-
Notifications
You must be signed in to change notification settings - Fork 98
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump the security group across 1 directory with 22 updates #1764
Merged
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the security group with 17 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/containers/image/v5](https://github.com/containers/image) | `5.34.1` | `5.34.2` | | [github.com/go-sql-driver/mysql](https://github.com/go-sql-driver/mysql) | `1.9.0` | `1.9.1` | | [github.com/jackc/pgx/v5](https://github.com/jackc/pgx) | `5.7.2` | `5.7.3` | | [github.com/miekg/dns](https://github.com/miekg/dns) | `1.1.63` | `1.1.64` | | [github.com/spf13/viper](https://github.com/spf13/viper) | `1.19.0` | `1.20.0` | | [go.opentelemetry.io/otel](https://github.com/open-telemetry/opentelemetry-go) | `1.34.0` | `1.35.0` | | [go.opentelemetry.io/otel/sdk](https://github.com/open-telemetry/opentelemetry-go) | `1.34.0` | `1.35.0` | | [golang.org/x/mod](https://github.com/golang/mod) | `0.23.0` | `0.24.0` | | [golang.org/x/sync](https://github.com/golang/sync) | `0.11.0` | `0.12.0` | | [k8s.io/api](https://github.com/kubernetes/api) | `0.32.2` | `0.32.3` | | [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver) | `0.32.2` | `0.32.3` | | [k8s.io/cli-runtime](https://github.com/kubernetes/cli-runtime) | `0.32.2` | `0.32.3` | | [sigs.k8s.io/controller-runtime](https://github.com/kubernetes-sigs/controller-runtime) | `0.20.2` | `0.20.4` | | [golang.org/x/net](https://github.com/golang/net) | `0.35.0` | `0.37.0` | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.17.1` | `3.17.2` | | [k8s.io/kubelet](https://github.com/kubernetes/kubelet) | `0.32.2` | `0.32.3` | | [k8s.io/metrics](https://github.com/kubernetes/metrics) | `0.32.2` | `0.32.3` | Updates `github.com/containers/image/v5` from 5.34.1 to 5.34.2 - [Release notes](https://github.com/containers/image/releases) - [Commits](containers/image@v5.34.1...v5.34.2) Updates `github.com/go-sql-driver/mysql` from 1.9.0 to 1.9.1 - [Release notes](https://github.com/go-sql-driver/mysql/releases) - [Changelog](https://github.com/go-sql-driver/mysql/blob/master/CHANGELOG.md) - [Commits](go-sql-driver/mysql@v1.9.0...v1.9.1) Updates `github.com/jackc/pgx/v5` from 5.7.2 to 5.7.3 - [Changelog](https://github.com/jackc/pgx/blob/master/CHANGELOG.md) - [Commits](jackc/pgx@v5.7.2...v5.7.3) Updates `github.com/miekg/dns` from 1.1.63 to 1.1.64 - [Changelog](https://github.com/miekg/dns/blob/master/Makefile.release) - [Commits](miekg/dns@v1.1.63...v1.1.64) Updates `github.com/spf13/viper` from 1.19.0 to 1.20.0 - [Release notes](https://github.com/spf13/viper/releases) - [Commits](spf13/viper@v1.19.0...v1.20.0) Updates `go.opentelemetry.io/otel` from 1.34.0 to 1.35.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.34.0...v1.35.0) Updates `go.opentelemetry.io/otel/sdk` from 1.34.0 to 1.35.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.34.0...v1.35.0) Updates `golang.org/x/mod` from 0.23.0 to 0.24.0 - [Commits](golang/mod@v0.23.0...v0.24.0) Updates `golang.org/x/sync` from 0.11.0 to 0.12.0 - [Commits](golang/sync@v0.11.0...v0.12.0) Updates `k8s.io/api` from 0.32.2 to 0.32.3 - [Commits](kubernetes/api@v0.32.2...v0.32.3) Updates `k8s.io/apiextensions-apiserver` from 0.32.2 to 0.32.3 - [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases) - [Commits](kubernetes/apiextensions-apiserver@v0.32.2...v0.32.3) Updates `k8s.io/apimachinery` from 0.32.2 to 0.32.3 - [Commits](kubernetes/apimachinery@v0.32.2...v0.32.3) Updates `k8s.io/apiserver` from 0.32.2 to 0.32.3 - [Commits](kubernetes/apiserver@v0.32.2...v0.32.3) Updates `k8s.io/cli-runtime` from 0.32.2 to 0.32.3 - [Commits](kubernetes/cli-runtime@v0.32.2...v0.32.3) Updates `k8s.io/client-go` from 0.32.2 to 0.32.3 - [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md) - [Commits](kubernetes/client-go@v0.32.2...v0.32.3) Updates `sigs.k8s.io/controller-runtime` from 0.20.2 to 0.20.4 - [Release notes](https://github.com/kubernetes-sigs/controller-runtime/releases) - [Changelog](https://github.com/kubernetes-sigs/controller-runtime/blob/main/RELEASE.md) - [Commits](kubernetes-sigs/controller-runtime@v0.20.2...v0.20.4) Updates `golang.org/x/net` from 0.35.0 to 0.37.0 - [Commits](golang/net@v0.35.0...v0.37.0) Updates `golang.org/x/sys` from 0.30.0 to 0.31.0 - [Commits](golang/sys@v0.30.0...v0.31.0) Updates `golang.org/x/text` from 0.22.0 to 0.23.0 - [Release notes](https://github.com/golang/text/releases) - [Commits](golang/text@v0.22.0...v0.23.0) Updates `helm.sh/helm/v3` from 3.17.1 to 3.17.2 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.17.1...v3.17.2) Updates `k8s.io/kubelet` from 0.32.2 to 0.32.3 - [Commits](kubernetes/kubelet@v0.32.2...v0.32.3) Updates `k8s.io/metrics` from 0.32.2 to 0.32.3 - [Commits](kubernetes/metrics@v0.32.2...v0.32.3) --- updated-dependencies: - dependency-name: github.com/containers/image/v5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/go-sql-driver/mysql dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/jackc/pgx/v5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/miekg/dns dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/spf13/viper dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel/sdk dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/mod dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/sync dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/api dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/apiextensions-apiserver dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/apimachinery dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/apiserver dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/cli-runtime dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/client-go dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: sigs.k8s.io/controller-runtime dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/sys dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/text dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: helm.sh/helm/v3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/kubelet dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/metrics dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security ... Signed-off-by: dependabot[bot] <[email protected]>
replicated-ci
approved these changes
Mar 25, 2025
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM 👍
This PR was automatically approved and merged by the automated-prs-manager GitHub action
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the security group with 17 updates in the / directory:
5.34.1
5.34.2
1.9.0
1.9.1
5.7.2
5.7.3
1.1.63
1.1.64
1.19.0
1.20.0
1.34.0
1.35.0
1.34.0
1.35.0
0.23.0
0.24.0
0.11.0
0.12.0
0.32.2
0.32.3
0.32.2
0.32.3
0.32.2
0.32.3
0.20.2
0.20.4
0.35.0
0.37.0
3.17.1
3.17.2
0.32.2
0.32.3
0.32.2
0.32.3
Updates
github.com/containers/image/v5
from 5.34.1 to 5.34.2Release notes
Sourced from github.com/containers/image/v5's releases.
Commits
558f1f8
[release-5.34] Bump to c/image v5.34.271bd224
[release-5.34] Bump c/storage to v1.57.279a867d
Merge pull request #2743 from TomSweeneyRedHat/dev/tsweeney/v5.34.1Updates
github.com/go-sql-driver/mysql
from 1.9.0 to 1.9.1Release notes
Sourced from github.com/go-sql-driver/mysql's releases.
Changelog
Sourced from github.com/go-sql-driver/mysql's changelog.
Commits
1fbafa8
release v1.9.1 (#1683)b84ac5a
go.mod: fix go version format (#1682)88ff88b
Fix FormatDSN missing ConnectionAttributes (#1619)c879816
add Charset() option (#1679)Updates
github.com/jackc/pgx/v5
from 5.7.2 to 5.7.3Changelog
Sourced from github.com/jackc/pgx/v5's changelog.
Commits
5c1fbf4
Update changelog for v5.7.305fe5f8
Explain seemingly redundant rows.Close() in CollectOneRow70c9a14
Merge pull request #2279 from djahandarie/min-idle-conns6603ddf
add MinIdleConns70f7cad
Add link to https://github.com/Arlandaren/pgxWrappy6bf1b0b
Add database/sql to overview of scanning14bda65
Correct pgtype docs9e3c4fb
Merge pull request #2257 from felix-roehrich/fr/change-connect-logic05e72a5
make connection logic more forgiving47d631e
Added missed change to v5.7.2 changelogUpdates
github.com/miekg/dns
from 1.1.63 to 1.1.64Commits
f83d075
Release 1.1.64d912518
Add RESINFO rr (#1641)8d0c412
Add support for Compact Answers OK flag in EDNS (#1639)6425a08
Add the check-soa program, which uses the library (#1638)1c19e49
Manually run a go get -u494e4d2
Merge branch 'master' of github.com:miekg/dns37f4827
Try to group the dependabot prs75e8f27
Bump golang.org/x/sync from 0.7.0 to 0.11.0 (#1635)72fe95a
SVCB is no RFC 9460. (#1636)b911878
Bump golang.org/x/net from 0.31.0 to 0.34.0 (#1631)Updates
github.com/spf13/viper
from 1.19.0 to 1.20.0Release notes
Sourced from github.com/spf13/viper's releases.
... (truncated)
Commits
c038295
docs: add update instructions for 1.209c07e0f
build: disable unused linters48112d6
ci: add Go 1.24 to the test matrix66e3e28
build(deps): bump github.com/spf13/pflag from 1.0.5 to 1.0.617b96ac
New Logo8b223a4
build(deps): bump github.com/spf13/cast from 1.7.0 to 1.7.191fd363
chore: update aferoe75c48f
Fix issues reported by testifylinta5ea569
build(deps): bump github/codeql-action from 3.27.7 to 3.27.954f2089
build(deps): bump golang.org/x/crypto from 0.27.0 to 0.31.0 in /remoteUpdates
go.opentelemetry.io/otel
from 1.34.0 to 1.35.0Changelog
Sourced from go.opentelemetry.io/otel's changelog.
Commits
5ba5e7a
Release v1.35.0/v0.57.0/v0.11.0 (#6407)3908b67
chore(deps): update module github.com/securego/gosec/v2 to v2.22.2 (#6412)50172b1
chore(deps): update module github.com/ryancurrah/gomodguard to v1.4.1 (#6411)cea6d2b
fix(deps): update module google.golang.org/grpc to v1.71.0 (#6409)e2aee3a
Move trace sdk tests from trace_test into trace package (#6400)38f4f39
fix(deps): update build-tools to v0.20.0 (#6403)2911449
Look at stale issues in ascending order (#6396)7cb322a
chore(deps): update github.com/golangci/dupl digest to 44c6a0b (#6398)0c3651e
fix(deps): update module github.com/golangci/golangci-lint to v1.64.6 (#6394)f04e951
chore(deps): update mvdan.cc/unparam digest to 0df0534 (#6391)Updates
go.opentelemetry.io/otel/sdk
from 1.34.0 to 1.35.0Changelog
Sourced from go.opentelemetry.io/otel/sdk's changelog.
Commits
5ba5e7a
Release v1.35.0/v0.57.0/v0.11.0 (#6407)3908b67
chore(deps): update module github.com/securego/gosec/v2 to v2.22.2 (#6412)50172b1
chore(deps): update module github.com/ryancurrah/gomodguard to v1.4.1 (#6411)cea6d2b
fix(deps): update module google.golang.org/grpc to v1.71.0 (#6409)e2aee3a
Move trace sdk tests from trace_test into trace package (#6400)38f4f39
fix(deps): update build-tools to v0.20.0 (#6403)2911449
Look at stale issues in ascending order (#6396)7cb322a
chore(deps): update github.com/golangci/dupl digest to 44c6a0b (#6398)0c3651e
fix(deps): update module github.com/golangci/golangci-lint to v1.64.6 (#6394)f04e951
chore(deps): update mvdan.cc/unparam digest to 0df0534 (#6391)Updates
golang.org/x/mod
from 0.23.0 to 0.24.0Commits
dc121ce
all: upgrade go directive to at least 1.23.0 [generated]Updates
golang.org/x/sync
from 0.11.0 to 0.12.0Commits
b637f27
errgroup: drop support for Go versions before 1.20960bf1f
all: upgrade go directive to at least 1.23.0 [generated]Updates
k8s.io/api
from 0.32.2 to 0.32.3Commits
22c1e39
Update dependencies to v0.32.3 tag40f4980
Merge pull request #129690pohly/automated-cherry-pick-of-#129661
a5598f8
DRA CEL: add missing size estimatorUpdates
k8s.io/apiextensions-apiserver
from 0.32.2 to 0.32.3Commits
0350e46
Update dependencies to v0.32.3 tagUpdates
k8s.io/apimachinery
from 0.32.2 to 0.32.3Commits
Updates
k8s.io/apiserver
from 0.32.2 to 0.32.3Commits
d5dc369
Update dependencies to v0.32.3 tag4f51d06
Merge pull request #130136 from AwesomePatrol/automated-cherry-pick-of-#13011...a85a34b
Merge pull request #130253 from fuweid/1.32-backport-130126fc2ddd4
proxy: should add PingPeriod for websocket translatorf279152
Limit ResourceQuota LIST requests to times when informer is not syncedUpdates
k8s.io/cli-runtime
from 0.32.2 to 0.32.3Commits
2287a4d
Update dependencies to v0.32.3 tagUpdates
k8s.io/client-go
from 0.32.2 to 0.32.3Commits
c106b23
Update dependencies to v0.32.3 tagUpdates
sigs.k8s.io/controller-runtime
from 0.20.2 to 0.20.4Release notes
Sourced from sigs.k8s.io/controller-runtime's releases.
Commits
0f7927c
Merge pull request #3179 from alvaroaleman/lowpdefault9951869
🌱 TypedRequestForOwner: Decrease priority when unchangedc7d5d83
Fix godoc of TypedEventHandler2062f3a
🌱 Remove redundant WithLowPriorityWhenUnchanged in builder2af3164
🌱 Followups to default low priority in mappers29debb1
🌱 Handlers: Use low priority when object is unchanged and priority q5355658
🐛Implement priorityqueue as default on handlers if using priorityqueue interf...3156ace
Merge pull request #3175 from k8s-infra-cherrypick-robot/cherry-pick-3166-to-...4ae5f39
add version.version to tools/setup-envtest to show installed version833f208
Merge pull request #3173 from k8s-infra-cherrypick-robot/cherry-pick-3167-to-...Updates
golang.org/x/net
from 0.35.0 to 0.37.0Commits
99b3ae0
go.mod: update golang.org/x dependencies85d1d54
go.mod: update golang.org/x dependenciescde1dda
proxy, http/httpproxy: do not mismatch IPv6 zone ids against hostsfe7f039
publicsuffix: spruce up code gen and speed up PublicSuffix459513d
internal/http3: move more common stream processing to genericConnaad0180
http2: fix flakiness from t.Log when GOOS=jsb73e574
http2: don't log expected errors from writing invalid trailers5f45c77
internal/http3: make read-data tests usable for server handlers43c2540
http2, internal/httpcommon: reject userinfo in :authority1d78a08
http2, internal/httpcommon: factor out server header logic for h2/h3Updates
golang.org/x/sys
from 0.30.0 to 0.31.0Commits
74cfc93
all: upgrade go directive to at least 1.23.0 [generated]Updates
golang.org/x/text
from 0.22.0 to 0.23.0Commits
566b44f
go.mod: update golang.org/x dependenciesd5156da
collate/build: do not use println in tests221d88c
x/text: fix scientific notation by removing extraneous spacesb18c107
internal/export/unicode: change C comment to mention unassigned code points835f8ac
language: use a more straightforward return valueae68efb
internal/export/unicode: add CategoryAliases, Cn, and LC518d9c0
all: upgrade go directive to at least 1.23.0 [generated]Updates
helm.sh/helm/v3
from 3.17.1 to 3.17.2Release notes
Sourced from helm.sh/helm/v3's releases.
Commits
cc0bbbd
Updating to 0.37.0 for x/netecb7a74
build(deps): bump the k8s-io group with 7 updatesUpdates
k8s.io/kubelet
from 0.32.2 to 0.32.3Commits
27d733c
Update dependencies to v0.32.3 tagUpdates
k8s.io/metrics
from 0.32.2 to 0.32.3Commits
0144e04
Update dependencies to v0.32.3 tagDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions