5GSEC / nimbus

Intent driven security automation framework
Apache License 2.0
19 stars 9 forks source link

chore(deps): Bump github.com/google/cel-go from 0.18.2 to 0.20.1 #126

Closed dependabot[bot] closed 1 month ago

dependabot[bot] commented 1 month ago

Bumps github.com/google/cel-go from 0.18.2 to 0.20.1.

Release notes

Sourced from github.com/google/cel-go's releases.

v0.20.1

Minor release to capture a couple bug fixes and API / build visibility changes.

What's Changed

  • Track sizes of comprehension results by #901
  • Introduce new helper APIs for optimizers by #903
  • Make the CEL ast package public. #904

New Contributors

Full Changelog: https://github.com/google/cel-go/compare/v0.20.0...v0.21.0

Release v0.20.0

What's Changed

  • Minor adjustment to inlining to fix a bad bind #888
  • Ensure error typed variables are returned as errors from Resolve b #889
  • ext.NativeTypes: Recursively add sub-types #892
  • DefaultTypeAdapter: Add support for missing custom scalars #893
  • Lists: Fix handling of go arrays #894

New Contributors

Full Changelog: https://github.com/google/cel-go/compare/v0.19.0...v0.20.0

Release v0.19.0

Features

  • Add AST node IDs to types.Err for errorable expressions #862
  • Set membership test rewriting optimizer #865
  • Introduce 'wither' method for changing type traits #871
  • Add option to include test types in the repl #855

Fixes

  • Fix MaxID to consider macro keys and expressions #861
  • Update builtin macros to use unique IDs. #866
  • Fix incorrect example in string formatting docs. #873
  • Fix the optional type name and type identifier resolution #870
  • Fix type substitution within parameterized type names #880
  • Bump follow-redirects from 1.15.2 to 1.15.4 in /repl/appengine/web [882]

New Contributors

Full Changelog: https://github.com/google/cel-go/compare/v0.18.2...v0.19.0

Commits
  • 7654578 Make the CEL ast package public. (#904)
  • 9775e65 Introduce new helper APIs for optimizers (#903)
  • 13b3d56 Track sizes of comprehension results (#901)
  • b1ed395 Bump ip from 2.0.0 to 2.0.1 in /repl/appengine/web (#898)
  • f221e70 Lists: Fix handling of go arrays (#894)
  • 19b2ad1 DefaultTypeAdapter: Add support for missing custom scalars (#893)
  • 5883379 ext.NativeTypes: Recursively add sub-types (#892)
  • ba58735 Revert the AST copy as some users were relying on Check to be mutable (#890)
  • 6b5d14c Ensure error typed variables are returned as errors from Resolve (#889)
  • fb9a6ce Minor adjustment to inlining to fix a bad bind (#888)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
anurag-rajawat commented 1 month ago

@dependabot rebase

dependabot[bot] commented 1 month ago

Looks like this PR has been edited by someone other than Dependabot. That means Dependabot can't rebase it - sorry!

If you're happy for Dependabot to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

anurag-rajawat commented 1 month ago

@dependabot recreate

anurag-rajawat commented 1 month ago

@dependabot merge

dependabot[bot] commented 1 month ago

Dependabot tried to merge this PR, but received the following error from GitHub:

At least 1 approving review is required by reviewers with write access.
anurag-rajawat commented 1 month ago

@dependabot merge