fix(deps): update dependencies (minor) - #79
Conversation
ℹ️ Artifact update noticeFile name: go.modIn order to perform the update(s) described in the table above, Renovate ran the
Due to Go's usage of Minimal Version Selection (MVS), these packages have been updated to the minimum version available, so will still abide by Details:
|
Coverage Report for CI Build 34522250105Warning No base build found for commit Coverage: 42.21%Details
Uncovered ChangesNo uncovered changes found. Coverage RegressionsRequires a base build to compare against. How to fix this → Coverage Stats
💛 - Coveralls |
486be39 to
90171b2
Compare
b47beca to
eed5d1b
Compare
eed5d1b to
c77133e
Compare
c77133e to
2aa89b8
Compare
2c30232 to
e035157
Compare
db28f3a to
28ee301
Compare
d43201d to
8a672bd
Compare
8a672bd to
cca0e82
Compare
cca0e82 to
dbf5ef8
Compare
dbf5ef8 to
6579d74
Compare
8a30527 to
e6ff28d
Compare
e6ff28d to
45b08a1
Compare
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
This PR contains the following updates:
v2.12.2→v2.13.2v2.3.8→v2.5.1v0.44.0→v0.49.0v0.50.0v0.44.0→v0.49.0v0.50.0v2.4.0→v2.5.1Release Notes
golangci/golangci-lint (golangci-lint)
v2.13.2Compare Source
Released on 2026-08-28
iface: from 1.5.0 to 1.5.1staticcheck: from 0.8.0 to 0.8.1unparam: from3f964bcto2fa3d84canonicalheader: from v1.1.2 to a temporary forkv2.13.1Compare Source
Released on 2026-08-20
ginkgolinter: from 0.23.1 to 0.24.0gofmt: fromd62b90etoe84e050staticcheck: from 0.8.0-rc.1 to 0.8.0wsl_v5: from 5.8.0 to 5.9.0v2.13.0Compare Source
Released on 2026-08-19
dupword: from 0.1.7 to 0.1.8 (new optionskip-raw-strings)errcheck: from 1.10.0 to 1.20.0exhaustruct_v5: from 4.0.0 to 5.0.2 (new configuration)exhaustruct: deprecated and replaced byexhaustruct_v5fatcontext: from 0.9.0 to 0.10.0 (new options:check-loops,check-function-literals)goconst: from 1.10.0 to 1.11.0 (new options:ignore-map-keys,exclude-types)gofumpt: from 0.9.2 to 0.11.0 (new options:extra.group-params,extra.clothe-returns,extra.balance-calls)gomoddirectives: from 0.8.0 to 0.9.0 (new option:replace-allow-all)gosec: from 2.26.1 to 2.27.1govet-modernize: from 0.44.0 to 0.49.0 (fmtappendfis removed. New analyzersatomictypes,embedlit,errorsastype,importcomment,reflecttypeassert,slicesclip, andslicesbackward.waitgroupis renamedwaitgroupgo)iface: from 1.4.3 to 1.5.0 (new analyzer:unusedmethod)noinlineerr: from 1.0.5 to 1.0.6nonamedreturns: from 1.0.6 to 1.0.8 (new option:allow-unused-named-returns)recvcheck: from 0.2.0 to 0.3.0 (new default exclusions)unparam: from5beb8c8to3f964bcclickhouse-go-linter: from 1.2.0 to 1.2.1errname: from 1.1.1 to 1.1.2exhaustruct: from 5.0.2 to 5.0.3funcorder: add missingFunctionfieldginkgolinter: from 0.23.0 to 0.23.1gocheckcompilerdirectives: from 1.3.0 to 1.4.0gocritic: from 0.14.3 to 0.14.4gomoddirectives: add missingIgnoreForbiddenfieldiface: from 1.4.2 to 1.4.3mirror: from 1.3.0 to 1.3.3nilnil: from 1.1.1 to 1.1.2protogetter: from 0.3.20 to 0.3.21google/osv-scanner-action (google/osv-scanner-action)
v2.5.1Compare Source
This updates OSV-Scanner to v2.3.8.
What's Changed
Fixes:
OSV_SCANNER_LOCAL_DB_CACHE_DIRECTORYenvironment variable (fixes #2983).--offline-vulnerabilities) not working when network capability isNetworkOnline.Full Changelog: google/osv-scanner-action@v2.5.0...v2.5.1
v2.5.0Compare Source
This updates OSV-Scanner to v2.5.0 as well as:
What's Changed
New Contributors
Full Changelog: google/osv-scanner-action@v2.3.8...v2.5.0
open-component-model/ocm (ocm)
v0.49.0Compare Source
What's Changed
🐛 Bug Fixes
⬆️ Dependencies
🧰 Maintenance
Full Changelog: open-component-model/ocm@v0.48...v0.49.0
v0.48.0Compare Source
What's Changed
⬆️ Dependencies
🧰 Maintenance
Full Changelog: open-component-model/ocm@v0.47...v0.48.0
v0.47.0Compare Source
What's Changed
🐛 Bug Fixes
⬆️ Dependencies
🧰 Maintenance
Full Changelog: open-component-model/ocm@v0.46...v0.47.0
v0.46.0Compare Source
What's Changed
🚀 Features
🐛 Bug Fixes
⬆️ Dependencies
🧰 Maintenance
Full Changelog: open-component-model/ocm@v0.45...v0.46.0
v0.45.0Compare Source
What's Changed
🐛 Bug Fixes
⬆️ Dependencies
🧰 Maintenance
New Contributors
Full Changelog: open-component-model/ocm@v0.44...v0.45.0
google/osv-scanner (osv-scanner)
v2.5.1Compare Source
Fixes:
OSV_SCANNER_LOCAL_DB_CACHE_DIRECTORYenvironment variable (fixes #2983).--offline-vulnerabilities) not working when network capability isNetworkOnline.v2.5.0Compare Source
Features & Refactors:
Full OSV-Scalibr pipeline: Migrated scanning, filtering, and matching in
osv-scannerto useosv-scalibrend-to-end, so most plugins that's supported in osv-scalibr should be supported via the--experimental-pluginsflag (#2935).New extractors and ecosystem support via
osv-scalibr:javascript/vsixextractor to support scanning VS Code extension (.vsix) packages.PURL Type Resolution: Updated
osvscannerjsonextractor to map ecosystem names to valid PURL types (golang, gem, cargo, npm, etc.).Fixes:
osv-scalibr, specifically regular expressions used to extract package names and per-requirement options (Fixes #2940, #2931)osv-scalibr, separating package namespace (scope) from package nameConfiguration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.