Update all non-major dependencies#50
Open
renovate[bot] wants to merge 1 commit into
Open
Conversation
6d6c811 to
1b4b54d
Compare
359229c to
91dea37
Compare
Contributor
Author
ℹ Artifact update noticeFile name: go.modIn order to perform the update(s) described in the table above, Renovate ran the
Details:
|
c0ca513 to
48188c0
Compare
3f0c4c1 to
3c59f8f
Compare
ad08047 to
2dbd594
Compare
f39a77b to
0f84cdb
Compare
7fa159e to
75767a2
Compare
75767a2 to
ce78366
Compare
f3d5f9e to
42c4b83
Compare
0de4e44 to
51ed69f
Compare
be6c9d7 to
0e759a5
Compare
0e759a5 to
daf3e13
Compare
e126d5b to
858707a
Compare
858707a to
9b05f90
Compare
83dc792 to
07bd125
Compare
a18deef to
094e394
Compare
e58f74c to
ead3f22
Compare
ead3f22 to
ce3e9a7
Compare
ce3e9a7 to
7fe13f6
Compare
Contributor
Author
ℹ️ Artifact update noticeFile name: go.modIn order to perform the update(s) described in the table above, Renovate ran the
Details:
|
faeb36c to
93ea791
Compare
93ea791 to
c201cde
Compare
c201cde to
1904ab3
Compare
ff12392 to
5ee81cc
Compare
e33d221 to
b731a93
Compare
b731a93 to
41cd3a7
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
1.24.1→1.26.3v0.61.1→v0.71.2v1.7.27→v1.7.33v0.5.0→v0.7.0v0.20.3→v0.21.7v1.49.1→v1.53.0v1.9.3→v1.9.4v1.10.0→v1.11.11.24.2→1.26.41.24.0→1.26.3v0.13.0→v0.21.00.18.1→0.22.0Release Notes
go-delve/delve (delve)
v1.26.3Added
Fixed
Changed
v1.26.1Added
append_filebuilt-in function (#4252, @sding3)Fixed
ProducerAfterOrEqualcomparison for devel builds (#4234, @typesanitizer)Changed
v1.26.0Added
Fixed
Changed
v1.25.2Added
Fixed
Changed
v1.25.1Added
Fixed
Changed
v1.25.0Added
Fixed
Changed
v1.24.2Added
Fixed
Changed
aquasecurity/trivy (github.com/aquasecurity/trivy)
v0.71.2Compare Source
Changelog
055a5c8release: v0.71.2 [release/v0.71] (#10871)875328afix(deps): bump alpine to 3.24.1 [backport: release/v0.71] (#10870)998f7b3chore(deps): bump the common group with 4 updates [backport: release/v0.71] (#10867)v0.71.1Compare Source
v0.71.0Compare Source
⚡ Highlights ⚡
👉 https://redirect.github.com/aquasecurity/trivy/discussions/10767
Changelog
https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md#0710-2026-06-01
v0.70.0⚡ Highlights ⚡
👉 https://redirect.github.com/aquasecurity/trivy/discussions/10546
Changelog
https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md#0700-2026-04-16
v0.69.3Compare Source
Changelog
6fb20c8release: v0.69.3 [release/v0.69] (#10293)dabefecfix(deps): bump github.com/go-git/go-git/v5 from 5.16.4 to 5.16.5 [backport: release/v0.69] (#10291)v0.69.2Compare Source
Changelog
cfa322erelease: v0.69.2 [release/v0.69] (#10266)86debcefix(deps): bump go.opentelemetry.io/otel/sdk from 1.39.0 to 1.40.0 [backport: release/v0.69] (#10267)cf3d4cdfix(deps): bump github.com/cloudflare/circl from 1.6.1 to 1.6.3 [backport: release/v0.69] (#10264)6dfd3b0ci: remove apidiff workflowv0.69.1Compare Source
v0.69.0Compare Source
v0.68.2Compare Source
v0.68.1Compare Source
v0.68.0Compare Source
v0.67.2Compare Source
Changelog
60c57adrelease: v0.67.2 [release/v0.67] (#9639)f3ee80cfix: Usefetch-level: 1to check out trivy-repo in the release workflow [backport: release/v0.67] (#9638)v0.67.1Compare Source
Changelog
cbed239release: v0.67.1 [release/v0.67] (#9614)1a84093fix: restore compatibility for google.protobuf.Value [backport: release/v0.67] (#9631)3bc1490fix: using SrcVersion instead of Version for echo detector [backport: release/v0.67] (#9629)542eee7fix: addbuildInfoforBlobInfoinrpcpackage [backport: release/v0.67] (#9615)f65dd05fix(vex): don't use reused BOM [backport: release/v0.67] (#9612)v0.67.0Compare Source
👉 Trivy v0.67.0 release notes (click here)
⬇️ Download Trivy
🐳 New Docker Install option
docker pull get.trivy.dev/image/trivy:0.67.0Changelog
https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md#0670-2025-09-30
v0.66.0Compare Source
👉 Trivy v.66.0 release notes (click here)
⬇️ Download Trivy
Full changelog
v0.65.0Compare Source
👉 Trivy v.65.0 release notes (click here)
⬇️ Download Trivy
Full changelog
v0.64.1Compare Source
Changelog
86ee3c1release: v0.64.1 [release/v0.64] (#9122)4e12722fix(misconf): skip rewriting expr if attr is nil [backport: release/v0.64] (#9127)9a7d384fix(cli): Add more non-sensitive flags to telemetry [backport: release/v0.64] (#9124)53adfbafix(rootio): check full version to detectroot.iopackages [backport: release/v0.64] (#9120)8cf1bf9fix(alma): parse epochs from rpmqa file [backport: release/v0.64] (#9119)v0.64.0Compare Source
👉 Trivy v.64.0 release notes (click here)
⬇️ Download Trivy
Full changelog
v0.63.0Compare Source
👉 Trivy v.63.0 release notes (click here)
⬇️ Download Trivy
Full changelog
v0.62.1Compare Source
Changelog
c75ed21release: v0.62.1 [release/v0.62] (#8825)aafebebchore(deps): bump the common group across 1 directory with 10 updates [backport: release/v0.62] (#8831)99485cffix(misconf): check if for-each is known when expanding dyn block [backport: release/v0.62] (#8826)b4fc9e8fix(redhat): trim invalid suffix from content_sets in manifest parsing [backport: release/v0.62] (#8824)v0.62.0Compare Source
⚡Release highlights and summary⚡
👉 https://redirect.github.com/aquasecurity/trivy/discussions/8801
Changelog
https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md#0620-2025-04-30
containerd/containerd (github.com/containerd/containerd)
v1.7.33: containerd 1.7.33Compare Source
Welcome to the v1.7.33 release of containerd!
The thirty-third patch release for containerd 1.7 contains various fixes
and updates including security patches.
Security Updates
containerd
go-jose
Please try out the release binaries and report any issues at
https://github.com/containerd/containerd/issues.
Contributors
Changes
17 commits
7517e6737Prepare release notes for v1.7.33ab306518aMerge commit from forkd34cdafdaMerge commit from fork9ab2b7a89Bound user-database file reads in openBoundedUserFile1e9806f90Merge commit from fork4d8ba4d23Do not propagate reserved labels from image configs74c728c13update runc binary to v1.3.6947caa4b7update go to 1.26.4/1.25.11e884e964eConfigure udevd children-max for root-testb9e756888Clean up disk space in node e2e workflow4dfc1844eBump go-jose to v3.0.5 to address CVE-2026-34986Dependency Changes
Previous release can be found at v1.7.32
v1.7.32: containerd 1.7.32Compare Source
Welcome to the v1.7.32 release of containerd!
The thirty-second patch release for containerd 1.7 contains various fixes
and updates including a security patch.
containerd
Allow hosts.toml to contain only root-level fields without an explicit [host] section (#10028)
Fix handling of out-of-range USER values in OCI spec to avoid unexpected username/group lookups (#13450)
Apply hardening to block AF_ALG in default socket policy (#13406)
Support both "volatile" and "fsync=volatile" mount options for volatile snapshotter (#13299)
Set AppArmor abi conditionally to support versions < 3.0 (#13273)
Please try out the release binaries and report any issues at
https://github.com/containerd/containerd/issues.
17 commits
bc87d865cPrepare release notes for v1.7.32503f47946oci: return explicit error for out-of-range USER valuese55b747d3seccomp: Block AF_ALG in default socket policy4627a65f8seccomp: Document socket rule scope and socketcall limitation24007441dFix error parsing hosts.toml without anyhosttree940733149Support both styles of volatile mount option2b732c892apparmor: Set abi conditionally0db1e143aAdd GitHub Action for k8s node e2e tests3223a75c2Update for latest updates to release tool1b30082ebUpdate release process after 1.7This release has no dependency changes
Previous release can be found at v1.7.31
v1.7.31: containerd 1.7.31Compare Source
Welcome to the v1.7.31 release of containerd!
The thirty-first patch release for containerd 1.7 contains various fixes
and updates including a security patch.
Security Updates
Highlights
Container Runtime Interface (CRI)
Please try out the release binaries and report any issues at
https://github.com/containerd/containerd/issues.
Contributors
Changes
37 commits
7d2662653Prepare release notes for v1.7.313f795c02aupdate github.com/moby/spdystream v0.5.17b1e1b17bupdate to Go 1.25.9, 1.26.2b673f2d42update golangci-lint to v2.9.0 with go1.26 supportd88d8513aremove windows/arm from cross builda763407b5Ignore warnings for golangci-lint bump03dcd8360ci: bump golangci from 6.5.2 to 7.0.0c08711218Update github.com/moby/spdystream v0.2.0->v0.5.0043548f6dSkip TestExportAndImportMultiLayer on s390xe99bd6050[release/1.7] update runc binary to v1.3.53a3103aafCODEOWNERS: mark Sam and Chris as owners for 1.79b4cfa271Ignore NOCHANGE error53e9e73f0ci: modprobe xt_comment on almalinuxConfiguration
📅 Schedule: (UTC)
* 0-3 * * 1)🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.