-
Notifications
You must be signed in to change notification settings - Fork 94
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump the security group across 1 directory with 14 updates #1706
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/go_modules/security-6f104fb94e
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the security group with 10 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/microsoft/go-mssqldb](https://github.com/microsoft/go-mssqldb) | `1.7.2` | `1.8.0` | | [go.opentelemetry.io/otel](https://github.com/open-telemetry/opentelemetry-go) | `1.32.0` | `1.33.0` | | [go.opentelemetry.io/otel/sdk](https://github.com/open-telemetry/opentelemetry-go) | `1.32.0` | `1.33.0` | | [k8s.io/api](https://github.com/kubernetes/api) | `0.31.3` | `0.32.0` | | [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver) | `0.31.3` | `0.32.0` | | [k8s.io/cli-runtime](https://github.com/kubernetes/cli-runtime) | `0.31.3` | `0.32.0` | | [golang.org/x/net](https://github.com/golang/net) | `0.31.0` | `0.32.0` | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.16.3` | `3.16.4` | | [k8s.io/kubelet](https://github.com/kubernetes/kubelet) | `0.31.3` | `0.32.0` | | [k8s.io/metrics](https://github.com/kubernetes/metrics) | `0.31.3` | `0.32.0` | Updates `github.com/microsoft/go-mssqldb` from 1.7.2 to 1.8.0 - [Release notes](https://github.com/microsoft/go-mssqldb/releases) - [Changelog](https://github.com/microsoft/go-mssqldb/blob/main/CHANGELOG.md) - [Commits](microsoft/go-mssqldb@v1.7.2...v1.8.0) Updates `go.opentelemetry.io/otel` from 1.32.0 to 1.33.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.32.0...v1.33.0) Updates `go.opentelemetry.io/otel/sdk` from 1.32.0 to 1.33.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.32.0...v1.33.0) Updates `k8s.io/api` from 0.31.3 to 0.32.0 - [Commits](kubernetes/api@v0.31.3...v0.32.0) Updates `k8s.io/apiextensions-apiserver` from 0.31.3 to 0.32.0 - [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases) - [Commits](kubernetes/apiextensions-apiserver@v0.31.3...v0.32.0) Updates `k8s.io/apimachinery` from 0.31.3 to 0.32.0 - [Commits](kubernetes/apimachinery@v0.31.3...v0.32.0) Updates `k8s.io/apiserver` from 0.31.3 to 0.32.0 - [Commits](kubernetes/apiserver@v0.31.3...v0.32.0) Updates `k8s.io/cli-runtime` from 0.31.3 to 0.32.0 - [Commits](kubernetes/cli-runtime@v0.31.3...v0.32.0) Updates `k8s.io/client-go` from 0.31.3 to 0.32.0 - [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md) - [Commits](kubernetes/client-go@v0.31.3...v0.32.0) Updates `golang.org/x/net` from 0.31.0 to 0.32.0 - [Commits](golang/net@v0.31.0...v0.32.0) Updates `helm.sh/helm/v3` from 3.16.3 to 3.16.4 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.16.3...v3.16.4) Updates `k8s.io/kubelet` from 0.31.3 to 0.32.0 - [Commits](kubernetes/kubelet@v0.31.3...v0.32.0) Updates `k8s.io/metrics` from 0.31.3 to 0.32.0 - [Commits](kubernetes/metrics@v0.31.3...v0.32.0) Updates `k8s.io/utils` from 0.0.0-20240711033017-18e509b52bc8 to 0.0.0-20241104100929-3ea5e8cea738 - [Commits](https://github.com/kubernetes/utils/commits) --- updated-dependencies: - dependency-name: github.com/microsoft/go-mssqldb dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel/sdk dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/api dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiextensions-apiserver dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apimachinery dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiserver dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/cli-runtime dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/client-go dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: helm.sh/helm/v3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/kubelet dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/metrics dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/utils dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security ... Signed-off-by: dependabot[bot] <[email protected]>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the security group with 10 updates in the / directory:
1.7.2
1.8.0
1.32.0
1.33.0
1.32.0
1.33.0
0.31.3
0.32.0
0.31.3
0.32.0
0.31.3
0.32.0
0.31.0
0.32.0
3.16.3
3.16.4
0.31.3
0.32.0
0.31.3
0.32.0
Updates
github.com/microsoft/go-mssqldb
from 1.7.2 to 1.8.0Release notes
Sourced from github.com/microsoft/go-mssqldb's releases.
Commits
dad23d2
Feat: Add tracing data to prelogin and login7 packets (#228)2521238
Bump github.com/Azure/azure-sdk-for-go/sdk/azidentity (#229)4b95a0f
Fix error checks during certificatePath reading and parsing in azuread (#227)573423d
Fix: Connection not closed when database name is incorrect #173 fix (#224)02deabf
Support for UDT (hierarchyid, geometry and geography) (#216)9b84d9b
Vulnerabilty dependency x/net (#203)2395b78
Migrate managed identity example to azidentity (#199)Updates
go.opentelemetry.io/otel
from 1.32.0 to 1.33.0Changelog
Sourced from go.opentelemetry.io/otel's changelog.
Commits
8c38f80
Release v1.33.0 (#6035)aa95895
Fix sdk/log record attr value limit (#6032)58fdf2a
Cache successful requests in lychee (#6030)ac386f3
fix(deps): update golang.org/x/exp digest to 1829a12 (#6031)dd83cac
chore(deps): update googleapis to e6fa225 (#6028)de4ff31
fix(deps): update github.com/opentracing-contrib/go-grpc/test digest to ca80a...0598dae
sdk/metric: Add experimental Enabled method to synchronous instruments (#6016)3bb224b
chore(deps): update google.golang.org/genproto/googleapis/rpc digest to a4fef...13da554
chore(deps): update codecov/codecov-action action to v5.1.1 (#6026)b4a91a2
chore(deps): update module go.opentelemetry.io/auto/sdk to v1.1.0 (#6025)Updates
go.opentelemetry.io/otel/sdk
from 1.32.0 to 1.33.0Changelog
Sourced from go.opentelemetry.io/otel/sdk's changelog.
Commits
8c38f80
Release v1.33.0 (#6035)aa95895
Fix sdk/log record attr value limit (#6032)58fdf2a
Cache successful requests in lychee (#6030)ac386f3
fix(deps): update golang.org/x/exp digest to 1829a12 (#6031)dd83cac
chore(deps): update googleapis to e6fa225 (#6028)de4ff31
fix(deps): update github.com/opentracing-contrib/go-grpc/test digest to ca80a...0598dae
sdk/metric: Add experimental Enabled method to synchronous instruments (#6016)3bb224b
chore(deps): update google.golang.org/genproto/googleapis/rpc digest to a4fef...13da554
chore(deps): update codecov/codecov-action action to v5.1.1 (#6026)b4a91a2
chore(deps): update module go.opentelemetry.io/auto/sdk to v1.1.0 (#6025)Updates
k8s.io/api
from 0.31.3 to 0.32.0Commits
e622342
Update dependencies to v0.32.0 tagb0543a3
Merge remote-tracking branch 'origin/master' into release-1.32f6bae9a
Drop use of winreadlinkvolume godebug optionea815d5
Merge remote-tracking branch 'origin/master' into release-1.32c331a79
Revert to go1.22 windows filesystem stdlib behaviorf8e5e36
Merge pull request #128407 from ndixita/pod-level-resources84e0db8
Merge pull request #127857 from Jefftree/cle-v1alpha2cbaf5a0
Merge pull request #128686 from thockin/take_over_pr-125233a503a4f
Merge pull request #128687 from tallclair/allocated-status3f43b5a
Merge pull request #128240 from LionelJouin/KEP-4817Updates
k8s.io/apiextensions-apiserver
from 0.31.3 to 0.32.0Commits
7215469
Update dependencies to v0.32.0 tag887679f
Merge remote-tracking branch 'origin/master' into release-1.32bd027a4
Drop use of winreadlinkvolume godebug option919f42b
Merge remote-tracking branch 'origin/master' into release-1.32a4e1034
Revert to go1.22 windows filesystem stdlib behavior89d6021
Run codegen2a91f8a
Merge pull request #127513 from tkashem/delete-undecryptable06dc95a
api: run codegen19f7123
Merge pull request #128639 from jpbetz/fix-cost-test66631b6
Fix flake in CEL cost stability testsUpdates
k8s.io/apimachinery
from 0.31.3 to 0.32.0Commits
59e9003
Merge remote-tracking branch 'origin/master' into release-1.32639247c
Drop use of winreadlinkvolume godebug option220d7c3
Merge remote-tracking branch 'origin/master' into release-1.32c199d3b
Revert to go1.22 windows filesystem stdlib behavior16af2ff
implement unsafe deletion, and wire it6ff8305
api: run codegenca9b8b2
api: add a new field to meta/v1 DeleteOptionsd941d9f
Merge pull request #128503 from benluddy/cbor-codecs-featuregate3b4250f
Wire serving codecs to CBOR feature gate.daaad09
Merge pull request #128501 from benluddy/watch-cbor-seqUpdates
k8s.io/apiserver
from 0.31.3 to 0.32.0Commits
9d86305
Update dependencies to v0.32.0 tag34b7cc9
Merge remote-tracking branch 'origin/master' into release-1.325945d46
Drop use of winreadlinkvolume godebug optionadee259
Merge remote-tracking branch 'origin/master' into release-1.32fbba927
Merge pull request #129081 from stlaz/fg_remote_uidb3c0cb6
Merge remote-tracking branch 'origin/master' into release-1.32bf14697
Revert to go1.22 windows filesystem stdlib behaviorf76e404
featuregate UID in RequestHeader authenticator1f546ee
Possible fix for alpha CI jobs failing with AllowUnsafeMalformedObjectDeletio...3423727
Merge pull request #127581 from richabanker/flagz-apiserverUpdates
k8s.io/cli-runtime
from 0.31.3 to 0.32.0Commits
49dbc54
Update dependencies to v0.32.0 tagf8c45be
Merge remote-tracking branch 'origin/master' into release-1.32f750fa0
Drop use of winreadlinkvolume godebug option9da77ec
Merge remote-tracking branch 'origin/master' into release-1.3215e0912
Revert to go1.22 windows filesystem stdlib behavior3a2a8b4
hack/pin-dependency.sh k8s.io/kube-openapi 32ad38e42d3faf1ce94eb29f4ea6d76333...8ceafc0
Merge pull request #128396 from ritazh/deprecate-EnforceMountableSecretsAnnot...f78772d
deprecate EnforceMountableSecretsAnnotation in 1.3244c3029
Merge pull request #128507 from dims/use-k8s.io/utils/lru-instead-of-github.c...16fbedb
Use k8s.io/utils/lru instead of github.com/golang/groupcache/lruUpdates
k8s.io/client-go
from 0.31.3 to 0.32.0Commits
0d55461
Update dependencies to v0.32.0 tag4765ade
Merge remote-tracking branch 'origin/master' into release-1.32692a511
Drop use of winreadlinkvolume godebug option9df5099
Merge remote-tracking branch 'origin/master' into release-1.32120beb2
Revert to go1.22 windows filesystem stdlib behavior55d23e2
Align fake client-go clients with the main interface646e79b
Run codegenc475fe0
Generify fake clientsets955401c
Merge pull request #128407 from ndixita/pod-level-resourceseddb107
Merge pull request #127857 from Jefftree/cle-v1alpha2Updates
golang.org/x/net
from 0.31.0 to 0.32.0Commits
285e1cf
go.mod: update golang.org/x dependenciesd0a1049
route: remove unused sizeof* consts on freebsd6e41410
http2: fix benchmarks using common frame read/write functions4be1253
route: change from syscall to x/sys/unixbc37675
http2: limit number of PINGs bundled with RST_STREAMse9cd716
route: fix parse of zero-length sockaddrs in RIBs9a51899
http2: add SETTINGS_ENABLE_CONNECT_PROTOCOL supportUpdates
helm.sh/helm/v3
from 3.16.3 to 3.16.4Release notes
Sourced from helm.sh/helm/v3's releases.
Commits
7877b45
Bump golang.org/x/crypto from 0.30.0 to 0.31.0848e586
Bump the k8s-io group with 7 updatesUpdates
k8s.io/kubelet
from 0.31.3 to 0.32.0Commits
ab6d6c0
Update dependencies to v0.32.0 tag78330cb
Merge remote-tracking branch 'origin/master' into release-1.329aa82a6
Drop use of winreadlinkvolume godebug option351b167
Merge remote-tracking branch 'origin/master' into release-1.3297885c0
Revert to go1.22 windows filesystem stdlib behaviorde4c476
DRA kubelet: use unique protobuf package name3b14f64
KEP-4603: Node specific kubelet config for maximum backoff down to 1 second (...353a4bc
Merge pull request #126503 from skitt/generic-fake-client35e9b33
Generify fake clientsets2466f75
Merge pull request #128646 from pohly/dra-kubelet-separate-beta-apiUpdates
k8s.io/metrics
from 0.31.3 to 0.32.0Commits
747abc1
Update dependencies to v0.32.0 tag5d76b1a
Merge remote-tracking branch 'origin/master' into release-1.3254a1c04
Drop use of winreadlinkvolume godebug optionf4ebf54
Merge remote-tracking branch 'origin/master' into release-1.32140b464
Revert to go1.22 windows filesystem stdlib behavior5197509
Run codegen0eafb3f
Merge pull request #128580 from jpbetz/bump-kube-openapi4175bc6
hack/pin-dependency.sh k8s.io/kube-openapi 32ad38e42d3faf1ce94eb29f4ea6d76333...7658283
Merge pull request #128507 from dims/use-k8s.io/utils/lru-instead-of-github.c...3f92891
Use k8s.io/utils/lru instead of github.com/golang/groupcache/lruUpdates
k8s.io/utils
from 0.0.0-20240711033017-18e509b52bc8 to 0.0.0-20241104100929-3ea5e8cea738Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions