vertex-center / vertex

Create your self-hosted lab in one click.
https://docs.vertex.arra.red
MIT License
29 stars 4 forks source link

build(deps): bump the main group with 7 updates #149

Closed dependabot[bot] closed 9 months ago

dependabot[bot] commented 9 months ago

Bumps the main group with 7 updates:

Package From To
github.com/disgoorg/disgo 0.17.0 0.17.2
github.com/docker/docker 25.0.1+incompatible 25.0.3+incompatible
golang.org/x/crypto 0.18.0 0.19.0
golang.org/x/net 0.20.0 0.21.0
gorm.io/driver/postgres 1.5.4 1.5.6
gorm.io/gorm 1.25.6 1.25.7-0.20240204074919-46816ad31dde
modernc.org/sqlite 1.28.0 1.29.1

Updates github.com/disgoorg/disgo from 0.17.0 to 0.17.2

Release notes

Sourced from github.com/disgoorg/disgo's releases.

v0.17.2 - Enforce nonce

What's Changed

Full Changelog: https://github.com/disgoorg/disgo/compare/v0.17.1...v0.17.2

v0.17.1

What's Changed

Full Changelog: https://github.com/disgoorg/disgo/compare/v0.17.0...v0.17.1

Commits
  • 842ff0c Add support for enforce_nonce (#332)
  • b4099f0 Add ChoiceName() to choices
  • cdd1370 Fix OptionDescription() returning the option name
  • 7ddf0a0 add AutocompleteInteractionData.Focused helper method
  • d3e0672 fix activity fields not being marked as omitempty
  • 51c65aa extend middlewares
  • 34e3555 log json when failing to decode gateway message
  • b69438c update dependencies
  • 05893c6 Add MentionChannel (#331)
  • d55469b update dependencies
  • Additional commits viewable in compare view


Updates github.com/docker/docker from 25.0.1+incompatible to 25.0.3+incompatible

Release notes

Sourced from github.com/docker/docker's releases.

v25.0.3

25.0.3

For a full list of pull requests and changes in this release, refer to the relevant GitHub milestones:

What's Changed

  • [25.0 backport] pkg/ioutils: Make subsequent Close attempts noop moby/moby#47222
  • [25.0 backport] Fix HasResource inverted boolean error - vendor swarmkit v2.0.0-20240125134710-dcda100a8261 moby/moby#47225
  • [25.0 backport] gha: update actions to account for node 16 deprecation moby/moby#47291
  • [25.0 backport] docs: remove dead links from api verison history moby/moby#47296
  • [25.0 backport] Assert temp output directory is not an empty string moby/moby#47298
  • [25.0 backport] api: Document version in /build moby/moby#47295
  • [25.0 backport] De-flake TestSwarmClusterRotateUnlockKey moby/moby#47201
  • [25.0 backport] Add internal n/w bridge to firewalld docker zone moby/moby#47303
  • [25.0 backport] Only restore a configured MAC addr on restart. moby/moby#47304
  • [25.0 backport] Revert "daemon: automatically set network EnableIPv6 if needed" moby/moby#47310
  • [25.0 backport] libnet: bridge: ignore EINVAL when configuring bridge MTU moby/moby#47311
  • [25.0 backport] logger/journald: fix tailing logs with systemd 255 moby/moby#47243
  • [25.0 backport] add more //go:build directives to prevent downgrading to go1.16 language moby/moby#47220
  • [25.0 backport] libcontainerd/supervisor: fix data race moby/moby#47313
  • [25.0 backport] plugins: Fix panic when fetching by digest moby/moby#47323
  • [25.0 backport] Dockerfile: update docker-cli to v25.0.2, docker compose v2.24.5 moby/moby#47316
  • [25.0 backport] image/save: Fix untagged images not present in index.json moby/moby#47294
  • [25.0 backport] Dockerfile: update RootlessKit to v2.0.1 moby/moby#47334
  • [25.0 backport] image/cache: Ignore Build and Revision on Windows moby/moby#47337
  • [25.0 backport] profiles/seccomp: add syscalls for kernel v5.17 - v6.6, match containerd's profile moby/moby#47344
  • [25.0 backport] c8d: Use the same logic to get the present images moby/moby#47348

Full Changelog: https://github.com/moby/moby/compare/v25.0.2...v25.0.3

v25.0.2

25.0.2

For a full list of pull requests and changes in this release, refer to the relevant GitHub milestones:

Security

This release contains security fixes for the following CVEs affecting Docker Engine and its components.

CVE Component Fix version Severity

... (truncated)

Commits
  • f417435 Merge pull request #47348 from rumpl/25.0_backport-history-config
  • acd023d c8d: Use the same logic to get the present images
  • 7a075ca Merge pull request #47344 from thaJeztah/25.0_backport_seccomp_updates
  • aff7177 Merge pull request #47337 from vvoland/cache-fix-older-windows-25
  • ed7c263 seccomp: add futex_wake syscall (kernel v6.7, libseccomp v2.5.5)
  • 74e3b4f seccomp: add futex_wait syscall (kernel v6.7, libseccomp v2.5.5)
  • 4cc0416 seccomp: add futex_requeue syscall (kernel v6.7, libseccomp v2.5.5)
  • f9f9e7f seccomp: add map_shadow_stack syscall (kernel v6.6, libseccomp v2.5.5)
  • 5fb4eb9 seccomp: add fchmodat2 syscall (kernel v6.6, libseccomp v2.5.5)
  • 67e9aa6 seccomp: add cachestat syscall (kernel v6.5, libseccomp v2.5.5)
  • Additional commits viewable in compare view


Updates golang.org/x/crypto from 0.18.0 to 0.19.0

Commits


Updates golang.org/x/net from 0.20.0 to 0.21.0

Commits
  • 73d21fd go.mod: update golang.org/x dependencies
  • 643fd16 html: fix SOLIDUS '/' handling in attribute parsing
  • 73e4b50 dns/dnsmessage: allow name compression for SRV resource parsing
  • b2208d0 internal/quic/qlog: fix typo
  • 0d0b98c http2: avoid goroutine starvation in TestServer_Push_RejectAfterGoAway
  • 07e05fd http2: remove suspicious uint32->v conversion in frame code
  • 26b646e quic: avoid deadlock in Endpoint.Close
  • See full diff in compare view


Updates gorm.io/driver/postgres from 1.5.4 to 1.5.6

Commits
  • b3b67da only retract v1.5.5
  • d715278 fix: retract v1.5.5 (#249)
  • ae7e527 update gorm to master latest (#242)
  • 1cfbc86 refactor: distinguish between Unique and UniqueIndex (#195)
  • dc711bd let gorm support limit and offset binding parameters,change the BindVar of p...
  • 438e4fd chore(deps): bump actions/setup-go from 4 to 5 (#227)
  • e6d2435 override identifier length for postgres (#232)
  • See full diff in compare view


Updates gorm.io/gorm from 1.25.6 to 1.25.7-0.20240204074919-46816ad31dde

Commits


Updates modernc.org/sqlite from 1.28.0 to 1.29.1

Commits


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions