dev: bump the safe group across 1 directory with 15 updates#7616
Closed
dependabot[bot] wants to merge 1 commit into
Closed
dev: bump the safe group across 1 directory with 15 updates#7616dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the safe group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/KimMachineGun/automemlimit](https://github.com/KimMachineGun/automemlimit) | `0.7.1` | `0.7.2` | | [github.com/aws/aws-sdk-go](https://github.com/aws/aws-sdk-go) | `1.55.6` | `1.55.7` | | [github.com/emersion/go-smtp](https://github.com/emersion/go-smtp) | `0.21.3` | `0.22.0` | | [github.com/getsentry/sentry-go](https://github.com/getsentry/sentry-go) | `0.31.1` | `0.32.0` | | [github.com/gorilla/csrf](https://github.com/gorilla/csrf) | `1.7.2` | `1.7.3` | | [github.com/nats-io/nats-server/v2](https://github.com/nats-io/nats-server) | `2.11.0` | `2.11.3` | | [github.com/prometheus/client_golang](https://github.com/prometheus/client_golang) | `1.21.1` | `1.22.0` | | [github.com/redis/go-redis/v9](https://github.com/redis/go-redis) | `9.7.3` | `9.8.0` | | [github.com/spf13/cast](https://github.com/spf13/cast) | `1.7.1` | `1.8.0` | | [golang.org/x/net](https://github.com/golang/net) | `0.38.0` | `0.40.0` | | [golang.org/x/oauth2](https://github.com/golang/oauth2) | `0.28.0` | `0.30.0` | | [google.golang.org/grpc](https://github.com/grpc/grpc-go) | `1.71.1` | `1.72.0` | Updates `github.com/KimMachineGun/automemlimit` from 0.7.1 to 0.7.2 - [Release notes](https://github.com/KimMachineGun/automemlimit/releases) - [Commits](KimMachineGun/automemlimit@v0.7.1...v0.7.2) Updates `github.com/aws/aws-sdk-go` from 1.55.6 to 1.55.7 - [Release notes](https://github.com/aws/aws-sdk-go/releases) - [Changelog](https://github.com/aws/aws-sdk-go/blob/main/CHANGELOG_PENDING.md) - [Commits](aws/aws-sdk-go@v1.55.6...v1.55.7) Updates `github.com/emersion/go-smtp` from 0.21.3 to 0.22.0 - [Release notes](https://github.com/emersion/go-smtp/releases) - [Commits](emersion/go-smtp@v0.21.3...v0.22.0) Updates `github.com/getsentry/sentry-go` from 0.31.1 to 0.32.0 - [Release notes](https://github.com/getsentry/sentry-go/releases) - [Changelog](https://github.com/getsentry/sentry-go/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-go@v0.31.1...v0.32.0) Updates `github.com/gorilla/csrf` from 1.7.2 to 1.7.3 - [Release notes](https://github.com/gorilla/csrf/releases) - [Commits](gorilla/csrf@v1.7.2...v1.7.3) Updates `github.com/nats-io/nats-server/v2` from 2.11.0 to 2.11.3 - [Release notes](https://github.com/nats-io/nats-server/releases) - [Changelog](https://github.com/nats-io/nats-server/blob/main/.goreleaser.yml) - [Commits](nats-io/nats-server@v2.11.0...v2.11.3) Updates `github.com/nats-io/nats.go` from 1.41.0 to 1.41.2 - [Release notes](https://github.com/nats-io/nats.go/releases) - [Commits](nats-io/nats.go@v1.41.0...v1.41.2) Updates `github.com/prometheus/client_golang` from 1.21.1 to 1.22.0 - [Release notes](https://github.com/prometheus/client_golang/releases) - [Changelog](https://github.com/prometheus/client_golang/blob/main/CHANGELOG.md) - [Commits](prometheus/client_golang@v1.21.1...v1.22.0) Updates `github.com/redis/go-redis/v9` from 9.7.3 to 9.8.0 - [Release notes](https://github.com/redis/go-redis/releases) - [Changelog](https://github.com/redis/go-redis/blob/master/CHANGELOG.md) - [Commits](redis/go-redis@v9.7.3...v9.8.0) Updates `github.com/spf13/cast` from 1.7.1 to 1.8.0 - [Release notes](https://github.com/spf13/cast/releases) - [Commits](spf13/cast@v1.7.1...v1.8.0) Updates `golang.org/x/crypto` from 0.36.0 to 0.37.0 - [Commits](golang/crypto@v0.36.0...v0.37.0) Updates `golang.org/x/net` from 0.38.0 to 0.40.0 - [Commits](golang/net@v0.38.0...v0.40.0) Updates `golang.org/x/oauth2` from 0.28.0 to 0.30.0 - [Commits](golang/oauth2@v0.28.0...v0.30.0) Updates `golang.org/x/sync` from 0.12.0 to 0.14.0 - [Commits](golang/sync@v0.12.0...v0.14.0) Updates `google.golang.org/grpc` from 1.71.1 to 1.72.0 - [Release notes](https://github.com/grpc/grpc-go/releases) - [Commits](grpc/grpc-go@v1.71.1...v1.72.0) --- updated-dependencies: - dependency-name: github.com/KimMachineGun/automemlimit dependency-version: 0.7.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/aws/aws-sdk-go dependency-version: 1.55.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/emersion/go-smtp dependency-version: 0.22.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: github.com/getsentry/sentry-go dependency-version: 0.32.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: github.com/gorilla/csrf dependency-version: 1.7.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/nats-io/nats-server/v2 dependency-version: 2.11.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/nats-io/nats.go dependency-version: 1.41.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/prometheus/client_golang dependency-version: 1.22.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: github.com/redis/go-redis/v9 dependency-version: 9.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: github.com/spf13/cast dependency-version: 1.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: golang.org/x/crypto dependency-version: 0.37.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: golang.org/x/net dependency-version: 0.40.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: golang.org/x/oauth2 dependency-version: 0.30.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: golang.org/x/sync dependency-version: 0.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: google.golang.org/grpc dependency-version: 1.72.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe ... Signed-off-by: dependabot[bot] <support@github.com>
f352a74 to
ba9d5c5
Compare
Contributor
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the safe group with 12 updates in the / directory:
0.7.10.7.21.55.61.55.70.21.30.22.00.31.10.32.01.7.21.7.32.11.02.11.31.21.11.22.09.7.39.8.01.7.11.8.00.38.00.40.00.28.00.30.01.71.11.72.0Updates
github.com/KimMachineGun/automemlimitfrom 0.7.1 to 0.7.2Release notes
Sourced from github.com/KimMachineGun/automemlimit's releases.
Commits
a9a712bci: bump ubuntu versiona659ed1fix(memlimit): fix mountinfo validation logic when super options have spacesb5e3683chore(examples/gosigar): remove gosigar exampleUpdates
github.com/aws/aws-sdk-gofrom 1.55.6 to 1.55.7Release notes
Sourced from github.com/aws/aws-sdk-go's releases.
Commits
163aadarelease v1.55.7 (2025-04-22) (#5346)9eb2bfdAbort multi part download if the object is modified during download8d203ccUpdate bug-report.ymlUpdates
github.com/emersion/go-smtpfrom 0.21.3 to 0.22.0Commits
495c409client: introduce DataCommandf9e8d24Implement RRVSe2dbc50server: handle newline characters in error messagesb7d48abUpgrade dependencies8a5b093Add checking for auth to Server examplec6c3019server: reset session on EHLOe764d71client: allow manual Hello after Reset274020dreadme: drop CI badgeb63eedeclient: save greet error75e52afAllow manual Hello after StartTLSUpdates
github.com/getsentry/sentry-gofrom 0.31.1 to 0.32.0Release notes
Sourced from github.com/getsentry/sentry-go's releases.
Changelog
Sourced from github.com/getsentry/sentry-go's changelog.
Commits
530f74drelease: 0.32.0e068944Prepare 0.32.0 (#992)32c062fAddtransaction.datatocontexts.trace.data(#864)6019770Fix lint issues (#981)cfbfc6bExpose MockTransport, MockScope in root sentry package (#972)a4e0ea8Remove github token in lint (#982)031ec47build(deps): bump golangci/golangci-lint-action from 6.2.0 to 6.5.0 (#975)bdbb6bebuild(deps): bump codecov/codecov-action from 5.3.1 to 5.4.0 (#974)3d8d0e1build(deps): bump actions/create-github-app-token from 1.11.2 to 1.11.5 (#973)e56ac30build(deps): bump codecov/codecov-action from 5.1.2 to 5.3.1 (#962)Updates
github.com/gorilla/csrffrom 1.7.2 to 1.7.3Release notes
Sourced from github.com/gorilla/csrf's releases.
Commits
9dd6af1Merge commit from forkUpdates
github.com/nats-io/nats-server/v2from 2.11.0 to 2.11.3Release notes
Sourced from github.com/nats-io/nats-server/v2's releases.
... (truncated)
Commits
a82cfdaRelease v2.11.3707f953TLS 1.2 Negotiation on Windows with ECDSA server certificate (#6803)47d3b26fix: TLS 1.2 negotiation on windows with ECDSA cert743429fAdd test to demonstrate TLS1.2 issue on Windows852a8ceRelease v2.11.3-RC.2433b200[ADDED] MQTT: allow custom timeout for JS API calls (#6833)5ddbdbd[FIXED] Monitoring: Issue with Connz filters "cid" and "state=all" (#6849)ba329b9NRG: Stepping down from preferred candidate (#6851)ea43d74NRG: Stepping down from preferred candidatec2042caRelease v2.11.3-RC.1Updates
github.com/nats-io/nats.gofrom 1.41.0 to 1.41.2Release notes
Sourced from github.com/nats-io/nats.go's releases.
Commits
d1cdbf5Release v1.41.2 (#1859)ca54e50[FIXED] Bump golang.org/x/crypto to fix vulnerability (#1857)aeebc8d[FIXED] Use context in when purging stream in kv.PurgeDeletes() (#1858)7bfd96a[FIXED] Add RemoveStatusListener method and fixFetch memory leak (#1856)50e6153Release v1.41.1 (#1851)e04728e[FIXED] Use default timeout for ObjectStore.Get when no deadline is set on ct...8a2bd73[IMPROVED] Removegolang.org/x/textdependency (#1849)Updates
github.com/prometheus/client_golangfrom 1.21.1 to 1.22.0Release notes
Sourced from github.com/prometheus/client_golang's releases.
... (truncated)
Changelog
Sourced from github.com/prometheus/client_golang's changelog.
Commits
d50be25Cut 1.22.0 (#1793)1043db7Cut 1.22.0-rc.0 (#1768)e575c9cpromhttp: Isolate zstd support and klauspost/compress library use to promhttp...f2276aaMerge pull request #1764 from prometheus/dependabot/github_actions/github-act...9df772cbuild(deps): bump peter-evans/create-pull-requesta3548c5Merge pull request #1754 from saswatamcode/exp-eh60fd2b0Remove go.work file for now8f9d0deexp: Add dependabot configc5cf981Merge pull request #1762 from prometheus/release-1.21e84c305exp: Reset snappy buf (#1756)Updates
github.com/redis/go-redis/v9from 9.7.3 to 9.8.0Release notes
Sourced from github.com/redis/go-redis/v9's releases.
... (truncated)
Commits
fba6decMerge branch 'master' into v9.846ede21chore(release): Update version to v9.8.02299211feat(options): panic when options are nil (#3363)8f58235chore(ci): Use redis 8 rc2 image. (#3361)09dc351migrate golangci-lint config to v2 format (#3354)cb2cfb0fix:PubSubisn't concurrency-safe (#3360)46d4b20feat: func isEmptyValue support time.Time (#3273)f9b0e70update HExpire command documentation (#3355)b28606cUpdate README.md, use redis discord guild (#3331)adb4798fix: Fix panic caused when arg is nil (#3353)Updates
github.com/spf13/castfrom 1.7.1 to 1.8.0Release notes
Sourced from github.com/spf13/cast's releases.
Commits
01004f2Merge pull request #234 from arui1628/master4f997d9refactor: use generic toSlice for ToInt64SliceE76b8370Merge pull request #242 from spf13/dependabot/github_actions/github/codeql-ac...0af7fb9build(deps): bump github/codeql-action from 3.28.15 to 3.28.17929f138Add ToInt64Slice() and ToInt64SliceE()ac031efMerge pull request #239 from spf13/dependabot/github_actions/github/codeql-ac...79b62f3Merge pull request #240 from spf13/dependabot/github_actions/actions/dependen...1bd7e4fbuild(deps): bump actions/dependency-review-action from 4.5.0 to 4.6.00c806f9build(deps): bump github/codeql-action from 2.13.4 to 3.28.15e929a71Merge pull request #236 from nmvalera/masterUpdates
golang.org/x/cryptofrom 0.36.0 to 0.37.0Commits
959f8f3go.mod: update golang.org/x dependencies769bcd6ssh: use the configured rand in kex initd0a798fcryptobyte: fix typo 'octects' into 'octets' for asn1.goacbcbefacme: remove unnecessary []byte conversion376eb14x509roots: support constrained rootsb369b72crypto/internal/poly1305: implement function update in assembly on loong646b853fbssh/knownhosts: check more than one keyUpdates
golang.org/x/netfrom 0.38.0 to 0.40.0Commits
7d6e62ago.mod: update golang.org/x dependenciesea0c1d9internal/timeseries: use built-in max/min to simplify the code3e7a445quic: skip packet numbers for optimistic ack defense3f563d3quic: use an enum for sentPacket statea3b6e77quic: don't re-lose packets when discarding keys22500a6quic: decode packet numbers >255 in testsdd0b200quic: remove go1.21 build constraintb8d8877go.mod: update golang.org/x dependenciesUpdates
golang.org/x/oauth2from 0.28.0 to 0.30.0Commits
cf14319oauth2: fix expiration time window check32d34efinternal: include clientID in auth style cache key2d34e30oauth2: replace a magic number with AuthStyleUnknown696f7b3all: modernize with doc links and any471209boauth2: drop dependency on go-cmp6968da2oauth2: sync Token.ExpiresIn from internal Tokend2c4e0aoauth2: context instead of golang.org/x/net/context in doc883dc3cendpoints: add various endpoints from stale CLs1c06e87all: make use of oauth.Token.ExpiresIn65c15a3oauth2: remove extra periodUpdates
golang.org/x/syncfrom 0.12.0 to 0.14.0Commits
506c70ferrgroup: propagate panic and Goexit through Wait396f3a0errgroup: document calling Go before WaitUpdates
google.golang.org/grpcfrom 1.71.1 to 1.72.0Release notes
Sourced from google.golang.org/grpc's releases.
Commits
a43eba6Change version to 1.72.0 (#8218)48f48c1balancer/pickfirstleaf: Avoid reading Address.Metadata (#8227) (#8259)fd6f585Cherry-pick #8159 and #8243 to v1.72.x (#8255)79ca174stats/opentelemetry: fix trace attributes message sequence numbers to start f...57a2605xdsclient: fix TestServerFailureMetrics_BeforeResponseRecv test to wait for w...5edab9exdsclient: add grpc.xds_client.server_failure counter mertric (#8203)78ba661regenerate protos (#8208)6819ed7delegatingresolver: Stop calls into delegates once the parent resolver is clo...a51009dresolver: convert EndpointMap to use generics (#8189)b0d1203resolver: create AddressMapV2 with generics to replace AddressMap (#8187)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions