chore(deps): update all non-major dependencies #69
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v0.17.8
->v0.18.0
v1.16.2
->v1.17.0
v0.14.0
->v0.15.1
v0.12.0
->v0.12.1
v2.27.7
->v2.28.1
v1.6.0
->v1.7.0
v0.31.4
->v0.32.1
v0.31.4
->v0.32.1
v0.31.4
->v0.32.1
v0.31.4
->v0.32.1
v4.4.3
->v4.5.0
v2.10.2
->v2.10.4
Release Notes
anchore/sbom-action (anchore/sbom-action)
v0.18.0
Compare Source
Changes in v0.18.0
v0.17.9
Compare Source
Changes in v0.17.9
cert-manager/cert-manager (github.com/cert-manager/cert-manager)
v1.17.0
Compare Source
v1.16.3
Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.16.3 is a patch release mainly focused around bumping dependencies to address reported CVEs: CVE-2024-45337 and CVE-2024-45338.
We don't believe that cert-manager is actually vulnerable; this release is instead intended to satisfy vulnerability scanners.
It also includes a bug fix to the new
renewBeforePercentage
field. If you were usingrenewBeforePercentage
, see PR #7421 for more information.Changes
Bug
golang.org/x/net
andgolang.org/x/crypto
to address CVE-2024-45337 and CVE-2024-45338 (#7485, @erikgb)renewBeforePercentage
to comply with its spec (#7441, @cert-manager-bot)Other
github/codeql-action (github/codeql-action)
v2.28.1
Compare Source
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
This is the last planned release of the
v2
. To continue getting updates for the CodeQL Action, please switch tov3
.2.28.1 - 10 Jan 2025
See the full CHANGELOG.md for more information.
v2.28.0
Compare Source
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
Note that the only difference between
v2
andv3
of the CodeQL Action is the node version they support, withv3
running on node 20 while we continue to releasev2
to support running on node 16. For example3.22.11
was the firstv3
release and is functionally identical to2.22.11
. This approach ensures an easy way to track exactly which features are included in different versions, indicated by the minor and patch version numbers.This is the last planned release of the
v2
. To continue getting updates for the CodeQL Action, please switch tov3
.2.28.0 - 20 Dec 2024
See the full CHANGELOG.md for more information.
v2.27.9
Compare Source
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
Note that the only difference between
v2
andv3
of the CodeQL Action is the node version they support, withv3
running on node 20 while we continue to releasev2
to support running on node 16. For example3.22.11
was the firstv3
release and is functionally identical to2.22.11
. This approach ensures an easy way to track exactly which features are included in different versions, indicated by the minor and patch version numbers.2.27.9 - 12 Dec 2024
No user facing changes.
See the full CHANGELOG.md for more information.
v2.27.8
Compare Source
helm/chart-releaser-action (helm/chart-releaser-action)
v1.7.0
Compare Source
For
cr
changes see https://github.com/helm/chart-releaser/releases/tag/v1.7.0What's Changed
New Contributors
Full Changelog: helm/chart-releaser-action@v1...v1.7.0
kubernetes/api (k8s.io/api)
v0.32.1
Compare Source
v0.32.0
Compare Source
v0.31.5
Compare Source
kubernetes/apiextensions-apiserver (k8s.io/apiextensions-apiserver)
v0.32.1
Compare Source
v0.32.0
Compare Source
v0.31.5
Compare Source
kubernetes/apimachinery (k8s.io/apimachinery)
v0.32.1
Compare Source
v0.32.0
Compare Source
v0.31.5
Compare Source
kubernetes/client-go (k8s.io/client-go)
v0.32.1
Compare Source
v0.32.0
Compare Source
v0.31.5
Compare Source
kubernetes-sigs/structured-merge-diff (sigs.k8s.io/structured-merge-diff/v4)
v4.5.0
Compare Source
step-security/harden-runner (step-security/harden-runner)
v2.10.4
Compare Source
What's Changed
Fixed a potential Harden-Runner post step failure that could occur when printing agent service logs. The fix gracefully handles failures without failing the post step.
Full Changelog: step-security/harden-runner@v2...v2.10.4
v2.10.3
Compare Source
What's Changed
Fixed an issue where DNS requests using uppercase characters (e.g., EXAMPLE.com) were blocked even when the domain was present in the allowed list. This update standardizes domain names to lowercase for consistent comparison.
Full Changelog: step-security/harden-runner@v2...v2.10.3
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.