chore(deps): bump the common group across 1 directory with 30 updates#256
Open
dependabot[bot] wants to merge 1 commit intomainfrom
Open
chore(deps): bump the common group across 1 directory with 30 updates#256dependabot[bot] wants to merge 1 commit intomainfrom
dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Bumps the common group with 20 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/GoogleCloudPlatform/docker-credential-gcr/v2](https://github.com/GoogleCloudPlatform/docker-credential-gcr) | `2.1.31` | `2.1.32` | | [github.com/alicebob/miniredis/v2](https://github.com/alicebob/miniredis) | `2.36.1` | `2.37.0` | | [github.com/containerd/containerd/v2](https://github.com/containerd/containerd) | `2.2.1` | `2.2.2` | | [github.com/containerd/platforms](https://github.com/containerd/platforms) | `1.0.0-rc.2` | `1.0.0-rc.4` | | [github.com/fatih/color](https://github.com/fatih/color) | `1.18.0` | `1.19.0` | | [github.com/go-git/go-git/v5](https://github.com/go-git/go-git) | `5.16.5` | `5.17.2` | | [github.com/google/go-containerregistry](https://github.com/google/go-containerregistry) | `0.20.7` | `0.21.3` | | [github.com/hashicorp/go-getter](https://github.com/hashicorp/go-getter) | `1.8.4` | `1.8.6` | | [github.com/hashicorp/go-version](https://github.com/hashicorp/go-version) | `1.8.0` | `1.9.0` | | [github.com/hashicorp/hc-install](https://github.com/hashicorp/hc-install) | `0.9.2` | `0.9.3` | | [github.com/hashicorp/terraform-exec](https://github.com/hashicorp/terraform-exec) | `0.24.0` | `0.25.0` | | [github.com/magefile/mage](https://github.com/magefile/mage) | `1.15.0` | `1.17.1` | | [github.com/open-policy-agent/opa](https://github.com/open-policy-agent/opa) | `1.13.1` | `1.15.1` | | [github.com/openvex/go-vex](https://github.com/openvex/go-vex) | `0.2.7` | `0.2.8` | | [github.com/samber/lo](https://github.com/samber/lo) | `1.52.0` | `1.53.0` | | [github.com/sigstore/rekor](https://github.com/sigstore/rekor) | `1.5.0` | `1.5.1` | | [github.com/zclconf/go-cty](https://github.com/zclconf/go-cty) | `1.17.0` | `1.18.0` | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.20.0` | `3.20.1` | | [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) | `1.45.0` | `1.48.1` | | [github.com/nikolalohinski/gonja/v2](https://github.com/nikolalohinski/gonja) | `2.6.0` | `2.7.0` | Updates `github.com/GoogleCloudPlatform/docker-credential-gcr/v2` from 2.1.31 to 2.1.32 - [Release notes](https://github.com/GoogleCloudPlatform/docker-credential-gcr/releases) - [Commits](GoogleCloudPlatform/docker-credential-gcr@v2.1.31...v2.1.32) Updates `github.com/alicebob/miniredis/v2` from 2.36.1 to 2.37.0 - [Release notes](https://github.com/alicebob/miniredis/releases) - [Changelog](https://github.com/alicebob/miniredis/blob/master/CHANGELOG.md) - [Commits](alicebob/miniredis@v2.36.1...v2.37.0) Updates `github.com/containerd/containerd/v2` from 2.2.1 to 2.2.2 - [Release notes](https://github.com/containerd/containerd/releases) - [Changelog](https://github.com/containerd/containerd/blob/main/RELEASES.md) - [Commits](containerd/containerd@v2.2.1...v2.2.2) Updates `github.com/containerd/platforms` from 1.0.0-rc.2 to 1.0.0-rc.4 - [Release notes](https://github.com/containerd/platforms/releases) - [Commits](containerd/platforms@v1.0.0-rc.2...v1.0.0-rc.4) Updates `github.com/fatih/color` from 1.18.0 to 1.19.0 - [Release notes](https://github.com/fatih/color/releases) - [Commits](fatih/color@v1.18.0...v1.19.0) Updates `github.com/go-git/go-git/v5` from 5.16.5 to 5.17.2 - [Release notes](https://github.com/go-git/go-git/releases) - [Commits](go-git/go-git@v5.16.5...v5.17.2) Updates `github.com/google/go-containerregistry` from 0.20.7 to 0.21.3 - [Release notes](https://github.com/google/go-containerregistry/releases) - [Commits](google/go-containerregistry@v0.20.7...v0.21.3) Updates `github.com/hashicorp/go-getter` from 1.8.4 to 1.8.6 - [Release notes](https://github.com/hashicorp/go-getter/releases) - [Commits](hashicorp/go-getter@v1.8.4...v1.8.6) Updates `github.com/hashicorp/go-version` from 1.8.0 to 1.9.0 - [Release notes](https://github.com/hashicorp/go-version/releases) - [Changelog](https://github.com/hashicorp/go-version/blob/main/CHANGELOG.md) - [Commits](hashicorp/go-version@v1.8.0...v1.9.0) Updates `github.com/hashicorp/hc-install` from 0.9.2 to 0.9.3 - [Release notes](https://github.com/hashicorp/hc-install/releases) - [Commits](hashicorp/hc-install@v0.9.2...v0.9.3) Updates `github.com/hashicorp/terraform-exec` from 0.24.0 to 0.25.0 - [Release notes](https://github.com/hashicorp/terraform-exec/releases) - [Changelog](https://github.com/hashicorp/terraform-exec/blob/main/CHANGELOG.md) - [Commits](hashicorp/terraform-exec@v0.24.0...v0.25.0) Updates `github.com/magefile/mage` from 1.15.0 to 1.17.1 - [Release notes](https://github.com/magefile/mage/releases) - [Commits](magefile/mage@v1.15.0...v1.17.1) Updates `github.com/open-policy-agent/opa` from 1.13.1 to 1.15.1 - [Release notes](https://github.com/open-policy-agent/opa/releases) - [Changelog](https://github.com/open-policy-agent/opa/blob/main/CHANGELOG.md) - [Commits](open-policy-agent/opa@v1.13.1...v1.15.1) Updates `github.com/openvex/go-vex` from 0.2.7 to 0.2.8 - [Release notes](https://github.com/openvex/go-vex/releases) - [Commits](openvex/go-vex@v0.2.7...v0.2.8) Updates `github.com/package-url/packageurl-go` from 0.1.3 to 0.1.5 - [Release notes](https://github.com/package-url/packageurl-go/releases) - [Commits](package-url/packageurl-go@v0.1.3...v0.1.5) Updates `github.com/samber/lo` from 1.52.0 to 1.53.0 - [Release notes](https://github.com/samber/lo/releases) - [Commits](samber/lo@v1.52.0...v1.53.0) Updates `github.com/sigstore/rekor` from 1.5.0 to 1.5.1 - [Release notes](https://github.com/sigstore/rekor/releases) - [Changelog](https://github.com/sigstore/rekor/blob/main/CHANGELOG.md) - [Commits](sigstore/rekor@v1.5.0...v1.5.1) Updates `github.com/zclconf/go-cty` from 1.17.0 to 1.18.0 - [Release notes](https://github.com/zclconf/go-cty/releases) - [Changelog](https://github.com/zclconf/go-cty/blob/main/CHANGELOG.md) - [Commits](zclconf/go-cty@v1.17.0...v1.18.0) Updates `golang.org/x/crypto` from 0.48.0 to 0.49.0 - [Commits](golang/crypto@v0.48.0...v0.49.0) Updates `golang.org/x/mod` from 0.33.0 to 0.34.0 - [Commits](golang/mod@v0.33.0...v0.34.0) Updates `golang.org/x/net` from 0.50.0 to 0.52.0 - [Commits](golang/net@v0.50.0...v0.52.0) Updates `golang.org/x/sync` from 0.19.0 to 0.20.0 - [Commits](golang/sync@v0.19.0...v0.20.0) Updates `golang.org/x/term` from 0.40.0 to 0.41.0 - [Commits](golang/term@v0.40.0...v0.41.0) Updates `golang.org/x/text` from 0.34.0 to 0.35.0 - [Release notes](https://github.com/golang/text/releases) - [Commits](golang/text@v0.34.0...v0.35.0) Updates `golang.org/x/tools` from 0.42.0 to 0.43.0 - [Release notes](https://github.com/golang/tools/releases) - [Commits](golang/tools@v0.42.0...v0.43.0) Updates `golang.org/x/xerrors` from 0.0.0-20240716161551-93cc26a95ae9 to 0.0.0-20240903120638-7835f813f4da - [Commits](https://github.com/golang/xerrors/commits) Updates `helm.sh/helm/v3` from 3.20.0 to 3.20.1 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.20.0...v3.20.1) Updates `k8s.io/api` from 0.35.0 to 0.35.1 - [Commits](kubernetes/api@v0.35.0...v0.35.1) Updates `modernc.org/sqlite` from 1.45.0 to 1.48.1 - [Changelog](https://gitlab.com/cznic/sqlite/blob/master/CHANGELOG.md) - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.45.0...v1.48.1) Updates `github.com/nikolalohinski/gonja/v2` from 2.6.0 to 2.7.0 - [Commits](NikolaLohinski/gonja@v2.6.0...v2.7.0) --- updated-dependencies: - dependency-name: github.com/GoogleCloudPlatform/docker-credential-gcr/v2 dependency-version: 2.1.32 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/alicebob/miniredis/v2 dependency-version: 2.37.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/containerd/containerd/v2 dependency-version: 2.2.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/containerd/platforms dependency-version: 1.0.0-rc.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/fatih/color dependency-version: 1.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/go-git/go-git/v5 dependency-version: 5.17.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/google/go-containerregistry dependency-version: 0.21.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/hashicorp/go-getter dependency-version: 1.8.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/hashicorp/go-version dependency-version: 1.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/hashicorp/hc-install dependency-version: 0.9.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/hashicorp/terraform-exec dependency-version: 0.25.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/magefile/mage dependency-version: 1.17.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/open-policy-agent/opa dependency-version: 1.15.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/openvex/go-vex dependency-version: 0.2.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/package-url/packageurl-go dependency-version: 0.1.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/samber/lo dependency-version: 1.53.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/sigstore/rekor dependency-version: 1.5.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: github.com/zclconf/go-cty dependency-version: 1.18.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/crypto dependency-version: 0.49.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/mod dependency-version: 0.34.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/net dependency-version: 0.52.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/sync dependency-version: 0.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/term dependency-version: 0.41.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/text dependency-version: 0.35.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/tools dependency-version: 0.43.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: golang.org/x/xerrors dependency-version: 0.0.0-20240903120638-7835f813f4da dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: helm.sh/helm/v3 dependency-version: 3.20.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: k8s.io/api dependency-version: 0.35.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: common - dependency-name: modernc.org/sqlite dependency-version: 1.48.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common - dependency-name: github.com/nikolalohinski/gonja/v2 dependency-version: 2.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: common ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the common group with 20 updates in the / directory:
2.1.312.1.322.36.12.37.02.2.12.2.21.0.0-rc.21.0.0-rc.41.18.01.19.05.16.55.17.20.20.70.21.31.8.41.8.61.8.01.9.00.9.20.9.30.24.00.25.01.15.01.17.11.13.11.15.10.2.70.2.81.52.01.53.01.5.01.5.11.17.01.18.03.20.03.20.11.45.01.48.12.6.02.7.0Updates
github.com/GoogleCloudPlatform/docker-credential-gcr/v2from 2.1.31 to 2.1.32Release notes
Sourced from github.com/GoogleCloudPlatform/docker-credential-gcr/v2's releases.
Commits
711dd80Update logrus to use newer version with no CVE (#187)2c33e9cMerge pull request #186 from Subserial/Subserial-patch-10692b51Add missing AR domainsUpdates
github.com/alicebob/miniredis/v2from 2.36.1 to 2.37.0Release notes
Sourced from github.com/alicebob/miniredis/v2's releases.
Changelog
Sourced from github.com/alicebob/miniredis/v2's changelog.
Commits
c1b59bffeat: implement HEXPIRE command (#424)Updates
github.com/containerd/containerd/v2from 2.2.1 to 2.2.2Release notes
Sourced from github.com/containerd/containerd/v2's releases.
... (truncated)
Commits
301b2daMerge pull request #12998 from samuelkarp/prepare-release-2.2.27e6ecf4Prepare release notes for v2.2.25dc7bb2Merge pull request #12987 from k8s-infra-cherrypick-robot/cherry-pick-12617-t...a20deadset default config_path in plugin init8b085ddMerge pull request #12936 from fidencio/release-2.2/backport-128357022beaMerge pull request #12957 from k8s-infra-cherrypick-robot/cherry-pick-12950-t...68855cbci: modprobe xt_comment on almalinux46fabccMerge pull request #12944 from k8s-infra-cherrypick-robot/cherry-pick-12941-t...ef7a8becore/mount: add test for getUnprivilegedMountFlags07b2cc0core/mount: fix getUnprivilegedMountFlags iterating over indices instead of v...Updates
github.com/containerd/platformsfrom 1.0.0-rc.2 to 1.0.0-rc.4Release notes
Sourced from github.com/containerd/platforms's releases.
Commits
09756f5Merge pull request #33 from dmcgowan/only-os3a284c1Merge pull request #31 from dmcgowan/windows-strip-features1e75776Merge pull request #30 from thaJeztah/platforms_refactoradbf321Strip the win32k when comparing windows platforms27058a1Add OnlyOS function allow matching any architectured028ee3ParseAll: refactor8f5e31aFormatAll: use a string-builder for formatting os-options0165130modernize --fixf453a3ago.mod: bump minimum go version to go1.24042728dadd benchmark for Parse, FormatAllUpdates
github.com/fatih/colorfrom 1.18.0 to 1.19.0Release notes
Sourced from github.com/fatih/color's releases.
Commits
ca25f6eMerge pull request #266 from fatih/dependabot/github_actions/actions/setup-go-61205984Bump actions/setup-go from 5 to 65715c20Merge pull request #269 from UnSubble/main2f6e200Merge branch 'main' into mainf72ec94Merge pull request #273 from fatih/dependabot/github_actions/actions/checkout-6848e633Merge branch 'main' into main4c2cd34Add tests7f812f0Bump actions/checkout from 4 to 6b7fc9f9Merge pull request #259 from fatih/dependabot/github_actions/dominikh/staticc...239a88fBump dominikh/staticcheck-action from 1.3.1 to 1.4.0Updates
github.com/go-git/go-git/v5from 5.16.5 to 5.17.2Release notes
Sourced from github.com/go-git/go-git/v5's releases.
Commits
45ae193Merge pull request #1944 from go-git/fix-permsfda4f74storage: filesystem/dotgit, Skip writing pack files that already exist on disk2212dc7Merge pull request #1941 from go-git/renovate/releases/v5.x-go-github.com-go-...ebb2d7dbuild: Update module github.com/go-git/go-git/v5 to v5.17.1 [SECURITY]5e23dfdMerge pull request #1937 from pjbgf/idx-v56b38a32Merge pull request #1935 from pjbgf/index-v5cd757fcplumbing: format/idxfile, Fix version and fanout checks3ec0d70plumbing: format/index, Fix tree extension invalidated entry parsingdbe10b6plumbing: format/index, Align V2/V3 long name and V4 prefix encoding with Gite9b65dfplumbing: format/index, Improve v4 entry name validationUpdates
github.com/google/go-containerregistryfrom 0.20.7 to 0.21.3Release notes
Sourced from github.com/google/go-containerregistry's releases.
... (truncated)
Commits
3888fb8bump golang to 1.25.7 (#2236)f439624tarball: detect symlink cycles in extractFileFromTar (#2232)400c263mutate: reject path traversal and symlink escape in Extract (#2227)47eedc9Bump goreleaser/goreleaser-action in the actions group (#2220)be0a845Bump the go-deps group across 4 directories with 7 updates (#2233)e916301migrate to github.com/moby/moby modules (#2228)8b2478eAdds local file support to thecrane indexsubcommand (#2223)9e0ccb0Better handle redirects to https in ping (#2225)85f2bf5crane: fix case in auth response json (#2218)e971d63Add WithFileBufferedOpener for file-backed daemon image buffering (#2214)Updates
github.com/hashicorp/go-getterfrom 1.8.4 to 1.8.6Release notes
Sourced from github.com/hashicorp/go-getter's releases.
Commits
d23bff4Merge pull request #608 from hashicorp/dependabot/go_modules/go-security-9c51...2c4aba8Merge pull request #613 from hashicorp/pull/v1.8.6fe61ed9Merge pull request #611 from hashicorp/SECVULN-41053d533656Merge pull request #606 from hashicorp/pull/CRT388f23dAdditional test for local branch and headb7ceaa5harden checkout ref handling and added regression tests769cc14Release version bump up6086a6aReview Comments Addressede02063cRevert "SECVULN Fix for git checkout argument injection enables arbitrary fil...c93084d[chore] : Bump google.golang.org/grpcUpdates
github.com/hashicorp/go-versionfrom 1.8.0 to 1.9.0Release notes
Sourced from github.com/hashicorp/go-version's releases.
Changelog
Sourced from github.com/hashicorp/go-version's changelog.
Commits
b80b1e6Update CHANGELOG for version 1.9.0 (#187)e93736fBump the github-actions-backward-compatible group across 1 directory with 2 u...c009de0Bump actions/upload-artifact from 6.0.0 to 7.0.0 in the github-actions-breaki...0474357Update GitHub Actions to trigger on pull requests and update go version (#185)b4ab5fcSupport parsing versions with custom prefixes via opt-in option (#79)25c683bMerge pull request #182 from hashicorp/dependabot/github_actions/github-actio...4f2bcd8Bump the github-actions-backward-compatible group with 3 updatesacb8b18Merge pull request #180 from hashicorp/dependabot/github_actions/github-actio...0394c4fMerge pull request #179 from hashicorp/dependabot/github_actions/github-actio...b2fbaa7Bump the github-actions-backward-compatible group across 1 directory with 2 u...Updates
github.com/hashicorp/hc-installfrom 0.9.2 to 0.9.3Release notes
Sourced from github.com/hashicorp/hc-install's releases.
Commits
08dbb4fgithub/release: Update Slack channel reference (#347)f8f2e09Prepare for 0.9.3 release (#346)f8cc5edgo: bump version to 1.24.13 (#344)fe07af6Update copyright headers to IBM (#345)b6ac954build(deps): bump golang.org/x/mod from 0.32.0 to 0.33.0 (#343)9543c11build(deps): bump github.com/go-git/go-git/v5 from 5.16.4 to 5.16.5 (#342)a6d0e0abuild(deps): bump actions/checkout from 6.0.1 to 6.0.2 in the github-actions-...17a8292build(deps): bump actions/setup-go from 6.1.0 to 6.2.0 in the github-actions-...78824a8build(deps): bump golang.org/x/mod from 0.31.0 to 0.32.0 (#338)e7288fabuild(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 in the github-a...Updates
github.com/hashicorp/terraform-execfrom 0.24.0 to 0.25.0Release notes
Sourced from github.com/hashicorp/terraform-exec's releases.
Changelog
Sourced from github.com/hashicorp/terraform-exec's changelog.