miracum / fhir-gateway

A thin layer between FHIR REST clients and resource processing pipelines.
Apache License 2.0
13 stars 7 forks source link

chore(deps): update all non-major dependencies #142

Closed renovate[bot] closed 6 months ago

renovate[bot] commented 7 months ago

Mend Renovate

This PR contains the following updates:

Package Type Update Change Age Adoption Passing Confidence
ghcr.io/miracum/fhir-pseudonymizer patch v2.21.7 -> v2.21.9 age adoption passing confidence
ghcr.io/miracum/vfps patch v1.3.4 -> v1.3.5 age adoption passing confidence
io.micrometer:micrometer-core dependencies patch 1.12.4 -> 1.12.5 age adoption passing confidence
io.micrometer:micrometer-registry-prometheus dependencies patch 1.12.4 -> 1.12.5 age adoption passing confidence
org.springframework.boot plugin patch 3.2.4 -> 3.2.5 age adoption passing confidence

Release Notes

miracum/fhir-pseudonymizer (ghcr.io/miracum/fhir-pseudonymizer) ### [`v2.21.9`](https://togithub.com/miracum/fhir-pseudonymizer/releases/tag/v2.21.9) [Compare Source](https://togithub.com/miracum/fhir-pseudonymizer/compare/v2.21.8...v2.21.9) ##### Miscellaneous Chores - **deps:** update all non-major dependencies ([#​168](https://togithub.com/miracum/fhir-pseudonymizer/issues/168)) ([dba64e2](https://togithub.com/miracum/fhir-pseudonymizer/commit/dba64e2593982057cbdac4e55f1472f7670181df)) - **deps:** update ghcr.io/miracum/vfps docker tag to v1.3.5 ([#​167](https://togithub.com/miracum/fhir-pseudonymizer/issues/167)) ([69259f1](https://togithub.com/miracum/fhir-pseudonymizer/commit/69259f133d3d784d49526447e2c2630d43412629)) ### [`v2.21.8`](https://togithub.com/miracum/fhir-pseudonymizer/releases/tag/v2.21.8) [Compare Source](https://togithub.com/miracum/fhir-pseudonymizer/compare/v2.21.7...v2.21.8) ##### Miscellaneous Chores - **deps:** update all non-major dependencies ([#​164](https://togithub.com/miracum/fhir-pseudonymizer/issues/164)) ([0038882](https://togithub.com/miracum/fhir-pseudonymizer/commit/0038882e7d7e397b58e315f921ccb65ad0b41193)) - **deps:** update docker.io/bitnami/kubectl:1.29.2 docker digest to [`c74b703`](https://togithub.com/miracum/fhir-pseudonymizer/commit/c74b703) ([#​155](https://togithub.com/miracum/fhir-pseudonymizer/issues/155)) ([a6abb14](https://togithub.com/miracum/fhir-pseudonymizer/commit/a6abb14004e613f0e401685bf6462c77a699d902)) - **deps:** update docker.io/library/postgres:16.2 docker digest to [`6b841c8`](https://togithub.com/miracum/fhir-pseudonymizer/commit/6b841c8) ([#​162](https://togithub.com/miracum/fhir-pseudonymizer/issues/162)) ([7736235](https://togithub.com/miracum/fhir-pseudonymizer/commit/7736235d16b14f0cf1f2aab0d63cf15b2bfe07b6)) - **deps:** update github-actions ([#​160](https://togithub.com/miracum/fhir-pseudonymizer/issues/160)) ([ec72eb0](https://togithub.com/miracum/fhir-pseudonymizer/commit/ec72eb09c062e1bbee6d12d83ce5ff394b03dd1c)) - **deps:** update github-actions ([#​163](https://togithub.com/miracum/fhir-pseudonymizer/issues/163)) ([7138ef0](https://togithub.com/miracum/fhir-pseudonymizer/commit/7138ef01787ee3fe7d24b599a65412fc54a254b6)) - **deps:** update miracum/.github action to v1.6.3 ([#​166](https://togithub.com/miracum/fhir-pseudonymizer/issues/166)) ([e214694](https://togithub.com/miracum/fhir-pseudonymizer/commit/e214694d361f657eceaccb929a461388c49fbfb7)) - **deps:** update quay.io/keycloak/keycloak docker tag to v24 ([#​165](https://togithub.com/miracum/fhir-pseudonymizer/issues/165)) ([055344c](https://togithub.com/miracum/fhir-pseudonymizer/commit/055344c9e63f2f2b240bb0d17c41a90e5086ed10))
miracum/vfps (ghcr.io/miracum/vfps) ### [`v1.3.5`](https://togithub.com/miracum/vfps/releases/tag/v1.3.5) [Compare Source](https://togithub.com/miracum/vfps/compare/v1.3.4...v1.3.5) ##### Miscellaneous Chores - **deps:** update all non-major dependencies ([#​131](https://togithub.com/miracum/vfps/issues/131)) ([69263ec](https://togithub.com/miracum/vfps/commit/69263ec54837023da150d779b279ab1c4ac0ad56)) - **deps:** update docker.io/library/postgres:16.2 docker digest to [`6b841c8`](https://togithub.com/miracum/vfps/commit/6b841c8) ([#​128](https://togithub.com/miracum/vfps/issues/128)) ([577f5b8](https://togithub.com/miracum/vfps/commit/577f5b8b912ab440d125c9e581dc4e693b2937c0)) - **deps:** update docker.io/library/ubuntu:24.04 docker digest to [`723ad80`](https://togithub.com/miracum/vfps/commit/723ad80) ([#​129](https://togithub.com/miracum/vfps/issues/129)) ([1b3a051](https://togithub.com/miracum/vfps/commit/1b3a0518a4597e759a3324b4ea11f10ebe5889e4)) - **deps:** update github-actions ([#​130](https://togithub.com/miracum/vfps/issues/130)) ([d1dabcb](https://togithub.com/miracum/vfps/commit/d1dabcb08d07b88c2c2042d1ba057e5b065da499))
micrometer-metrics/micrometer (io.micrometer:micrometer-core) ### [`v1.12.5`](https://togithub.com/micrometer-metrics/micrometer/releases/tag/v1.12.5): 1.12.5 #### :star: New Features - Deprecate DefaultUriMapper and PoolingHttpClientConnectionManagerMetricsBinder in httpcomponents [#​4862](https://togithub.com/micrometer-metrics/micrometer/pull/4862) - Use same description for same meter name in Log4j2Metrics [#​4864](https://togithub.com/micrometer-metrics/micrometer/pull/4864) #### :hammer: Dependency Upgrades - Bump com.amazonaws:aws-java-sdk-cloudwatch from 1.12.691 to 1.12.696 [#​4926](https://togithub.com/micrometer-metrics/micrometer/pull/4926) - Bump com.netflix.spectator:spectator-reg-atlas from 1.7.8 to 1.7.11 [#​4925](https://togithub.com/micrometer-metrics/micrometer/pull/4925) - Bump com.signalfx.public:signalfx-java from 1.0.39 to 1.0.40 [#​4907](https://togithub.com/micrometer-metrics/micrometer/pull/4907) #### :heart: Contributors Thank you to all the contributors who worked on this release: [@​izeye](https://togithub.com/izeye)

