Skip to content

chore: update dependencies#567

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/dependencies
Open

chore: update dependencies#567
renovate[bot] wants to merge 1 commit intomainfrom
renovate/dependencies

Conversation

@renovate
Copy link

@renovate renovate bot commented Dec 25, 2024

ℹ️ Note

This PR body was truncated due to platform limits.

Update Request | Renovate Bot

This PR contains the following updates:

Package Type Update Change Age Adoption Passing Confidence
actions/stale action digest 9971854b5d41d4
fosrl/newt patch 1.10.01.10.1 age adoption passing confidence
git://git.kernel.org/pub/scm/utils/mdadm/mdadm.git minor 4.44.5 age adoption passing confidence
github.com/anchore/syft indirect minor v1.28.0v1.42.1 age adoption passing confidence
github.com/dsseng/grype replace digest 21977929b7e8e2
github.com/dsseng/syft replace minor v1.26.2-0.20250703101014-f39c35d156d9v1.42.1 age adoption passing confidence
github.com/gomodule/redigo replace major v0.0.0-20150301180006-535138d7bcd7v1.9.3 age adoption passing confidence
google/gvisor patch 20260202.020260223.0 age adoption passing confidence
https://github.com/spinkube/containerd-shim-spin.git minor v0.22.0v0.23.0 age adoption passing confidence
https://gitlab.gnome.org/GNOME/glib.git patch 2.87.22.87.3 age adoption passing confidence
intel/Intel-Linux-Processor-Microcode-Data-Files patch 2026021020260227 age adoption passing confidence
netbirdio/netbird minor 0.65.30.66.0 age adoption passing confidence
systemd/systemd minor 259.1259.2 age adoption passing confidence
tailscale/tailscale patch 1.94.11.94.2 age adoption passing confidence
youki-dev/youki minor 0.5.70.6.0 age adoption passing confidence

Release Notes

fosrl/newt (fosrl/newt)

v1.10.1

Compare Source

Container Images

  • GHCR: ghcr.io/fosrl/newt@sha256:dc3a6ce4c290d36393a9db6662afd826260e3c8552b19359193a6b311988d3d2
  • Docker Hub: docker.io/fosrl/newt@sha256:dc3a6ce4c290d36393a9db6662afd826260e3c8552b19359193a6b311988d3d2
    Digest: sha256:dc3a6ce4c290d36393a9db6662afd826260e3c8552b19359193a6b311988d3d2

What's Changed

  • Generate random passwords for users

Full Changelog: fosrl/newt@v1.10.1...1.10.1

anchore/syft (github.com/anchore/syft)

v1.42.1

Compare Source

Bug Fixes
Additional Changes

(Full Changelog)

v1.42.0

Compare Source

Added Features
Additional Changes

(Full Changelog)

v1.41.2

Compare Source

Bug Fixes

(Full Changelog)

v1.41.1

Compare Source

Bug Fixes

(Full Changelog)

v1.41.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.40.1

Compare Source

[!Important]
This release bumps github.com/containerd/containerd to v2, which will cause compiler errors if used alongside other dependencies that use v1 of containerd. See anchore/stereoscope#495 for a detailed discussion.

Bug Fixes

(Full Changelog)

v1.40.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.39.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.38.2

Compare Source

Bug Fixes

(Full Changelog)

v1.38.1

Compare Source

v1.38.0

Compare Source

Added Features
Bug Fixes
  • Support extras statements in Python PDM cataloger [#​4352 @​wagoodman]
  • Preserve --from argument order [#​4350 @​wagoodman]
  • SBOM generated by Syft 1.28 contains license elements missing id or name (causing CycloneDX parser error) [#​4363]
  • empty PURL output in dependency snapshot format breaks sbom-action [#​4311]
  • Interface includes constraint elements, can only be used in type parameters [#​4346]
  • Upgrade github.com/nwaples/rardecode@​v1.1.3 to 2.2.1 [#​4338]
  • Upgrade to Golang 1.25.4 [#​4341]
Additional Changes

(Full Changelog)

v1.37.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.36.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.35.0

Compare Source

v1.34.2

Compare Source

Bug Fixes

(Full Changelog)

v1.34.1

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.34.0

Compare Source

v1.33.0

Compare Source

Added Features

(Full Changelog)

v1.32.0

Compare Source

Added Features
Bug Fixes
Additional Changes

(Full Changelog)

v1.31.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.30.0

Compare Source

Added Features
Bug Fixes

(Full Changelog)

v1.29.1

Compare Source

Bug Fixes

(Full Changelog)

v1.29.0

Compare Source

Added Features
Additional Changes

(Full Changelog)

dsseng/syft (github.com/dsseng/syft)

v1.42.1

Compare Source

v1.42.0

Compare Source

v1.41.2

Compare Source

v1.41.1

Compare Source

v1.41.0

Compare Source

v1.40.1

Compare Source

v1.40.0

Compare Source

v1.39.0

Compare Source

v1.38.2

Compare Source

v1.38.1

Compare Source

v1.38.0

Compare Source

v1.37.0

Compare Source

v1.36.0

Compare Source

v1.35.0

Compare Source

v1.34.2

Compare Source

v1.34.1

Compare Source

v1.34.0

Compare Source

v1.33.0

Compare Source

v1.32.0

Compare Source

v1.31.0

Compare Source

v1.30.0

Compare Source

v1.29.1

Compare Source

v1.29.0

Compare Source

v1.28.0

Compare Source

v1.27.1

Compare Source

gomodule/redigo (github.com/gomodule/redigo)

v1.9.3

Compare Source

v1.9.3 Release Notes (2025-10-08T17:29:42Z)

Changelog

Features
Bug fixes
Chores
Documentation

Full Changelog

v1.9.2

Compare Source

v1.9.2 Release Notes (2024-02-25T12:54:41Z)

Changelog

Bug fixes
Continuous Integration

Full Changelog

v1.9.1

Compare Source

v1.9.1 Release Notes (2024-02-20T23:51:27Z)

Changelog

Chores
Continuous Integration

Full Changelog

v1.9.0

v1.9.0 Release Notes (2024-02-20T21:32:43Z)

Changelog

Features
Bug fixes
Chores
Continuous Integration

New Contributors

Full Changelog

v1.8.9

Compare Source

v1.8.9 Release Notes (2022-07-06)
Bug Fixes
Chores
Features

v1.8.8

Compare Source

v1.8.8 Release Notes (2022-01-04)

Bug Fixes

v1.8.7

Compare Source

v1.8.7 Release Notes (2022-01-04)

Bug Fixes

v1.8.6

Compare Source

v1.8.6 Release Notes (2021-12-02)

Features
Bug Fixes

v1.8.5

Compare Source

v1.8.5 Release Notes (2021-06-10)
Bug Fixes

v1.8.4

Compare Source

v1.8.4 Release Notes (2021-02-18)
Chores

v1.8.3

Compare Source

New Features

  • Add TLS Handshake timeout support (#​530)

Fixes

  • Typo in Float64 documentation (#​515)
  • GetContext must return errorConn (#​494)
  • Correct type in Ints documentation (#​528)
  • Open connection count (#​527)
  • Add end of terms and conditions in LICENSE (#​531)
  • Revert "fix: go get example in README.md (#​488)" (#​497)
  • travis-ci: Remove older versions of go (#​516)
  • go get example in README.md (#​488)

Chores

  • Remove unneeded ctx == nil check (#​498)
  • Remove unneeded loop check (#​524)
  • Improve ScanStruct performance (#​523)
  • Improve readability of lazyInit (#​522)

Thanks to the following contributors to this release:
Hanjun Kim, Homer Huang, Jeremy Wiebe, Rohan Verma, Stan Hu, ppphp and xyb

v1.8.2

Compare Source

New Features

  • Context dial support (#​476)
  • Support for ACL logins (#​480)
  • Support for Anonymous field pointers to AddFlat (#​490)
  • Scanner support for ScanSlice (#​489)

Fixes

  • Handle pool get ctx cancellation promptly ([#​47

@renovate renovate bot force-pushed the renovate/dependencies branch 3 times, most recently from 5ba679a to 8b58a61 Compare December 31, 2024 20:44
@renovate renovate bot force-pushed the renovate/dependencies branch 4 times, most recently from 490052d to 23754db Compare January 9, 2025 12:01
@renovate renovate bot force-pushed the renovate/dependencies branch 6 times, most recently from c9a1639 to 5aabad4 Compare January 17, 2025 07:19
@renovate renovate bot force-pushed the renovate/dependencies branch 5 times, most recently from 6e3a52e to 3c9057e Compare January 25, 2025 12:15
@renovate renovate bot force-pushed the renovate/dependencies branch 5 times, most recently from 37862c0 to ade8620 Compare February 5, 2025 00:08
@renovate renovate bot force-pushed the renovate/dependencies branch 7 times, most recently from 88a8ea0 to 849332e Compare February 12, 2025 12:33
@renovate renovate bot force-pushed the renovate/dependencies branch 8 times, most recently from dee5df0 to 2ed628e Compare March 10, 2025 09:42
@renovate renovate bot force-pushed the renovate/dependencies branch from 2ed628e to 8833055 Compare March 10, 2025 20:32
@smira smira closed this Apr 2, 2025
@smira smira deleted the renovate/dependencies branch April 2, 2025 13:51
@smira smira restored the renovate/dependencies branch April 2, 2025 15:12
@smira smira reopened this Apr 2, 2025
@github-project-automation github-project-automation bot moved this to To Do in Planning Apr 2, 2025
@talos-bot talos-bot moved this from To Do to In Review in Planning Apr 2, 2025
@smira smira force-pushed the renovate/dependencies branch from 8833055 to 9d222f7 Compare April 2, 2025 15:42
@smira smira removed this from Planning Apr 2, 2025
@renovate renovate bot force-pushed the renovate/dependencies branch 3 times, most recently from 95295d4 to 66ab4f9 Compare April 6, 2025 11:50
@renovate renovate bot force-pushed the renovate/dependencies branch 5 times, most recently from 929d827 to 83bdebd Compare April 17, 2025 13:15
@renovate renovate bot force-pushed the renovate/dependencies branch from 83bdebd to 1e5f791 Compare April 19, 2025 11:22
@renovate
Copy link
Author

renovate bot commented Dec 18, 2025

ℹ️ Artifact update notice

File name: internal/grype-scan/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 113 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.24.5 -> 1.25
cel.dev/expr v0.16.1 -> v0.24.0
cloud.google.com/go v0.116.0 -> v0.123.0
cloud.google.com/go/auth v0.13.0 -> v0.17.0
cloud.google.com/go/auth/oauth2adapt v0.2.6 -> v0.2.8
cloud.google.com/go/compute/metadata v0.7.0 -> v0.9.0
cloud.google.com/go/iam v1.2.2 -> v1.5.3
cloud.google.com/go/monitoring v1.21.2 -> v1.24.2
cloud.google.com/go/storage v1.49.0 -> v1.58.0
dario.cat/mergo v1.0.1 -> v1.0.2
github.com/BurntSushi/toml v1.5.0 -> v1.6.0
github.com/CycloneDX/cyclonedx-go v0.9.2 -> v0.10.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.25.0 -> v1.29.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric v0.48.1 -> v0.54.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping v0.48.1 -> v0.54.0
github.com/Microsoft/hcsshim v0.11.7 -> v0.14.0-rc.1
github.com/ProtonMail/go-crypto v1.2.0 -> v1.3.0
github.com/STARRY-S/zip v0.2.1 -> v0.2.3
github.com/anchore/go-collections v0.0.0-20240216171411-9321230ce537 -> v0.0.0-20251016125210-a3c352120e8c
github.com/anchore/go-struct-converter v0.0.0-20221118182256-c68fdcfa2092 -> v0.1.0
github.com/anchore/stereoscope v0.1.6 -> v0.1.20
github.com/andybalholm/brotli v1.1.2-0.20250424173009-453214e765f3 -> v1.2.0
github.com/bmatcuk/doublestar/v4 v4.8.1 -> v4.10.0
github.com/bodgit/sevenzip v1.6.0 -> v1.6.1
github.com/charmbracelet/bubbles v0.21.0 -> v0.21.1
github.com/charmbracelet/bubbletea v1.3.6 -> v1.3.10
github.com/charmbracelet/colorprofile v0.2.3-0.20250311203215-f60798e515dc -> v0.4.1
github.com/charmbracelet/x/ansi v0.9.3 -> v0.11.5
github.com/charmbracelet/x/cellbuf v0.0.13-0.20250311204145-2c3ea96c31dd -> v0.0.15
github.com/charmbracelet/x/term v0.2.1 -> v0.2.2
github.com/cncf/xds/go v0.0.0-20240905190251-b4127c9b8d78 -> v0.0.0-20250501225837-2ac532fd4443
github.com/containerd/containerd/api v1.8.0 -> v1.10.0
github.com/containerd/continuity v0.4.4 -> v0.4.5
github.com/containerd/platforms v0.2.1 -> v1.0.0-rc.2
github.com/containerd/stargz-snapshotter/estargz v0.16.3 -> v0.18.1
github.com/containerd/typeurl/v2 v2.2.0 -> v2.2.3
github.com/cyphar/filepath-securejoin v0.4.1 -> v0.6.0
github.com/diskfs/go-diskfs v1.6.1-0.20250601133945-2af1c7ece24c -> v1.7.0
github.com/docker/cli v28.3.0+incompatible -> v29.2.0+incompatible
github.com/docker/docker v28.3.2+incompatible -> v28.5.2+incompatible
github.com/docker/docker-credential-helpers v0.9.3 -> v0.9.4
github.com/docker/go-connections v0.5.0 -> v0.6.0
github.com/envoyproxy/go-control-plane v0.13.1 -> v0.13.4
github.com/envoyproxy/protoc-gen-validate v1.1.0 -> v1.2.1
github.com/fatih/color v1.17.0 -> v1.18.0
github.com/fsnotify/fsnotify v1.8.0 -> v1.9.0
github.com/gabriel-vasile/mimetype v1.4.9 -> v1.4.12
github.com/github/go-spdx/v2 v2.3.3 -> v2.3.6
github.com/go-git/go-billy/v5 v5.6.2 -> v5.7.0
github.com/go-git/go-git/v5 v5.16.2 -> v5.16.5
github.com/go-viper/mapstructure/v2 v2.3.0 -> v2.5.0
github.com/goccy/go-yaml v1.18.0 -> v1.19.2
github.com/gohugoio/hashstructure v0.5.0 -> v0.6.0
github.com/google/go-containerregistry v0.20.6 -> v0.20.7
github.com/google/s2a-go v0.1.8 -> v0.1.9
github.com/googleapis/enterprise-certificate-proxy v0.3.4 -> v0.3.7
github.com/googleapis/gax-go/v2 v2.14.1 -> v2.15.0
github.com/gookit/color v1.5.4 -> v1.6.0
github.com/hashicorp/go-getter v1.7.8 -> v1.8.4
github.com/hashicorp/go-version v1.7.0 -> v1.8.0
github.com/hashicorp/hcl/v2 v2.23.0 -> v2.24.0
github.com/jedib0t/go-pretty/v6 v6.6.7 -> v6.7.8
github.com/klauspost/compress v1.18.0 -> v1.18.2
github.com/lucasb-eyer/go-colorful v1.2.0 -> v1.3.0
github.com/mattn/go-runewidth v0.0.16 -> v0.0.19
github.com/mholt/archives v0.1.3 -> v0.1.5
github.com/minio/minlz v1.0.0 -> v1.0.1
github.com/moby/sys/signal v0.7.0 -> v0.7.1
github.com/moby/sys/user v0.3.0 -> v0.4.0
github.com/ncruces/go-strftime v0.1.9 -> v1.0.0
github.com/nwaples/rardecode/v2 v2.1.0 -> v2.2.0
github.com/olekukonko/errors v0.0.0-20250405072817-4e6d85265da6 -> v1.1.0
github.com/olekukonko/ll v0.0.8 -> v0.1.4-0.20260115111900-9e59c2286df0
github.com/olekukonko/tablewriter v1.0.8 -> v1.1.3
github.com/opencontainers/runtime-spec v1.1.0 -> v1.3.0
github.com/opencontainers/selinux v1.11.0 -> v1.13.1
github.com/pelletier/go-toml/v2 v2.2.3 -> v2.2.4
github.com/sorairolake/lzip-go v0.3.5 -> v0.3.8
github.com/spdx/tools-golang v0.5.5 -> v0.5.7
github.com/spf13/afero v1.14.0 -> v1.15.0
github.com/spf13/cobra v1.9.1 -> v1.10.2
github.com/spf13/pflag v1.0.6 -> v1.0.9
github.com/sylabs/sif/v2 v2.21.1 -> v2.22.0
github.com/ulikunitz/xz v0.5.12 -> v0.5.15
github.com/vbatts/go-mtree v0.5.4 -> v0.7.0
github.com/vbatts/tar-split v0.12.1 -> v0.12.2
github.com/zclconf/go-cty v1.14.0 -> v1.16.3
go.opentelemetry.io/auto/sdk v1.1.0 -> v1.2.1
go.opentelemetry.io/contrib/detectors/gcp v1.29.0 -> v1.36.0
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.54.0 -> v0.63.0
go.opentelemetry.io/otel v1.36.0 -> v1.39.0
go.opentelemetry.io/otel/metric v1.36.0 -> v1.39.0
go.opentelemetry.io/otel/sdk v1.36.0 -> v1.39.0
go.opentelemetry.io/otel/sdk/metric v1.36.0 -> v1.39.0
go.opentelemetry.io/otel/trace v1.36.0 -> v1.39.0
golang.org/x/crypto v0.40.0 -> v0.47.0
golang.org/x/exp v0.0.0-20250408133849-7e4ce0ab07d0 -> v0.0.0-20251023183803-a4bb9ffd2546
golang.org/x/mod v0.26.0 -> v0.32.0
golang.org/x/net v0.42.0 -> v0.49.0
golang.org/x/oauth2 v0.30.0 -> v0.33.0
golang.org/x/sync v0.16.0 -> v0.19.0
golang.org/x/sys v0.34.0 -> v0.40.0
golang.org/x/term v0.33.0 -> v0.39.0
golang.org/x/text v0.27.0 -> v0.33.0
golang.org/x/time v0.12.0 -> v0.14.0
golang.org/x/tools v0.35.0 -> v0.41.0
google.golang.org/api v0.215.0 -> v0.256.0
google.golang.org/genproto v0.0.0-20241118233622-e639e219e697 -> v0.0.0-20250922171735-9219d122eba9
google.golang.org/genproto/googleapis/api v0.0.0-20241209162323-e6fa225c2576 -> v0.0.0-20251111163417-95abcf5c77ba
google.golang.org/genproto/googleapis/rpc v0.0.0-20241223144023-3abc09e42ca8 -> v0.0.0-20251111163417-95abcf5c77ba
google.golang.org/grpc v1.67.3 -> v1.76.0
google.golang.org/protobuf v1.36.4 -> v1.36.10
modernc.org/libc v1.65.10 -> v1.67.6
modernc.org/sqlite v1.38.0 -> v1.44.3

Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants