Bump the go_modules group across 1 directory with 10 updates #7
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the go_modules group with 8 updates in the / directory:
5.8.15.11.01.57.01.57.11.31.01.33.01.3.31.3.724.0.5+incompatible24.0.9+incompatible3.0.03.0.31.1.51.1.121.19.11.20.0Updates
github.com/go-git/go-git/v5from 5.8.1 to 5.11.0Release notes
Sourced from github.com/go-git/go-git/v5's releases.
... (truncated)
Commits
5d08d3bMerge pull request #958 from pjbgf/workval5bd1d8fbuild: Ensure checkout is the first operationb2c1982git: worktree, Align validation with upstream rulescec7da6Merge pull request #953 from pjbgf/alternates8b47cebstorage: filesystem, Add option to set a specific FS for alternates4f61489Merge pull request #941 from djmoch/filestats-renameae552ceMerge pull request #939 from dhoizner/fix-pull-after-shallowcc1895bMerge pull request #950 from aymanbagabas/validate-refde1d5a5git: validate reference namesd87110bMerge pull request #948 from go-git/dependabot/go_modules/cli/go-git/github.c...Updates
golang.org/x/cryptofrom 0.12.0 to 0.16.0Commits
325b735ssh/test: skip TestSSHCLIAuth on Windows1eadac5go.mod: update golang.org/x dependenciesb2d7c26ssh: add (*Client).DialContext method1c17e20ssh: fix certificate authentication with OpenSSH 7.2-7.7270bf25curve25519/internal/field/_asm: go mod tidy to fix x/sys version1cf1811ssh: use the correct token from the clienta2edfb5cryptobyte: fix ReadOptionalASN1Booleanff15cd5ssh: eliminate some goroutine leaks in tests and exampleseb61739ssh: allow to configure public key auth algorithms on the server side42c83ffssh: try harder to detect incorrect passwords for legacy PEM encryptionUpdates
google.golang.org/grpcfrom 1.57.0 to 1.57.1Release notes
Sourced from google.golang.org/grpc's releases.
Commits
d9c4eabChange version to 1.57.1 (#6712)6a1400dserver: prohibit more than MaxConcurrentStreams handlers from running at once...7511ddfChange version to 1.57.1-dev (#6449)Updates
google.golang.org/protobuffrom 1.31.0 to 1.33.0Updates
github.com/cloudflare/circlfrom 1.3.3 to 1.3.7Release notes
Sourced from github.com/cloudflare/circl's releases.
Commits
c48866bReleasing CIRCL v1.3.775ef91ekyber: remove division by q in ciphertext compression899732abuild(deps): bump golang.org/x/crypto99f0f71Releasing CIRCL v1.3.6e728d0dApply thibmeu code review suggestionsceb2d90Updating blindrsa to be compliant with RFC9474.44133f7spelling: trippedc2076d6spelling: transposesdad2166spelling: title171c418spelling: thresholdUpdates
github.com/docker/dockerfrom 24.0.5+incompatible to 24.0.9+incompatibleRelease notes
Sourced from github.com/docker/docker's releases.
... (truncated)
Commits
fca702dMerge pull request from GHSA-xw73-rw38-6vjcf78a772Merge pull request #47281 from thaJeztah/24.0_backport_bump_containerd_binary...61afffeMerge pull request #47270 from thaJeztah/24.0_backport_bump_runc_binary_1.1.12b38e74cMerge pull request #47276 from thaJeztah/24.0_backport_bump_runc_1.1.12dac5663update containerd binary to v1.7.1320e1af3vendor: github.com/opencontainers/runc v1.1.12858919dupdate runc binary to v1.1.12141ad39Merge pull request #47266 from vvoland/ci-fix-makeps1-templatefail-24db968c6hack/make.ps1: Fix go list pattern61c51fbMerge pull request #47221 from vvoland/pkg-pools-close-noop-24Updates
github.com/go-jose/go-jose/v3from 3.0.0 to 3.0.3Release notes
Sourced from github.com/go-jose/go-jose/v3's releases.
Changelog
Sourced from github.com/go-jose/go-jose/v3's changelog.
Commits
add6a28v3: backport decompression limit fix (#107)11bb4e7doc: in v3 branch's README, point to v4 as latest (#101)863f73bv3.0.2: Update changelog (#95)bdbc794Update golang.org/x/crypto to v0.19 (backport) (#94)25bce79Updated go-jose v3.0.0 to v3.0.1 in jose-util (#70)aa386dfjwe/CompactSerialize: improve performance. (#67)053c9bfDecryptMulti: handle decompression error (#19)ca9011bBump go version to 1.21.4 to satisfy govulncheck (#68)c8399dfRevert pull request #10 (multiple audiences) (#24)ec819e9Add a security.md doc for contacting us about potential security vulnerabilit...Updates
github.com/opencontainers/runcfrom 1.1.5 to 1.1.12Release notes
Sourced from github.com/opencontainers/runc's releases.
... (truncated)
Changelog
Sourced from github.com/opencontainers/runc's changelog.
... (truncated)
Commits
51d5e94VERSION: release 1.1.122a4ed3emerge 1.1-GHSA-xr7r-f8xq-vfvv into release-1.1e9665f4init: don't special-case logrus fds683ad2flibcontainer: mark all non-stdio fds O_CLOEXEC before spawning initb6633f4cgroup: plug leaks of /sys/fs/cgroup handle284ba30init: close internal fds before execvefbe3eedsetns init: do explicit lookup of execve argument early0994249init: verify after chdir that cwd is inside the container506552aFix File to Close099ff69merge #4177 into opencontainers/runc:release-1.1Updates
go.temporal.io/serverfrom 1.19.1 to 1.20.0Release notes
Sourced from go.temporal.io/server's releases.
... (truncated)
Commits
b313b7fDelete workflow execution from visibility store even if it was deleted from m...06188f3Suport dual visibility in visibility persistence checks (#3968)93fb0ecPopulate history size in describe workflow and list workflow response (#3964)f9bd5b0DeleteExecutions workflow: pass nextPageToken with ContinueAsNewError (#3966)cbed0feFix wrap user query string in parenthesis (#3967)7ab7e9cMetering metadata propagation (#3965)2db4175Fix IWRR scheduler UpdateWeight test (#3961)0bb6884Handle namespace not found case in redirection interceptor (#3947)868b2d1Update IsAdvancedVisibilityActivity to include SQL DB (#3957)98a52d1Quick fix for generated mock file name (#3959)Updates
golang.org/x/netfrom 0.14.0 to 0.19.0Commits
a8e0109go.mod: update golang.org/x dependencies13e88ddquic: rename listener{_test}.go to endpoint{_test}.goe26b9a4quic: rename Listener to Endpoint399218dquic: implement stream flushd87f99bquic: idle timeouts, handshake timeouts, and keepalive7b5abfaquic: basic qlog supportfbaf412go.mod: update golang.org/x dependenciescc6f4d1http2: remove ancient build-tagged files for unsupported Go versionsa720b30http2: allocate buffer pools using pointers to arraysa7ef1a2internal/quic/cmd/interop: don't t.Log after test finishesDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.