-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build(deps): bump the security group across 1 directory with 5 updates #1097
Conversation
Bumps the security group with 4 updates in the / directory: [github.com/aws/aws-sdk-go-v2](https://github.com/aws/aws-sdk-go-v2), [github.com/aws/aws-sdk-go-v2/config](https://github.com/aws/aws-sdk-go-v2), [github.com/containers/image/v5](https://github.com/containers/image) and [github.com/vmware-tanzu/velero](https://github.com/vmware-tanzu/velero). Updates `github.com/aws/aws-sdk-go-v2` from 1.30.3 to 1.30.5 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](aws/aws-sdk-go-v2@v1.30.3...v1.30.5) Updates `github.com/aws/aws-sdk-go-v2/config` from 1.27.27 to 1.27.32 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](aws/aws-sdk-go-v2@config/v1.27.27...config/v1.27.32) Updates `github.com/aws/aws-sdk-go-v2/credentials` from 1.17.27 to 1.17.31 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](aws/aws-sdk-go-v2@credentials/v1.17.27...credentials/v1.17.31) Updates `github.com/containers/image/v5` from 5.32.1 to 5.32.2 - [Release notes](https://github.com/containers/image/releases) - [Commits](containers/image@v5.32.1...v5.32.2) Updates `github.com/vmware-tanzu/velero` from 1.14.0 to 1.14.1 - [Release notes](https://github.com/vmware-tanzu/velero/releases) - [Changelog](https://github.com/vmware-tanzu/velero/blob/main/CHANGELOG.md) - [Commits](vmware-tanzu/velero@v1.14.0...v1.14.1) --- updated-dependencies: - dependency-name: github.com/aws/aws-sdk-go-v2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/aws/aws-sdk-go-v2/config dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/aws/aws-sdk-go-v2/credentials dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/containers/image/v5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/vmware-tanzu/velero dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security ... Signed-off-by: dependabot[bot] <support@github.com>
@dependabot merge |
This PR has been released (on staging) and is available for download with a embedded-cluster-smoke-test-staging-app license ID. Online Installer:
Airgap Installer (may take a few minutes before the airgap bundle is built):
Happy debugging! |
One of your CI runs failed on this pull request, so Dependabot won't merge it. Dependabot will still automatically merge this pull request if you amend it and your tests pass. |
@dependabot merge |
Bumps the security group with 4 updates in the / directory: github.com/aws/aws-sdk-go-v2, github.com/aws/aws-sdk-go-v2/config, github.com/containers/image/v5 and github.com/vmware-tanzu/velero.
Updates
github.com/aws/aws-sdk-go-v2
from 1.30.3 to 1.30.5Commits
a2b751d
Release 2024-09-03e22c249
Regenerated Clientsff0cf6f
Update API model3120376
refactoring of buildQuery to accept a list of maintained headers to l… (#2773)4ed838e
Merge pull request #2768 from bhavya2109sharma/presignedurl-requestpayer-changed4bd42f
Merge branch 'main' into presignedurl-requestpayer-change0353706
Added Changelog97e2d3f
Release 2024-08-304cca52b
Regenerated Clientsc8a5146
Update endpoints modelUpdates
github.com/aws/aws-sdk-go-v2/config
from 1.27.27 to 1.27.32Commits
a2b751d
Release 2024-09-03e22c249
Regenerated Clientsff0cf6f
Update API model3120376
refactoring of buildQuery to accept a list of maintained headers to l… (#2773)4ed838e
Merge pull request #2768 from bhavya2109sharma/presignedurl-requestpayer-changed4bd42f
Merge branch 'main' into presignedurl-requestpayer-change0353706
Added Changelog97e2d3f
Release 2024-08-304cca52b
Regenerated Clientsc8a5146
Update endpoints modelUpdates
github.com/aws/aws-sdk-go-v2/credentials
from 1.17.27 to 1.17.31Commits
a2b751d
Release 2024-09-03e22c249
Regenerated Clientsff0cf6f
Update API model3120376
refactoring of buildQuery to accept a list of maintained headers to l… (#2773)4ed838e
Merge pull request #2768 from bhavya2109sharma/presignedurl-requestpayer-changed4bd42f
Merge branch 'main' into presignedurl-requestpayer-change0353706
Added Changelog97e2d3f
Release 2024-08-304cca52b
Regenerated Clientsc8a5146
Update endpoints modelUpdates
github.com/containers/image/v5
from 5.32.1 to 5.32.2Release notes
Sourced from github.com/containers/image/v5's releases.
Commits
0b425a4
Release 5.32.22a87b21
Support accepting multiple Rekor public keys95c0635
Add fieldKeyPaths
andKeyDatas
toprSigstoreSigned
d42de59
Split verifySigstorePayloadBlobSignature from VerifySigstorePayloada5ea016
Use loadBytesFromConfigSources in prSignedBy.isSignatureAuthorAccepted03550b4
Turn loadBytesFromDataOrPath into loadBytesFromConfigSourcesc0c8d34
Use InvalidPolicyFormatError for invalid sigstore options4bcaca1
Merge pull request #2511 from mtrmac/5.32-versionc94eadb
Fix the version number6a17c28
Merge pull request #2508 from mtrmac/5.32-zstdUpdates
github.com/vmware-tanzu/velero
from 1.14.0 to 1.14.1Release notes
Sourced from github.com/vmware-tanzu/velero's releases.
Commits
8afe3ce
Merge pull request #8124 from Lyndon-Li/release-1.146ae1582
change log for 1.14.169d950e
Merge pull request #8118 from blackpiglet/fix_cve_for_1.14fb146cd
Bump base image and golang version to fix CVEs.cd601ca
Merge pull request #8037 from mrnold/pod-volume-message-7857-1.1476a3ecc
Add changelog file.3dde086
Avoid wrapping failed PVB status with empty message.ebafe12
Merge pull request #8035 from shubham-pampattiwar/expose-pv-patch-max-timeout...fea6316
Expose PVPatchMaximumDuration timeout for custom configuration6ae34a1
Merge pull request #8016 from sseago/plugin-leak-1.14Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot will merge this PR once CI passes on it, as requested by @laverya.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions