SpokeyWheeler / drawbridge

MIT License
0 stars 0 forks source link

fix(deps): update module github.com/hashicorp/hcl/v2 to v2.22.0 #135

Open renovate[bot] opened 7 months ago

renovate[bot] commented 7 months ago

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
github.com/hashicorp/hcl/v2 v2.20.0 -> v2.22.0 age adoption passing confidence

Release Notes

hashicorp/hcl (github.com/hashicorp/hcl/v2) ### [`v2.22.0`](https://redirect.github.com/hashicorp/hcl/blob/HEAD/CHANGELOG.md#v2220-August-26-2024) [Compare Source](https://redirect.github.com/hashicorp/hcl/compare/v2.21.0...v2.22.0) ##### Enhancements - feat: return an ExprSyntaxError for invalid references that end in a dot ([#​692](https://redirect.github.com/hashicorp/hcl/pull/692)) ### [`v2.21.0`](https://redirect.github.com/hashicorp/hcl/blob/HEAD/CHANGELOG.md#v2210-June-19-2024) [Compare Source](https://redirect.github.com/hashicorp/hcl/compare/v2.20.1...v2.21.0) ##### Enhancements - Introduce `ParseTraversalPartial`, which allows traversals that include the splat (`[*]`) index operator. ([#​673](https://redirect.github.com/hashicorp/hcl/pull/673)) - ext/dynblock: Now accepts marked values in `for_each`, and will transfer those marks (as much as technically possible) to values in the generated blocks. ([#​679](https://redirect.github.com/hashicorp/hcl/pull/679)) ##### Bugs Fixed - Expression evaluation will no longer panic if the splat operator is applied to an unknown value that has cty marks. ([#​678](https://redirect.github.com/hashicorp/hcl/pull/678)) ### [`v2.20.1`](https://redirect.github.com/hashicorp/hcl/blob/HEAD/CHANGELOG.md#v2201-March-26-2024) [Compare Source](https://redirect.github.com/hashicorp/hcl/compare/v2.20.0...v2.20.1) ##### Bugs Fixed - Return `ExprSyntaxError` when an invalid namespaced function is encountered during parsing ([#​668](https://redirect.github.com/hashicorp/hcl/pull/668)) ##### Internal - Standardize on only two value dumping/diffing libraries ([#​669](https://redirect.github.com/hashicorp/hcl/pull/669))

Configuration

πŸ“… Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

β™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

πŸ”• Ignore: Close this PR and you won't be reminded about this update again.



This PR was generated by Mend Renovate. View the repository job log.

guardrails[bot] commented 7 months ago

:warning: We detected 1 security issue in this pull request:

Vulnerable Libraries (1)
Severity | Details :-: | :-- Medium | [pkg:golang/github.com/hashicorp/hcl/v2@v2.22.0](https://github.com/SpokeyWheeler/drawbridge/blob/7a1b82af17208f2f0bb075881ed9a014bd245127/cmd/pkg/mod/github.com/knadh/koanf@v1.4.4/go.mod#L15) upgrade to: *> v2.22.0* More info on how to fix Vulnerable Libraries in [Go](https://docs.guardrails.io/docs/en/vulnerabilities/go/using_vulnerable_libraries.html?utm_source=ghpr).

πŸ‘‰ Go to the dashboard for detailed results.

πŸ“₯ Happy? Share your feedback with us.