Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependency Bumps Q2 2023 #1181

Closed
6 tasks done
clux opened this issue Apr 3, 2023 · 2 comments · Fixed by #1307
Closed
6 tasks done

Dependency Bumps Q2 2023 #1181

clux opened this issue Apr 3, 2023 · 2 comments · Fixed by #1307
Assignees
Labels
dependencies upgrades to dependencies

Comments

@clux
Copy link
Member

clux commented Apr 3, 2023

Some big releases recently that needs manual attention and was not handled by dependabot. Making an issue here to ensure we handle all of it

EDIT: Core ones are done. Rest needs some time.

@clux clux added the dependencies upgrades to dependencies label Apr 3, 2023
clux added a commit that referenced this issue Apr 3, 2023
Leftover dependabot PRs that needed to go together.

Signed-off-by: clux <[email protected]>
clux added a commit that referenced this issue Apr 3, 2023
* Bump pem,rustls,hyper-rustls - for #1181

Leftover dependabot PRs that needed to go together.

Signed-off-by: clux <[email protected]>

* Fix deny for rustls webpki license

Signed-off-by: clux <[email protected]>

* skip windows tree in deny

we don't need to be as strict with versions on this platform

Signed-off-by: clux <[email protected]>

* fix moved import

Signed-off-by: clux <[email protected]>

* downgrade pem, for now

Signed-off-by: clux <[email protected]>

---------

Signed-off-by: clux <[email protected]>
@clux clux added the blocked awaiting upstream work label Apr 5, 2023
@clux
Copy link
Member Author

clux commented Apr 8, 2023

Originally was going to do base64 0.21 in the 0.82 bump, but the condescension around their last release makes me want to wait to see for a while instead. rust-lang/cargo#11796 (comment)

@clux clux removed the blocked awaiting upstream work label May 2, 2023
clux added a commit that referenced this issue Aug 6, 2023
Replaces #1267 and uses previously backed out change from #1181

Signed-off-by: clux <[email protected]>
@clux clux mentioned this issue Aug 6, 2023
clux added a commit that referenced this issue Aug 7, 2023
Bump pem to 3

Replaces #1267 and uses previously backed out change from #1181

Signed-off-by: clux <[email protected]>
@clux clux changed the title Dependency Bumps April 2023 Dependency Bumps Q2 2023 Aug 23, 2023
@clux clux added the help wanted Not immediately prioritised, please help! label Aug 23, 2023
@clux
Copy link
Member Author

clux commented Aug 23, 2023

syn/darling can be upgraded as a unit if anyone wants to tackle it.

base64 have generally propagated to the ecosystem so nothing blocking the remains here afaikt.

opening this up in the hopes that someone wants to look at it, had enough toil for one week.

@clux clux removed the help wanted Not immediately prioritised, please help! label Oct 10, 2023
@clux clux self-assigned this Oct 10, 2023
@clux clux moved this from Defining to In Progress in Kube Roadmap Oct 10, 2023
@github-project-automation github-project-automation bot moved this to Defining in Kube Roadmap Oct 10, 2023
@clux clux linked a pull request Oct 12, 2023 that will close this issue
@github-project-automation github-project-automation bot moved this from In Progress to Done in Kube Roadmap Oct 12, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies upgrades to dependencies
Projects
Status: Done
Development

Successfully merging a pull request may close this issue.

1 participant