replicatedhq / troubleshoot

Preflight Checks and Support Bundles Framework for Kubernetes Applications
https://troubleshoot.sh
Apache License 2.0
544 stars 93 forks source link

chore(deps): bump the security group with 5 updates #1592

Closed dependabot[bot] closed 1 month ago

dependabot[bot] commented 1 month ago

Bumps the security group with 5 updates:

Package From To
github.com/containers/image/v5 5.32.0 5.32.1
sigs.k8s.io/controller-runtime 0.18.4 0.18.5
golang.org/x/net 0.27.0 0.28.0
golang.org/x/sys 0.23.0 0.24.0
golang.org/x/text 0.16.0 0.17.0

Updates github.com/containers/image/v5 from 5.32.0 to 5.32.1

Release notes

Sourced from github.com/containers/image/v5's releases.

v5.32.1

What's Changed

Full Changelog: https://github.com/containers/image/compare/v5.32.0...v5.32.1

Commits
  • 1064a5a Release 5.32.1
  • c7233ee Merge remote-tracking branch 'upstream/main' into HEAD
  • 5af61e0 Bump to 5.32.1-dev
  • 8c7c58c Merge pull request #2487 from mtrmac/chunked-bic2
  • 3d38dae Detect zstd:chunked format in source blobs
  • ac2ca25 Allow dockerImageDestination to reuse zstd:chunked blobs
  • 243b49d Extend private.ReusedBlob to allow zstd:chunked reuses
  • 76af27c Record the specific variant, and TOC annotations, for blobs we compress
  • f9d27e8 Add digest -> specific variant, annotation data to BIC
  • 5dcb348 Fix a comment
  • Additional commits viewable in compare view


Updates sigs.k8s.io/controller-runtime from 0.18.4 to 0.18.5

Release notes

Sourced from sigs.k8s.io/controller-runtime's releases.

v0.18.5

What's Changed

Full Changelog: https://github.com/kubernetes-sigs/controller-runtime/compare/v0.18.4...v0.18.5

Commits
  • 75a38d2 Merge pull request #2919 from k8s-infra-cherrypick-robot/cherry-pick-2893-to-...
  • 27793ff Handle fsnotify.Chmod events as Removals
  • 4b8b9e6 Add certwatcher test for file rename
  • 9fe6db5 Merge pull request #2917 from k8s-infra-cherrypick-robot/cherry-pick-2874-to-...
  • 2247930 AddMetricsServerExtraHandler: Info takes key/value pairs
  • 0845967 [release-0.18] :bug: Suppress API server warnings in the client (#2890)
  • See full diff in compare view


Updates golang.org/x/net from 0.27.0 to 0.28.0

Commits
  • 4542a42 go.mod: update golang.org/x dependencies
  • 765c7e8 xsrftoken: create no padding base64 string by RawURLEncoding
  • 032e4e4 LICENSE: update per Google Legal
  • See full diff in compare view


Updates golang.org/x/sys from 0.23.0 to 0.24.0

Commits
  • 914deed unix: add missing ETHTOOL_FLAG_ constants
  • 4c7077e windows: add enums for IpAdapterUnicastAddress
  • 29298aa windows: delete TestGetKeyboardLayout
  • See full diff in compare view


Updates golang.org/x/text from 0.16.0 to 0.17.0

Commits


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions