forked from enterprise-contract/ec-cli
-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build(deps): bump the all group across 1 directory with 16 updates #184
Closed
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the all group with 10 updates in the / directory: | Package | From | To | | --- | --- | --- | | cuelang.org/go | `0.8.0` | `0.8.2` | | [github.com/enterprise-contract/enterprise-contract-controller/api](https://github.com/enterprise-contract/enterprise-contract-controller) | `0.1.39` | `0.1.46` | | [github.com/gkampitakis/go-snaps](https://github.com/gkampitakis/go-snaps) | `0.5.2` | `0.5.4` | | [github.com/hashicorp/go-getter](https://github.com/hashicorp/go-getter) | `1.7.3` | `1.7.4` | | [github.com/leanovate/gopter](https://github.com/leanovate/gopter) | `0.2.9` | `0.2.11` | | [github.com/open-policy-agent/conftest](https://github.com/open-policy-agent/conftest) | `0.50.0` | `0.52.0` | | [github.com/package-url/packageurl-go](https://github.com/package-url/packageurl-go) | `0.1.2` | `0.1.3` | | [github.com/sigstore/cosign/v2](https://github.com/sigstore/cosign) | `2.2.3` | `2.2.4` | | [github.com/tektoncd/pipeline](https://github.com/tektoncd/pipeline) | `0.54.0` | `0.59.0` | | [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver) | `0.29.3` | `0.30.1` | Updates `cuelang.org/go` from 0.8.0 to 0.8.2 Updates `github.com/enterprise-contract/enterprise-contract-controller/api` from 0.1.39 to 0.1.46 - [Release notes](https://github.com/enterprise-contract/enterprise-contract-controller/releases) - [Commits](enterprise-contract/enterprise-contract-controller@api/v0.1.39...api/v0.1.46) Updates `github.com/gkampitakis/go-snaps` from 0.5.2 to 0.5.4 - [Release notes](https://github.com/gkampitakis/go-snaps/releases) - [Commits](gkampitakis/go-snaps@v0.5.2...v0.5.4) Updates `github.com/hashicorp/go-getter` from 1.7.3 to 1.7.4 - [Release notes](https://github.com/hashicorp/go-getter/releases) - [Changelog](https://github.com/hashicorp/go-getter/blob/main/.goreleaser.yml) - [Commits](hashicorp/go-getter@v1.7.3...v1.7.4) Updates `github.com/leanovate/gopter` from 0.2.9 to 0.2.11 - [Release notes](https://github.com/leanovate/gopter/releases) - [Changelog](https://github.com/leanovate/gopter/blob/master/CHANGELOG.md) - [Commits](leanovate/gopter@v0.2.9...v0.2.11) Updates `github.com/open-policy-agent/conftest` from 0.50.0 to 0.52.0 - [Release notes](https://github.com/open-policy-agent/conftest/releases) - [Changelog](https://github.com/open-policy-agent/conftest/blob/master/.goreleaser.yml) - [Commits](open-policy-agent/conftest@v0.50.0...v0.52.0) Updates `github.com/open-policy-agent/opa` from 0.62.1 to 0.64.1 - [Release notes](https://github.com/open-policy-agent/opa/releases) - [Changelog](https://github.com/open-policy-agent/opa/blob/main/CHANGELOG.md) - [Commits](open-policy-agent/opa@v0.62.1...v0.64.1) Updates `github.com/package-url/packageurl-go` from 0.1.2 to 0.1.3 - [Release notes](https://github.com/package-url/packageurl-go/releases) - [Commits](package-url/packageurl-go@v0.1.2...v0.1.3) Updates `github.com/sigstore/cosign/v2` from 2.2.3 to 2.2.4 - [Release notes](https://github.com/sigstore/cosign/releases) - [Changelog](https://github.com/sigstore/cosign/blob/main/CHANGELOG.md) - [Commits](sigstore/cosign@v2.2.3...v2.2.4) Updates `github.com/sigstore/sigstore` from 1.8.2 to 1.8.3 - [Release notes](https://github.com/sigstore/sigstore/releases) - [Commits](sigstore/sigstore@v1.8.2...v1.8.3) Updates `github.com/tektoncd/pipeline` from 0.54.0 to 0.59.0 - [Release notes](https://github.com/tektoncd/pipeline/releases) - [Changelog](https://github.com/tektoncd/pipeline/blob/main/releases.md) - [Commits](tektoncd/pipeline@v0.54.0...v0.59.0) Updates `golang.org/x/net` from 0.22.0 to 0.24.0 - [Commits](golang/net@v0.22.0...v0.24.0) Updates `k8s.io/apiextensions-apiserver` from 0.29.3 to 0.30.1 - [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases) - [Commits](kubernetes/apiextensions-apiserver@v0.29.3...v0.30.1) Updates `k8s.io/apimachinery` from 0.29.3 to 0.30.1 - [Commits](kubernetes/apimachinery@v0.29.3...v0.30.1) Updates `k8s.io/client-go` from 0.29.3 to 0.30.1 - [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md) - [Commits](kubernetes/client-go@v0.29.3...v0.30.1) Updates `k8s.io/kube-openapi` from 0.0.0-20231010175941-2dd684a91f00 to 0.0.0-20240228011516-70dd3763d340 - [Commits](https://github.com/kubernetes/kube-openapi/commits) --- updated-dependencies: - dependency-name: cuelang.org/go dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/enterprise-contract/enterprise-contract-controller/api dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/gkampitakis/go-snaps dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/hashicorp/go-getter dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/leanovate/gopter dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/open-policy-agent/conftest dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: github.com/open-policy-agent/opa dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: github.com/package-url/packageurl-go dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/sigstore/cosign/v2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/sigstore/sigstore dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: github.com/tektoncd/pipeline dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: k8s.io/apiextensions-apiserver dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: k8s.io/apimachinery dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: k8s.io/client-go dependency-type: direct:production update-type: version-update:semver-minor dependency-group: all - dependency-name: k8s.io/kube-openapi dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all ... Signed-off-by: dependabot[bot] <[email protected]>
dependabot
bot
added
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
labels
May 20, 2024
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the all group with 10 updates in the / directory:
0.8.0
0.8.2
0.1.39
0.1.46
0.5.2
0.5.4
1.7.3
1.7.4
0.2.9
0.2.11
0.50.0
0.52.0
0.1.2
0.1.3
2.2.3
2.2.4
0.54.0
0.59.0
0.29.3
0.30.1
Updates
cuelang.org/go
from 0.8.0 to 0.8.2Updates
github.com/enterprise-contract/enterprise-contract-controller/api
from 0.1.39 to 0.1.46Release notes
Sourced from github.com/enterprise-contract/enterprise-contract-controller/api's releases.
... (truncated)
Commits
6f09ed5
Bump github/codeql-action from 3.25.3 to 3.25.54e21d55
Bump actions/checkout from 4.1.4 to 4.1.5dacc49a
Merge pull request #333 from enterprise-contract/dependabot/github_actions/so...856b9fc
Merge pull request #331 from enterprise-contract/dependabot/github_actions/os...552cb27
Bump softprops/action-gh-release from 2.0.4 to 2.0.5b00b170
Bump ossf/scorecard-action from 2.3.1 to 2.3.340ecac2
Merge pull request #327 from enterprise-contract/dependabot/go_modules/api/si...6c2cd6f
Rungo mod tidy
2ddfb79
Bump step-security/harden-runner from 2.7.0 to 2.7.1ba736bc
Merge pull request #323 from enterprise-contract/dependabot/go_modules/sigs.k...Updates
github.com/gkampitakis/go-snaps
from 0.5.2 to 0.5.4Release notes
Sourced from github.com/gkampitakis/go-snaps's releases.
Commits
f98a2f9
fix: slice bounds out of range [:5] (#98)e31ee30
fix: race condition when updating snapshots in parallel (#97)Updates
github.com/hashicorp/go-getter
from 1.7.3 to 1.7.4Release notes
Sourced from github.com/hashicorp/go-getter's releases.
Commits
268c11c
escape user provide string to git (#483)975961f
Merge pull request #433 from adrian-bl/netrc-fix5ccb39a
Make addAuthFromNetrc ignore ENOTDIR errorsUpdates
github.com/leanovate/gopter
from 0.2.9 to 0.2.11Commits
b641a79
Remove invalid type panic for now (addresses #86)4dccbc2
Remove invalid type panic for now (addresses #86)2607924
Panic on unsupported type4f507f6
Update build runner69954c9
Support array generators (addresses #86)f9f2f29
Merge pull request #85 from zhongdai/fix-dead-linkse59552d
Fixed the dead links.90cc76d
Merge pull request #82 from kkweon/master62760ed
fix(gen/struct): typo in the commentf350002
Keep track of command sieve (issue #81)Updates
github.com/open-policy-agent/conftest
from 0.50.0 to 0.52.0Release notes
Sourced from github.com/open-policy-agent/conftest's releases.
Commits
9b082a1
build(deps): bump github.com/open-policy-agent/opa from 0.64.0 to 0.64.1 (#947)1b3cc13
build(deps): bump github.com/hashicorp/go-getter from 1.7.3 to 1.7.4 (#948)298d74a
ci: Allow Dependabot to update github.com/hashicorp/go-getter (#946)28d92a4
build(deps): bump github.com/moby/buildkit from 0.13.1 to 0.13.2 (#944)c8ca358
build(deps): bump github.com/open-policy-agent/opa from 0.63.0 to 0.64.0 (#943)4ab6fea
build(deps): bump github.com/spdx/tools-golang from 0.5.3 to 0.5.4 (#941)37b04d6
build(deps): bump github.com/docker/docker from v25.0.3+incompatible to v25.0...c6bd5a5
build(deps): bump golang from 1.22.1-alpine to 1.22.2-alpine (#938)8f13bf6
build(deps): bump cuelang.org/go from 0.8.0 to 0.8.1 (#937)1989c6c
fix: Only raise problematic if error when rule has no name set (#935)Updates
github.com/open-policy-agent/opa
from 0.62.1 to 0.64.1Release notes
Sourced from github.com/open-policy-agent/opa's releases.
... (truncated)
Changelog
Sourced from github.com/open-policy-agent/opa's changelog.
... (truncated)
Commits
298f97d
Prepare v0.64.1 releasefaf6382
ci: pin GitHub Actions macos runner version and build for darwin/amd64e72e6f6
plugins/discovery: Update comparison logic for overrides75cc90a
Prepare v0.64.0 releasea400281
server: Keep default decision path in-sync with manager's configf2011b1
Adding Raygun to the policy-testing ecosystem (#6712)b58e87f
ast: Importingrego.v1
in v0 support modules when applicable (#6698)44fa8ad
Relax configuration check when Discovery is enabledef8532f
auth: requestToken close response body8260697
build: Update WASM Rego test generation setup (#6707)Updates
github.com/package-url/packageurl-go
from 0.1.2 to 0.1.3Release notes
Sourced from github.com/package-url/packageurl-go's releases.
Commits
7cb81af
Merge pull request #68 from ridhoq/dot-slash-valid-subpath-prefix6f82665
enable valid prefix322020f
add ../ as a valid prefix test62a8a4b
add ./ as a valid test casea8ae119
Merge pull request #69 from shibumi/fix-ci11504a3
Fix Github Actionsfe183c1
Merge pull request #66 from magnusbaeck/go-mod-versione033e37
go.mod: Bump required Go version to 1.18Updates
github.com/sigstore/cosign/v2
from 2.2.3 to 2.2.4Release notes
Sourced from github.com/sigstore/cosign/v2's releases.
Changelog
Sourced from github.com/sigstore/cosign/v2's changelog.
Commits
fb651b4
Add v2.2.4 changelog (#3662)629f5f8
Fixes for GHSA-88jx-383q-w4qc and GHSA-95pr-fxf5-86gv (#3661)302aee6
Refactor e2e-tests.yml workflow (#3627)d0b9861
chore(deps): bump golang.org/x/crypto from 0.21.0 to 0.22.0 (#3649)c95439b
chore(deps): bump github.com/spiffe/go-spiffe/v2 from 2.1.7 to 2.2.0 (#3653)430c985
chore(deps): bump golang.org/x/sync from 0.6.0 to 0.7.0 (#3655)48858a2
chore(deps): bump github.com/xanzy/go-gitlab from 0.101.0 to 0.102.0 (#3652)eba7c59
chore(deps): bump golang.org/x/term from 0.18.0 to 0.19.0 (#3651)2d13b65
chore(deps): bump golang.org/x/oauth2 from 0.18.0 to 0.19.0 (#3650)d56c9e8
chore(deps): bump the gomod group with 3 updates (#3648)Updates
github.com/sigstore/sigstore
from 1.8.2 to 1.8.3Release notes
Sourced from github.com/sigstore/sigstore's releases.
Commits
1b41d79
add support for verifying IEEE P1363 encoded ECDSA sigs (#1686)65a36c4
Update tuf root.json to version 9 from root-signing repo (#1649)656a152
build(deps): Bump the all group in /pkg/signature/kms/gcp with 1 update06016c2
build(deps): Bump the all group in /pkg/signature/kms/aws with 4 updates4440161
build(deps): Bump the all group with 2 updates97c04d0
build(deps): Bump the all group in /test/e2e with 1 update25dd9f3
build(deps): Bump the all group with 1 updated78dca2
build(deps): Bump the all group in /pkg/signature/kms/aws with 1 update405c5c4
build(deps): Bump the all groupb7f6993
build(deps): Bump the all group in /pkg/signature/kms/gcp with 2 updatesUpdates
github.com/tektoncd/pipeline
from 0.54.0 to 0.59.0Release notes
Sourced from github.com/tektoncd/pipeline's releases.
... (truncated)
Changelog
Sourced from github.com/tektoncd/pipeline's changelog.
... (truncated)
Commits
34d8c0f
chore(deps): bump go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptrace...e556bc7
fix: resolve pod creation failure on retry when usingworkspace.\<name>.volume
a494d6a
fix(taskrun): emit warning for missing secret in ServiceAccount instead of fa...fba68b7
Fix shell for tag-images stepb712fc5
chore(deps): bump go.opentelemetry.io/otel/sdk from 1.25.0 to 1.26.091bbee5
fix: do not set default kind when taskRef resolver is present30e389b
fix: ensure default type for params in remote tasks to prevent pipeline failuresfaccef8
Fix the shell in crane imageb419b2c
Add a feature flag to disable inline spec356b30d
chore(deps): bump actions/checkout from 4.1.2 to 4.1.3Updates
golang.org/x/net
from 0.22.0 to 0.24.0Commits
7bbe320
go.mod: update golang.org/x dependenciesc48da13
http2: fix TestServerContinuationFlood flakes762b58d
http2: fix tipos in commentba87210
http2: close connections when receiving too many headersebc8168
all: fix some typos3678185
http2: make TestCanonicalHeaderCacheGrowth faster448c44f
http2: remove clientTesterc7877ac
http2: convert the remaining clientTester tests to testClientConnd8870b0
http2: use synthetic time in TestIdleConnTimeoutd73acff
http2: only set up deadline when Server.IdleTimeout is positiveUpdates
k8s.io/apiextensions-apiserver
from 0.29.3 to 0.30.1Commits
3fb7350
Update dependencies to v0.30.1 tagcb47ad4
Merge remote-tracking branch 'origin/master' into release-1.306ce7f38
Update x/net for CVE-2023-45288