Skip to content

Commit 592c551

Browse files
committed
Check the boxes that appease Dependabot
Part of me is tempted to _downgrade_ gRPC and OTel just out of spite. The conditions required to make a useful attack out of either of them are so specialized that… like… ugh. A sub-part of that part of me is looking forward to the next Jia Tan dropping a CVSS >= 7.5 to coax every enterprise big enough to have requirements around these kinds of scans to pull the evil code as fast as possible. That's not even far off from how the actual Jia Tan pressured Linux distros.
1 parent 8d584ce commit 592c551

313 files changed

Lines changed: 5855 additions & 4616 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

go.mod

Lines changed: 33 additions & 33 deletions
Original file line numberDiff line numberDiff line change
@@ -5,25 +5,25 @@ go 1.26.0
55
require (
66
cloud.google.com/go/firestore v1.18.0
77
github.com/aws-observability/aws-otel-go/exporters/xrayudp v1.0.0
8-
github.com/aws/aws-lambda-go v1.51.1
9-
github.com/aws/aws-sdk-go-v2 v1.40.1
8+
github.com/aws/aws-lambda-go v1.54.0
9+
github.com/aws/aws-sdk-go-v2 v1.41.6
1010
github.com/aws/aws-sdk-go-v2/config v1.31.6
1111
github.com/aws/aws-sdk-go-v2/feature/dynamodb/expression v1.8.9
12-
github.com/aws/aws-sdk-go-v2/service/dynamodb v1.53.3
12+
github.com/aws/aws-sdk-go-v2/service/dynamodb v1.57.2
1313
github.com/aws/aws-sdk-go-v2/service/ssm v1.64.2
1414
github.com/awslabs/aws-lambda-go-api-proxy v0.16.2
1515
github.com/googleapis/gax-go/v2 v2.15.0
1616
github.com/spf13/cobra v1.10.1
1717
go.etcd.io/bbolt v1.4.3
18-
go.opentelemetry.io/contrib/detectors/aws/lambda v0.64.0
19-
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-lambda-go/otellambda v0.64.0
20-
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-lambda-go/otellambda/xrayconfig v0.64.0
21-
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-sdk-go-v2/otelaws v0.64.0
22-
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.64.0
23-
go.opentelemetry.io/contrib/propagators/aws v1.39.0
24-
go.opentelemetry.io/otel v1.41.0
25-
go.opentelemetry.io/otel/sdk v1.41.0
26-
google.golang.org/grpc v1.79.3
18+
go.opentelemetry.io/contrib/detectors/aws/lambda v0.68.0
19+
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-lambda-go/otellambda v0.68.0
20+
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-lambda-go/otellambda/xrayconfig v0.68.0
21+
go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-sdk-go-v2/otelaws v0.68.0
22+
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.68.0
23+
go.opentelemetry.io/contrib/propagators/aws v1.43.0
24+
go.opentelemetry.io/otel v1.43.0
25+
go.opentelemetry.io/otel/sdk v1.43.0
26+
google.golang.org/grpc v1.80.0
2727
)
2828

2929
require (
@@ -35,19 +35,19 @@ require (
3535
github.com/aws/aws-sdk-go-v2/credentials v1.18.10 // indirect
3636
github.com/aws/aws-sdk-go-v2/feature/dynamodb/attributevalue v1.20.9 // indirect
3737
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.6 // indirect
38-
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.15 // indirect
39-
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.15 // indirect
38+
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.22 // indirect
39+
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.22 // indirect
4040
github.com/aws/aws-sdk-go-v2/internal/ini v1.8.3 // indirect
4141
github.com/aws/aws-sdk-go-v2/service/dynamodbstreams v1.30.2 // indirect
42-
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.4 // indirect
43-
github.com/aws/aws-sdk-go-v2/service/internal/endpoint-discovery v1.11.15 // indirect
42+
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.8 // indirect
43+
github.com/aws/aws-sdk-go-v2/service/internal/endpoint-discovery v1.11.22 // indirect
4444
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.6 // indirect
45-
github.com/aws/aws-sdk-go-v2/service/sns v1.39.8 // indirect
46-
github.com/aws/aws-sdk-go-v2/service/sqs v1.42.18 // indirect
45+
github.com/aws/aws-sdk-go-v2/service/sns v1.39.16 // indirect
46+
github.com/aws/aws-sdk-go-v2/service/sqs v1.42.26 // indirect
4747
github.com/aws/aws-sdk-go-v2/service/sso v1.29.1 // indirect
4848
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.34.2 // indirect
4949
github.com/aws/aws-sdk-go-v2/service/sts v1.38.2 // indirect
50-
github.com/aws/smithy-go v1.24.0 // indirect
50+
github.com/aws/smithy-go v1.25.0 // indirect
5151
github.com/cenkalti/backoff/v5 v5.0.3 // indirect
5252
github.com/cespare/xxhash/v2 v2.3.0 // indirect
5353
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // indirect
@@ -57,27 +57,27 @@ require (
5757
github.com/google/s2a-go v0.1.9 // indirect
5858
github.com/google/uuid v1.6.0 // indirect
5959
github.com/googleapis/enterprise-certificate-proxy v0.3.6 // indirect
60-
github.com/grpc-ecosystem/grpc-gateway/v2 v2.27.3 // indirect
60+
github.com/grpc-ecosystem/grpc-gateway/v2 v2.29.0 // indirect
6161
github.com/inconshreveable/mousetrap v1.1.0 // indirect
6262
github.com/pmezard/go-difflib v1.0.1-0.20181226105442-5d4384ee4fb2 // indirect
6363
github.com/spf13/pflag v1.0.9 // indirect
6464
go.opentelemetry.io/auto/sdk v1.2.1 // indirect
65-
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.64.0 // indirect
66-
go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.39.0 // indirect
67-
go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.39.0 // indirect
68-
go.opentelemetry.io/otel/metric v1.41.0 // indirect
69-
go.opentelemetry.io/otel/trace v1.41.0 // indirect
70-
go.opentelemetry.io/proto/otlp v1.9.0 // indirect
71-
golang.org/x/crypto v0.49.0 // indirect
72-
golang.org/x/net v0.52.0 // indirect
73-
golang.org/x/oauth2 v0.34.0 // indirect
65+
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.68.0 // indirect
66+
go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.43.0 // indirect
67+
go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.43.0 // indirect
68+
go.opentelemetry.io/otel/metric v1.43.0 // indirect
69+
go.opentelemetry.io/otel/trace v1.43.0 // indirect
70+
go.opentelemetry.io/proto/otlp v1.10.0 // indirect
71+
golang.org/x/crypto v0.50.0 // indirect
72+
golang.org/x/net v0.53.0 // indirect
73+
golang.org/x/oauth2 v0.36.0 // indirect
7474
golang.org/x/sync v0.20.0 // indirect
75-
golang.org/x/sys v0.42.0 // indirect
76-
golang.org/x/text v0.35.0 // indirect
75+
golang.org/x/sys v0.43.0 // indirect
76+
golang.org/x/text v0.36.0 // indirect
7777
golang.org/x/time v0.14.0 // indirect
7878
google.golang.org/api v0.248.0 // indirect
7979
google.golang.org/genproto v0.0.0-20250826171959-ef028d996bc1 // indirect
80-
google.golang.org/genproto/googleapis/api v0.0.0-20251202230838-ff82c1b0f217 // indirect
81-
google.golang.org/genproto/googleapis/rpc v0.0.0-20260319201613-d00831a3d3e7 // indirect
80+
google.golang.org/genproto/googleapis/api v0.0.0-20260420184626-e10c466a9529 // indirect
81+
google.golang.org/genproto/googleapis/rpc v0.0.0-20260420184626-e10c466a9529 // indirect
8282
google.golang.org/protobuf v1.36.11 // indirect
8383
)

0 commit comments

Comments
 (0)