-
Notifications
You must be signed in to change notification settings - Fork 101
chore(deps): bump the security group across 1 directory with 21 updates #1789
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/go_modules/security-fca3827089
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the security group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/casbin/govaluate](https://github.com/casbin/govaluate) | `1.3.0` | `1.4.0` | | [github.com/containers/image/v5](https://github.com/containers/image) | `5.34.3` | `5.35.0` | | [github.com/jackc/pgx/v5](https://github.com/jackc/pgx) | `5.7.4` | `5.7.5` | | [github.com/microsoft/go-mssqldb](https://github.com/microsoft/go-mssqldb) | `1.8.0` | `1.8.1` | | [github.com/miekg/dns](https://github.com/miekg/dns) | `1.1.65` | `1.1.66` | | [github.com/shirou/gopsutil/v4](https://github.com/shirou/gopsutil) | `4.25.3` | `4.25.4` | | [github.com/vishvananda/netlink](https://github.com/vishvananda/netlink) | `1.3.0` | `1.3.1` | | [github.com/vmware-tanzu/velero](https://github.com/vmware-tanzu/velero) | `1.16.0` | `1.16.1` | | [golang.org/x/sync](https://github.com/golang/sync) | `0.13.0` | `0.14.0` | | [k8s.io/api](https://github.com/kubernetes/api) | `0.32.3` | `0.33.1` | | [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver) | `0.32.3` | `0.33.1` | | [k8s.io/cli-runtime](https://github.com/kubernetes/cli-runtime) | `0.32.3` | `0.33.1` | | [golang.org/x/net](https://github.com/golang/net) | `0.39.0` | `0.40.0` | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.17.3` | `3.18.0` | | [k8s.io/kubelet](https://github.com/kubernetes/kubelet) | `0.32.3` | `0.33.1` | Updates `github.com/casbin/govaluate` from 1.3.0 to 1.4.0 - [Release notes](https://github.com/casbin/govaluate/releases) - [Changelog](https://github.com/casbin/govaluate/blob/master/.releaserc.json) - [Commits](casbin/govaluate@v1.3.0...v1.4.0) Updates `github.com/containers/image/v5` from 5.34.3 to 5.35.0 - [Release notes](https://github.com/containers/image/releases) - [Commits](containers/image@v5.34.3...v5.35.0) Updates `github.com/jackc/pgx/v5` from 5.7.4 to 5.7.5 - [Changelog](https://github.com/jackc/pgx/blob/master/CHANGELOG.md) - [Commits](jackc/pgx@v5.7.4...v5.7.5) Updates `github.com/microsoft/go-mssqldb` from 1.8.0 to 1.8.1 - [Release notes](https://github.com/microsoft/go-mssqldb/releases) - [Changelog](https://github.com/microsoft/go-mssqldb/blob/main/CHANGELOG.md) - [Commits](microsoft/go-mssqldb@v1.8.0...v1.8.1) Updates `github.com/miekg/dns` from 1.1.65 to 1.1.66 - [Changelog](https://github.com/miekg/dns/blob/master/Makefile.release) - [Commits](miekg/dns@v1.1.65...v1.1.66) Updates `github.com/shirou/gopsutil/v4` from 4.25.3 to 4.25.4 - [Release notes](https://github.com/shirou/gopsutil/releases) - [Commits](shirou/gopsutil@v4.25.3...v4.25.4) Updates `github.com/vishvananda/netlink` from 1.3.0 to 1.3.1 - [Release notes](https://github.com/vishvananda/netlink/releases) - [Commits](vishvananda/netlink@v1.3.0...v1.3.1) Updates `github.com/vmware-tanzu/velero` from 1.16.0 to 1.16.1 - [Release notes](https://github.com/vmware-tanzu/velero/releases) - [Changelog](https://github.com/vmware-tanzu/velero/blob/main/CHANGELOG.md) - [Commits](vmware-tanzu/velero@v1.16.0...v1.16.1) Updates `golang.org/x/sync` from 0.13.0 to 0.14.0 - [Commits](golang/sync@v0.13.0...v0.14.0) Updates `k8s.io/api` from 0.32.3 to 0.33.1 - [Commits](kubernetes/api@v0.32.3...v0.33.1) Updates `k8s.io/apiextensions-apiserver` from 0.32.3 to 0.33.1 - [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases) - [Commits](kubernetes/apiextensions-apiserver@v0.32.3...v0.33.1) Updates `k8s.io/apimachinery` from 0.32.3 to 0.33.1 - [Commits](kubernetes/apimachinery@v0.32.3...v0.33.1) Updates `k8s.io/apiserver` from 0.32.3 to 0.33.1 - [Commits](kubernetes/apiserver@v0.32.3...v0.33.1) Updates `k8s.io/cli-runtime` from 0.32.3 to 0.33.1 - [Commits](kubernetes/cli-runtime@v0.32.3...v0.33.1) Updates `k8s.io/client-go` from 0.32.3 to 0.33.1 - [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md) - [Commits](kubernetes/client-go@v0.32.3...v0.33.1) Updates `golang.org/x/net` from 0.39.0 to 0.40.0 - [Commits](golang/net@v0.39.0...v0.40.0) Updates `golang.org/x/sys` from 0.32.0 to 0.33.0 - [Commits](golang/sys@v0.32.0...v0.33.0) Updates `golang.org/x/text` from 0.24.0 to 0.25.0 - [Release notes](https://github.com/golang/text/releases) - [Commits](golang/text@v0.24.0...v0.25.0) Updates `helm.sh/helm/v3` from 3.17.3 to 3.18.0 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.17.3...v3.18.0) Updates `k8s.io/kubelet` from 0.32.3 to 0.33.1 - [Commits](kubernetes/kubelet@v0.32.3...v0.33.1) Updates `k8s.io/metrics` from 0.32.3 to 0.33.0 - [Commits](kubernetes/metrics@v0.32.3...v0.33.0) --- updated-dependencies: - dependency-name: github.com/casbin/govaluate dependency-version: 1.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: github.com/containers/image/v5 dependency-version: 5.35.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: github.com/jackc/pgx/v5 dependency-version: 5.7.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/microsoft/go-mssqldb dependency-version: 1.8.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/miekg/dns dependency-version: 1.1.66 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/shirou/gopsutil/v4 dependency-version: 4.25.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/vishvananda/netlink dependency-version: 1.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/vmware-tanzu/velero dependency-version: 1.16.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: golang.org/x/sync dependency-version: 0.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/api dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiextensions-apiserver dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apimachinery dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiserver dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/cli-runtime dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/client-go dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/net dependency-version: 0.40.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/sys dependency-version: 0.33.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/text dependency-version: 0.25.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: helm.sh/helm/v3 dependency-version: 3.18.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/kubelet dependency-version: 0.33.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/metrics dependency-version: 0.33.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security ... Signed-off-by: dependabot[bot] <[email protected]>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the security group with 15 updates in the / directory:
1.3.0
1.4.0
5.34.3
5.35.0
5.7.4
5.7.5
1.8.0
1.8.1
1.1.65
1.1.66
4.25.3
4.25.4
1.3.0
1.3.1
1.16.0
1.16.1
0.13.0
0.14.0
0.32.3
0.33.1
0.32.3
0.33.1
0.32.3
0.33.1
0.39.0
0.40.0
3.17.3
3.18.0
0.32.3
0.33.1
Updates
github.com/casbin/govaluate
from 1.3.0 to 1.4.0Release notes
Sourced from github.com/casbin/govaluate's releases.
Commits
4697815
feat: reduce memory allocs to optimize performance (#13)Updates
github.com/containers/image/v5
from 5.34.3 to 5.35.0Release notes
Sourced from github.com/containers/image/v5's releases.
... (truncated)
Commits
617c288
Bump to c/image v5.35.01b83b3a
Bump to c/storage v1.58.04279b17
Merge pull request #2826 from containers/renovate/golangci-golangci-lint-2.x1d14076
chore(deps): update dependency golangci/golangci-lint to v2.1.112c8495
Merge pull request #2824 from containers/renovate/github.com-sigstore-rekor-1.x010f504
fix(deps): update module github.com/sigstore/rekor to v1.3.109b83c49
Merge pull request #2823 from Luap99/githuba4b363d
.github: check_cirrus_cron work around github bug37150b4
.github: remove cirrus rerun action6116c41
Merge pull request #2822 from containers/renovate/github.com-sigstore-sigstor...Updates
github.com/jackc/pgx/v5
from 5.7.4 to 5.7.5Changelog
Sourced from github.com/jackc/pgx/v5's changelog.
Commits
15bca4a
Release v5.7.51d557f9
Remove PlanScan memoizationde7fe81
Use reflect.TypeFor instead of reflect.TypeOfd9eb089
Remove unused function6be24eb
Fix comment typo07871c0
Zero internal baseRows references to allow GC earlier777e7e5
Merge pull request #2313 from stampy88/tracelog_pool_additions151bd02
Switched toLogLevelDebug
540fcaa
Add support for PGOPTIONS environment variable3a248e3
Add support for PGTZ environment variableUpdates
github.com/microsoft/go-mssqldb
from 1.8.0 to 1.8.1Commits
6b3e174
replace ioutil with io everywhere (#258)46d39b9
bump: github.com/golang-jwt/jwt/v5 v5.2.1 => v5.2.2 (#256)549c925
isProc: recognize builtin-commands (#252)b9933eb
DATETIME: fix 1/300 of a seconds rounding logic (Bulk Copy related) (#242)e804768
Add JSON-encoded version of NULL uniqueidentifier (#238)d27f997
Try to fix the github PR validation workflow (#240)ba24acc
Fix GUID conversion (#207)Updates
github.com/miekg/dns
from 1.1.65 to 1.1.66Commits
10d76bc
Release 1.1.66ed312a3
Fix logic in xfr ReadMsg + add test (#1649)27318b9
RFC 8490: Implement DSO type registry01abd80
DSO: Use Stateful as the suffix64211b3
Add the rcode DSO-TYPE Not Implemented / RFC8490 (#1648)8ec9f67
Upgrade all deps (#1647)8a570c6
A comment concerning newline while scanning (#1645)739cf21
Return error for empty target (#1627)Updates
github.com/shirou/gopsutil/v4
from 4.25.3 to 4.25.4Release notes
Sourced from github.com/shirou/gopsutil/v4's releases.
Commits
3ba33b4
Merge pull request #1843 from mmorel-35/golangci-lint/ineffassign6469062
chore: enable ineffassign linteraf2d6de
Merge pull request #1825 from mmorel-35/golangci-lint/govet10be661
chore: enable govet linter3c34181
Merge pull request #1841 from shirou/feat/update_github_action_runners_imagesc43a933
fix: update github actions runner imagesf9f5620
Merge pull request #1840 from s0ders/refactor/host-info-error-msg0bbc484
refactor: using fmt.Errorf on some error returns.7d9af6f
Merge pull request #1829 from mmorel-35/golangci-lint@v261f624b
Merge pull request #1831 from niemp100/win32_cpu_valuesUpdates
github.com/vishvananda/netlink
from 1.3.0 to 1.3.1Release notes
Sourced from github.com/vishvananda/netlink's releases.
... (truncated)
Commits
17daef6
vlan: add support for flags and qos mapsb929916
filter: add classid and port range support for flower06c2c01
feat: add vlanid - tunnelid mapping supportc4bb4f9
rdma: support rdma metrics: resource and statistice9f11f7
bugfix: parse ipv4 src/dst error1f4f72c
Mimicipset
C code for determining correct default ipset revision2426b05
qdisc: fix wrong type info of tc_sfq_qopta2e4b9a
veth: allow configuring peer attributes beyond namespace and address9d88d83
feat: add support for RtoMin lock6b5dd30
geneve: Support setting/getting source port rangeUpdates
github.com/vmware-tanzu/velero
from 1.16.0 to 1.16.1Release notes
Sourced from github.com/vmware-tanzu/velero's releases.
Commits
2eb97fa
Merge pull request #8940 from ywk253100/250514_fixf64fb36
Call WaitGroup.Done() once only when PVB changes to final status the first ti...4bd86f1
Merge pull request #8939 from blackpiglet/modify_image_usage_1.1618ef5e6
Support using image registry proxy in more cases.01aa538
Add default bakcup repository configuration for E2E.3617172
Merge pull request #8928 from Lyndon-Li/release-1.1682dce51
1.16.1 changelog update659a352
Add VolumeSnapshotContent into the RIA and the mustHave resource list. (#8926)9eeea4f
Merge pull request #8922 from Lyndon-Li/release-1.16e1068d6
bump up base imageUpdates
golang.org/x/sync
from 0.13.0 to 0.14.0Commits
506c70f
errgroup: propagate panic and Goexit through WaitUpdates
k8s.io/api
from 0.32.3 to 0.33.1Commits
04f698e
Update dependencies to v0.33.1 tag16cedc7
Merge pull request #131088 from atiratree/rename-terminating-replicas-fgdc88679
Merge pull request #131103 from ahrtr/etcd_sdk_202503284a456a2
bump etcd 3.5.21 sdk96e38c9
rename DeploymentPodReplacementPolicy FG to DeploymentReplicaSetTerminatingRe...c21a017
Merge pull request #129970 from mortent/AddResourceV1beta2APId0673db
Run make update118546d
Merge pull request #130556 from sreeram-venkitesh/kep-4960-container-stop-sig...f9401a3
Merge pull request #130797 from jm-franc/configurable-tolerance9b3e544
Generated UPDATE_COMPATIBILITY_FIXTURE_DATAUpdates
k8s.io/apiextensions-apiserver
from 0.32.3 to 0.33.1Commits
a0cfc63
Update dependencies to v0.33.1 tagc066cbe
Merge remote-tracking branch 'origin/master' into release-1.3308c3d2f
Move to released version of prometheus/client_golang v1.22.0 from rc.07c1033e
fix narrow spaces of %e for x/net bumpcdf67dd
bump etcd 3.5.21 sdkb8b1528
Merge pull request #129872 from seans3/websocket-https-proxyd5c7de8
Websocket HTTPS proxy supportde39b8d
Merge pull request #130899 from serathius/watchcache-error7022eab
Merge pull request #130020 from mozillazg/patch-3718a2c7
Merge pull request #130906 from serathius/streaming-validationUpdates
k8s.io/apimachinery
from 0.32.3 to 0.33.1Commits
173776a
Merge pull request #131708tigrato/automated-cherry-pick-of-#131702
a3d1fde
fix: fixes a possible panic inNewYAMLToJSONDecoder
955939f
bump etcd 3.5.21 sdke8a77bd
Merge pull request #130910 from googs1025/fix/datarace7e8c77e
Merge pull request #130906 from serathius/streaming-validation27fd396
flake: fix data race for func TestBackoff_Step8bcc6f1
Update kube-openapi and integrate streaming tags validation6ce776c
Merge pull request #130857 from thockin/kk_small_vg_diffsf2c94d6
Comment on origin and JSON schemab63ba07
Use origin in validateFalse's own testUpdates
k8s.io/apiserver
from 0.32.3 to 0.33.1Commits
338d7b8
Update dependencies to v0.33.1 tag1fb809d
Merge remote-tracking branch 'origin/master' into release-1.336aae451
Stop exposing list-via-watch from the server345c8cf
Merge remote-tracking branch 'origin/master' into release-1.3311e6080
Merge pull request #131196 from siyuanfoundation/forward-apie87c9db
Move to released version of prometheus/client_golang v1.22.0 from rc.09ca332f
bug fix: fix version order in emulation forward compatibility.d4f2fc5
Merge pull request #131020 from wojtek-t/fix_asynchronous_errorbeaef1d
Merge pull request #131103 from ahrtr/etcd_sdk_202503281776f0c
Parallelize cacher list testsUpdates
k8s.io/cli-runtime
from 0.32.3 to 0.33.1Commits
8aa16c9
Update dependencies to v0.33.1 tag2811321
bump etcd 3.5.21 sdkb44307f
Merge pull request #129872 from seans3/websocket-https-proxyf7c023c
Websocket HTTPS proxy support178adec
Merge pull request #130906 from serathius/streaming-validation1e2dc5c
Update kube-openapi and integrate streaming tags validation7d637a3
Merge pull request #130555 from thockin/k_k_randfill67be32d
Vendor randfill2dc7b80
Merge pull request #130569 from dims/update-to-latest-cadvisor-v0.52.0a4e93f9
update to v1.22.0-rc.0Updates
k8s.io/client-go
from 0.32.3 to 0.33.1Commits
e7397e5
Update dependencies to v0.33.1 tagecbbb06
bump etcd 3.5.21 sdk2086688
Merge pull request #129970 from mortent/AddResourceV1beta2APIdba34c7
Run make updatee359642
Merge pull request #130556 from sreeram-venkitesh/kep-4960-container-stop-sig...3bf0a05
Merge pull request #130797 from jm-franc/configurable-tolerance7a03a3b
Generated files1676beb
Refresh autogenerated files following the configurable tolerance updates.387edb8
Merge pull request #130967 from aojea/listers21dc3b4
benchmark to show inefficient linear search lookupUpdates
golang.org/x/net
from 0.39.0 to 0.40.0Commits
7d6e62a
go.mod: update golang.org/x dependenciesea0c1d9
internal/timeseries: use built-in max/min to simplify the code3e7a445
quic: skip packet numbers for optimistic ack defense3f563d3
quic: use an enum for sentPacket statea3b6e77
quic: don't re-lose packets when discarding keys22500a6
quic: decode packet numbers >255 in testsdd0b200
quic: remove go1.21 build constraintUpdates
golang.org/x/sys
from 0.32.0 to 0.33.0Commits
3d9a6b8
windows: add WSADuplicateSocketc0a9559
cpu: add crypto extensions detection for riscv648e9e046
windows: add virtual key codes and console input consts7138967
windows: fix slicing of NTUnicodeString values6a85559
windows: fix dangling pointers in (*SECURITY_DESCRIPTOR).ToAbsoluteUpdates
golang.org/x/text
from 0.24.0 to 0.25.0Commits
700cc20
go.mod: update golang.org/x dependenciesUpdates
helm.sh/helm/v3
from 3.17.3 to 3.18.0Release notes
Sourced from helm.sh/helm/v3's releases.