Configuration

πŸ“… Schedule: Branch creation - "every 3 months on the first day of the month" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

β™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

πŸ‘» Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.



This PR has been generated by Mend Renovate. View repository job log here.

github-actions[bot] commented 7 months ago

πŸ¦™ MegaLinter status: βœ… SUCCESS

Descriptor Linter Files Fixed Errors Elapsed time
βœ… ACTION actionlint 4 0 0.04s
βœ… DOCKERFILE hadolint 2 0 0.1s
βœ… EDITORCONFIG editorconfig-checker 66 0 0.34s
βœ… GROOVY npm-groovy-lint 2 0 10.47s
βœ… JAVA checkstyle 18 0 5.25s
βœ… JSON jsonlint 5 0 0.45s
βœ… JSON prettier 5 0 2.76s
βœ… JSON v8r 5 0 4.65s
βœ… MARKDOWN markdownlint 2 0 0.76s
βœ… PYTHON bandit 1 0 1.22s
βœ… PYTHON black 1 0 0.68s
βœ… PYTHON flake8 1 0 0.67s
βœ… PYTHON isort 1 0 0.46s
βœ… PYTHON mypy 1 0 8.66s
βœ… PYTHON ruff 1 0 0.03s
βœ… REPOSITORY checkov yes no 17.15s
βœ… REPOSITORY gitleaks yes no 1.24s
βœ… REPOSITORY git_diff yes no 0.03s
βœ… REPOSITORY grype yes no 14.26s
βœ… REPOSITORY kics yes no 4.44s
βœ… REPOSITORY secretlint yes no 1.25s
βœ… REPOSITORY syft yes no 2.61s
βœ… REPOSITORY trivy yes no 8.09s
βœ… REPOSITORY trivy-sbom yes no 6.96s
βœ… REPOSITORY trufflehog yes no 4.79s
βœ… SQL sql-lint 1 0 0.35s
βœ… XML xmllint 1 0 0.01s
βœ… YAML prettier 17 0 1.29s
βœ… YAML yamllint 17 0 0.67s

See detailed report in MegaLinter reports

You could have same capabilities but better runtime performances if you request a new MegaLinter flavor.

_MegaLinter is graciously provided by OX Security_

github-actions[bot] commented 6 months ago

Target ghcr.io/miracum/fhir-gateway:pr-142 (debian 12.5)

Show detailed table of vulnerabilities
Package ID Severity Installed Version Fixed Version
libc6 CVE-2024-33599 HIGH 2.36-9+deb12u6
libc6 CVE-2024-33600 MEDIUM 2.36-9+deb12u6
libc6 CVE-2024-33601 MEDIUM 2.36-9+deb12u6
libc6 CVE-2024-33602 MEDIUM 2.36-9+deb12u6
libc6 CVE-2010-4756 LOW 2.36-9+deb12u6
libc6 CVE-2018-20796 LOW 2.36-9+deb12u6
libc6 CVE-2019-1010022 LOW 2.36-9+deb12u6
libc6 CVE-2019-1010023 LOW 2.36-9+deb12u6
libc6 CVE-2019-1010024 LOW 2.36-9+deb12u6
libc6 CVE-2019-1010025 LOW 2.36-9+deb12u6
libc6 CVE-2019-9192 LOW 2.36-9+deb12u6
libexpat1 CVE-2023-52425 HIGH 2.5.0-1
libexpat1 CVE-2023-52426 LOW 2.5.0-1
libexpat1 CVE-2024-28757 LOW 2.5.0-1
libgcc-s1 CVE-2023-4039 MEDIUM 12.2.0-14
libgcc-s1 CVE-2022-27943 LOW 12.2.0-14
libpng16-16 CVE-2021-4214 LOW 1.6.39-2
libstdc++6 CVE-2023-4039 MEDIUM 12.2.0-14
libstdc++6 CVE-2022-27943 LOW 12.2.0-14
libuuid1 CVE-2022-0563 LOW 2.38.1-5+deb12u1
zlib1g CVE-2023-45853 CRITICAL 1:1.2.13.dfsg-1

No Misconfigurations found

miracum-bot commented 6 months ago

:tada: This PR is included in version 3.12.13 :tada:

The release is available on GitHub release

Your semantic-release bot :package::rocket: