Skip to content

Bump the regclient group across 1 directory with 2 updates#127

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/docker/docker/regclient-3b7031cb80
Open

Bump the regclient group across 1 directory with 2 updates#127
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/docker/docker/regclient-3b7031cb80

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot Bot commented on behalf of github May 2, 2026

Bumps the regclient group with 2 updates in the /docker directory: sigstore/cosign/cosign and regclient/regctl.

Updates sigstore/cosign/cosign from v3.0.5 to v3.0.6

Updates regclient/regctl from v0.11.2 to v0.11.4

Release notes

Sourced from regclient/regctl's releases.

v0.11.4

Release v0.11.4

Security:

  • Validate server URL in token auth. (PR 1075)
  • Upgrading Go fixes CVE-2026-33814 and CVE-2026-39836, other vulnerabilities fixed in 1.26.3 were not called by this project. (PR 1084)

Features:

  • Support scanning OCI Layout for referrers. (PR 1074)
  • Add created timestamp in OCI Layout entries. (PR 1081)
  • tag.ls now accepts the same pagination parameters as repo.ls. (PR 1086)

Fixes:

  • Push tags for minor and major releases on Docker Hub. (PR 1087)

Contributors:

v0.11.3

Release v0.11.3

Security:

Features:

  • Add support for pushing digest with tags. ([PR 1062][pr-1062])
  • Handle OCI-Tag headers with comma separators. ([PR 1070][pr-1070])

Contributors:

... (truncated)

Changelog

Sourced from regclient/regctl's changelog.

Release v0.11.4

Security:

  • Validate server URL in token auth. (PR 1075)
  • Upgrading Go fixes CVE-2026-33814 and CVE-2026-39836, other vulnerabilities fixed in 1.26.3 were not called by this project. (PR 1084)

Features:

  • Support scanning OCI Layout for referrers. (PR 1074)
  • Add created timestamp in OCI Layout entries. (PR 1081)
  • tag.ls now accepts the same pagination parameters as repo.ls. (PR 1086)

Fixes:

  • Push tags for minor and major releases on Docker Hub. (PR 1087)

Contributors:

Commits
  • 8b080b4 Release v0.11.4
  • 520f2d9 Merge for release v0.11.4
  • b413945 Merge pull request #1087 from sersoft-gmbh/bugfix/docker-hub-release
  • 1da9ca0 Merge pull request #1086 from sersoft-gmbh/feature/paginated-tags
  • 550bcd9 Fix docker workflow missing minor/major tags on docker hub push
  • d316d85 Allow pagination parameters on tag listing
  • f9d9912 Merge pull request #1084 from sudo-bmitch/pr-update-20260510
  • 623af26 Version bump
  • 92ea103 Merge pull request #1082 from sudo-bmitch/pr-update-20260503
  • 177fb14 Version bump
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file docker Pull requests that update docker code labels May 2, 2026
@dependabot dependabot Bot changed the title Bump the regclient group in /docker with 2 updates Bump the regclient group across 1 directory with 2 updates May 3, 2026
@dependabot dependabot Bot force-pushed the dependabot/docker/docker/regclient-3b7031cb80 branch 2 times, most recently from 80ee3a5 to df0fe4a Compare May 10, 2026 16:14
@dependabot dependabot Bot force-pushed the dependabot/docker/docker/regclient-3b7031cb80 branch from df0fe4a to aeedf98 Compare May 17, 2026 16:14
Bumps the regclient group with 2 updates in the /docker directory: sigstore/cosign/cosign and [regclient/regctl](https://github.com/regclient/regclient).


Updates `sigstore/cosign/cosign` from v3.0.5 to v3.0.6

Updates `regclient/regctl` from v0.11.2 to v0.11.4
- [Release notes](https://github.com/regclient/regclient/releases)
- [Changelog](https://github.com/regclient/regclient/blob/v0.11.4/release.md)
- [Commits](regclient/regclient@v0.11.2...v0.11.4)

---
updated-dependencies:
- dependency-name: regclient/regctl
  dependency-version: v0.11.3
  dependency-type: direct:production
  dependency-group: regclient
- dependency-name: sigstore/cosign/cosign
  dependency-version: v3.0.6
  dependency-type: direct:production
  dependency-group: regclient
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/docker/docker/regclient-3b7031cb80 branch from aeedf98 to ff02355 Compare May 24, 2026 16:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file docker Pull requests that update docker code L: docker

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants