Commit 8e56bb1
chore(deps): bump golang.org/x/crypto to v0.52.0 (#605)
## Summary
Remediates the open CRITICAL Dependabot alert for `golang.org/x/crypto`
by bumping it from `v0.45.0` to `v0.52.0` (patched version).
`golang.org/x/crypto v0.52.0` requires Go >= 1.25, so this also bumps
the module `go` directive `1.24.0 → 1.25.0` (and drops the now-redundant
`toolchain go1.24.1` line). CI resolves its Go version from `go.mod`
(`go-version-file: go.mod`); there are no Dockerfile pinned Go versions
to update.
```
golang.org/x/crypto v0.45.0 -> v0.52.0 (fixes CRITICAL alert)
go 1.24.0 -> 1.25.0 (required by x/crypto v0.52.0)
```
Transitive `golang.org/x/{net,sys,text,term}` were pulled forward by `go
mod tidy` as a consequence. The `vendor/` tree was regenerated via `go
mod vendor` — hence the large (mechanical) vendored diff.
### CI lint compatibility (`ci:` commit)
The Go 1.25 bump broke the CI `go-tests` job: the pinned `golangci-lint
v1.64.4` (built with Go 1.24) refuses to target a `go 1.25.0` module.
Upgraded the lint step to `golangci-lint-action@v8.0.0` + `golangci-lint
v2.5.0` (built with Go 1.25) and migrated `.golangci.yml` to the v2
schema (via `golangci-lint migrate`).
To preserve the *prior effective* linter behavior (and avoid
reformatting unrelated source), the v2-only linters that would otherwise
fire on existing code are disabled (`funcorder`, `godoclint`,
`noinlineerr`, `wsl_v5`), and staticcheck is configured to exclude the
`ST1*`/`QF1*` check groups (v1 had `stylecheck` disabled). The old
`goimports` `local-prefixes` setting was dropped because the v1 config
used the misspelled key `linter-settings`, so it was silently ignored
and never enforced.
Verified locally: `go build ./...`, `go vet ./...`, `go test ./...`, and
`golangci-lint run ./...` (v2.5.0) all pass. CI green.
Link to Devin session:
https://app.devin.ai/sessions/77c5bbaf5b114aac80ad2c021c2b14f4
Requested by: @kparkinson-ld
---------
Co-authored-by: Devin AI <158243242+devin-ai-integration[bot]@users.noreply.github.com>1 parent fbd693c commit 8e56bb1
129 files changed
Lines changed: 8146 additions & 36509 deletions
File tree
- .github/workflows
- vendor
- golang.org/x
- crypto
- blake2b
- hkdf
- ssh
- agent
- knownhosts
- sys
- cpu
- unix
- windows
- text
- encoding/unicode
- unicode/norm
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
25 | 25 | | |
26 | 26 | | |
27 | 27 | | |
28 | | - | |
| 28 | + | |
29 | 29 | | |
30 | | - | |
| 30 | + | |
31 | 31 | | |
32 | 32 | | |
33 | 33 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | | - | |
2 | | - | |
| 1 | + | |
3 | 2 | | |
4 | | - | |
5 | 3 | | |
6 | | - | |
7 | 4 | | |
8 | | - | |
| 5 | + | |
9 | 6 | | |
10 | | - | |
11 | | - | |
12 | | - | |
13 | | - | |
14 | | - | |
15 | | - | |
16 | | - | |
17 | | - | |
18 | | - | |
19 | | - | |
20 | | - | |
21 | | - | |
22 | | - | |
23 | | - | |
24 | | - | |
25 | | - | |
26 | | - | |
27 | | - | |
28 | | - | |
29 | | - | |
30 | | - | |
31 | | - | |
32 | | - | |
33 | | - | |
34 | | - | |
35 | | - | |
36 | | - | |
37 | | - | |
38 | | - | |
39 | | - | |
40 | | - | |
41 | | - | |
42 | | - | |
43 | | - | |
44 | | - | |
45 | | - | |
46 | | - | |
47 | | - | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
48 | 63 | | |
49 | | - | |
50 | | - | |
51 | | - | |
52 | | - | |
53 | | - | |
54 | | - | |
55 | | - | |
56 | | - | |
57 | | - | |
58 | | - | |
59 | | - | |
60 | | - | |
61 | | - | |
62 | | - | |
63 | 64 | | |
64 | | - | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | 2 | | |
3 | | - | |
4 | | - | |
5 | | - | |
| 3 | + | |
6 | 4 | | |
7 | 5 | | |
8 | 6 | | |
| |||
66 | 64 | | |
67 | 65 | | |
68 | 66 | | |
69 | | - | |
70 | | - | |
| 67 | + | |
| 68 | + | |
71 | 69 | | |
72 | | - | |
73 | | - | |
| 70 | + | |
| 71 | + | |
74 | 72 | | |
75 | 73 | | |
76 | 74 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
262 | 262 | | |
263 | 263 | | |
264 | 264 | | |
265 | | - | |
266 | | - | |
| 265 | + | |
| 266 | + | |
267 | 267 | | |
268 | 268 | | |
269 | 269 | | |
| |||
323 | 323 | | |
324 | 324 | | |
325 | 325 | | |
326 | | - | |
327 | | - | |
| 326 | + | |
| 327 | + | |
328 | 328 | | |
329 | 329 | | |
330 | 330 | | |
| |||
374 | 374 | | |
375 | 375 | | |
376 | 376 | | |
377 | | - | |
378 | | - | |
| 377 | + | |
| 378 | + | |
379 | 379 | | |
380 | | - | |
381 | | - | |
| 380 | + | |
| 381 | + | |
382 | 382 | | |
383 | 383 | | |
384 | 384 | | |
385 | 385 | | |
386 | 386 | | |
387 | 387 | | |
388 | | - | |
389 | | - | |
| 388 | + | |
| 389 | + | |
390 | 390 | | |
391 | 391 | | |
392 | 392 | | |
| |||
This file was deleted.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
0 commit comments