.27.0 to 0.38.0 - [Commits](golang/image@v0.27.0...v0.38.0) --- updated-dependencies: - dependency-name: helm.sh/helm/v3 dependency-version: 3.20.2 dependency-type: direct:production dependency-group: go_modules - dependency-name: github.com/moby/buildkit dependency-version: 0.28.1 dependency-type: indirect dependency-group: go_modules - dependency-name: github.com/moby/spdystream dependency-version: 0.5.1 dependency-type: indirect dependency-group: go_modules - dependency-name: go.opentelemetry.io/otel dependency-version: 1.41.0 dependency-type: indirect dependency-group: go_modules - dependency-name: google.golang.org/grpc dependency-version: 1.79.3 dependency-type: indirect dependency-group: go_modules - dependency-name: github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream dependency-version: 1.7.10 dependency-type: indirect dependency-group: go_modules - dependency-name: github.com/docker/cli dependency-version: 29.2.1+incompatible dependency-type: indirect dependency-group: go_modules - dependency-name: github.com/go-git/go-billy/v5 dependency-version: 5.9.0 dependency-type: indirect dependency-group: go_modules - dependency-name: github.com/go-git/go-git/v5 dependency-version: 5.19.0 dependency-type: indirect dependency-group: go_modules - dependency-name: golang.org/x/image dependency-version: 0.38.0 dependency-type: indirect dependency-group: go_modules ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the go_modules group with 8 updates in the / directory:
3.19.03.20.20.20.20.28.10.5.00.5.11.39.01.41.01.78.01.79.35.6.25.9.05.16.55.19.00.27.00.38.0Updates
helm.sh/helm/v3from 3.19.0 to 3.20.2Release notes
Sourced from helm.sh/helm/v3's releases.
... (truncated)
Commits
8fb76d6fix: Chart dot-name path bug3a8927efix: pin codeql-action/upload-sarif to commit SHA in scorecards workflowa2369cachore(deps): bump the k8s-io group with 7 updates90e1056add image index test911f2e9fix pulling charts from OCI indices76dad33Remove refactorring changes from coalesce_test.go45c12f7Fix import26c6f19Update pkg/chart/common/util/coalesce_test.go09f5129Fix lint warning417deb2Preserve nil values in chart alreadyUpdates
github.com/moby/buildkitfrom 0.20.2 to 0.28.1Release notes
Sourced from github.com/moby/buildkit's releases.
... (truncated)
Commits
45b038cgit: normalize and validate subdir pathsf5462c2git: harden ref arg handling71577a5source: extract SafeFileName into shared pathutil packagedf43783source/http: use os.Root for saved file operations9ce6f62source/http: sanitize downloaded filenames099cf80executor: validate container IDs centrally2642113Merge pull request #6610 from thaJeztah/0.28_backport_bump_patternmatcher802da78vendor: github.com/moby/patternmatcher v0.6.15245d86Merge pull request #6551 from tonistiigi/v0.28-cherry-picks90ee5devendor: update x/net to v0.51.0Updates
github.com/moby/spdystreamfrom 0.5.0 to 0.5.1Release notes
Sourced from github.com/moby/spdystream's releases.
Commits
c59e5d7Merge pull request #109 from thaJeztah/use_ioutil2fd0155use ioutil.Discard for go1.13 compatibilityef6121fMerge commit from fork241cec9compare with signed Int for 32-bit Arm21c3864Add options to customize limitsacf9b45spdy: update godoc for MaxDataLengtheb63605spdy: limit header-size and header-count2f21da4spdy: fix header block byte accounting5976b66spdy: enforce 24-bit frame length limitscf0ec5dGuard against oversized SPDY framesUpdates
go.opentelemetry.io/otelfrom 1.39.0 to 1.41.0Changelog
Sourced from go.opentelemetry.io/otel's changelog.
... (truncated)
Commits
4575a97Release 1.41.0/0.63.0/0.17.0/0.0.15 (#7977)66fc10dfix: add error handling for insecure HTTP endpoints with TLS client configura...76e6eecchore(deps): update github/codeql-action action to v4.32.5 (#7980)0d50f90Revert "Generate semconv/v1.40.0" (#7978)c38a4a5Generate semconv/v1.40.0 (#7929)0f1a224chore(deps): update module github.com/securego/gosec/v2 to v2.23.0 (#7899)c79ebf4chore(deps): update module github.com/daixiang0/gci to v0.14.0 (#7973)f758157chore(deps): update module github.com/sonatard/noctx to v0.5.0 (#7968)92a1164fix(deps): update github.com/opentracing-contrib/go-grpc/test digest to d566b...3cd7c27chore(deps): update module github.com/protonmail/go-crypto to v1.4.0 (#7969)Updates
google.golang.org/grpcfrom 1.78.0 to 1.79.3Release notes
Sourced from google.golang.org/grpc's releases.
Commits
dda86dbChange version to 1.79.3 (#8983)72186f1grpc: enforce strict path checking for incoming requests on the server (#8981)97ca352Changing version to 1.79.3-dev (#8954)8902ab6Change the version to release 1.79.2 (#8947)a928670Cherry-pick #8874 to v1.79.x (#8904)06df363Change version to 1.79.2-dev (#8903)782f2deChange version to 1.79.1 (#8902)850eccbChange version to 1.79.1-dev (#8851)765ff05Change version to 1.79.0 (#8850)68804beCherry pick #8864 to v1.79.x (#8896)Updates
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstreamfrom 1.6.8 to 1.7.10Commits
7655449Release 2022-10-21dcae829Regenerated Clientsb82766bUpdate API model1c05fb6Implements IsCredentialsProvider for checking if a provider matches a target ...0fab39aMerge pull request #1888 from aws/isvita/issues-178756eb993added changelog filecde8cbcRelease 2022-10-20d7765f9Regenerated Clientsb9dab7eUpdate endpoints model93ed3eeUpdate API modelUpdates
github.com/docker/clifrom 29.0.3+incompatible to 29.2.1+incompatibleCommits
a5c7197Merge pull request #6772 from thaJeztah/cleanup_testfile435384fMerge pull request #6773 from thaJeztah/improve_mountoptsdf3e923opts: MountOpt: extract utility functions and don't set empty valuesd781df8opts: MountOpt: extract validation to a separate functionf35fb0fcli/command: TestGetDefaultAuthConfig: cleanup test filefe1af92opts: MountOpt: improve validation of boolean values5de99e6opts: MountOpt: improve validation for whitespace in values9620e41opts: MountOpt: improve validation for whitespace in optionse888a6eopts: remove outdated commentb22f1aeMerge pull request #6771 from thaJeztah/allow_empty_targetUpdates
github.com/go-git/go-billy/v5from 5.6.2 to 5.9.0Release notes
Sourced from github.com/go-git/go-billy/v5's releases.
Commits
237e529Merge pull request #206 from pjbgf/v5-improvements04edb39build: Add go-git integration testd8efefdosfs: preserve empty ChrootOS base07f2a0bMerge pull request #205 from pjbgf/v5-improvements25207c8build: Bump Go versions in workflows2fda229osfs: ChrootOS eval baseDir on creation427b27fMerge pull request #203 from pjbgf/v5-improvements7d5a23echroot: Reject symlink loops2c2287autil: avoid following symlinks in RemoveAll fallbackcbd88e9Fix mount path handlingUpdates
github.com/go-git/go-git/v5from 5.16.5 to 5.19.0Release notes
Sourced from github.com/go-git/go-git/v5's releases.
Commits
bc930f4Merge pull request #2065 from go-git/commit-v5d315264plumbing: object, Reset object before decode6e1d348plumbing: object, Align Tree handling with upstreame134ba3tests: Skip double checks in Git v2.111971422tests: Add git conformance tests for signing verificationa387aa8plumbing: object, Add ErrMalformedTagf415670plumbing: object, Decode Tag headers via a state machine5b0cd38plumbing: object, Reject multi-signature commits at Verifyfe8ed62plumbing: object, Align Tag.EncodeWithoutSignature with Commit98e337dplumbing: object, Add support for Tag.SignatureSHA256Updates
golang.org/x/imagefrom 0.27.0 to 0.38.0Commits
23ae9edtiff: cap buffer growth to prevent OOM from malicious IFD offsete589e60webp: allow VP8L + VP8X(with alpha)fe7d73dgo.mod: update golang.org/x dependenciese3d762ball: upgrade go directive to at least 1.25.0 [generated]833c6edgo.mod: update golang.org/x dependenciesbc7fe0bgo.mod: update golang.org/x dependenciesc53c97fgo.mod: update golang.org/x dependencies9032ff7all: eliminate vet diagnostics9c9d08cgo.mod: update golang.org/x dependencies742b1b7all: fix some commentsDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.