dev: bump the safe group with 7 updates#7920
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
Bumps the safe group with 7 updates: | Package | From | To | | --- | --- | --- | | [github.com/aws/aws-sdk-go-v2/config](https://github.com/aws/aws-sdk-go-v2) | `1.32.17` | `1.32.18` | | [github.com/nats-io/nats-server/v2](https://github.com/nats-io/nats-server) | `2.14.0` | `2.14.1` | | [github.com/redis/go-redis/v9](https://github.com/redis/go-redis) | `9.18.0` | `9.19.0` | | [github.com/uptrace/bun/dialect/pgdialect](https://github.com/uptrace/bun) | `1.2.15` | `1.2.18` | | [github.com/uptrace/bun/driver/pgdriver](https://github.com/uptrace/bun) | `1.2.15` | `1.2.18` | | [golang.org/x/crypto](https://github.com/golang/crypto) | `0.51.0` | `0.52.0` | | [golang.org/x/net](https://github.com/golang/net) | `0.54.0` | `0.55.0` | Updates `github.com/aws/aws-sdk-go-v2/config` from 1.32.17 to 1.32.18 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](aws/aws-sdk-go-v2@config/v1.32.17...config/v1.32.18) Updates `github.com/nats-io/nats-server/v2` from 2.14.0 to 2.14.1 - [Release notes](https://github.com/nats-io/nats-server/releases) - [Changelog](https://github.com/nats-io/nats-server/blob/main/RELEASES.md) - [Commits](nats-io/nats-server@v2.14.0...v2.14.1) Updates `github.com/redis/go-redis/v9` from 9.18.0 to 9.19.0 - [Release notes](https://github.com/redis/go-redis/releases) - [Changelog](https://github.com/redis/go-redis/blob/master/RELEASE-NOTES.md) - [Commits](redis/go-redis@v9.18.0...v9.19.0) Updates `github.com/uptrace/bun/dialect/pgdialect` from 1.2.15 to 1.2.18 - [Release notes](https://github.com/uptrace/bun/releases) - [Changelog](https://github.com/uptrace/bun/blob/master/CHANGELOG.md) - [Commits](uptrace/bun@v1.2.15...v1.2.18) Updates `github.com/uptrace/bun/driver/pgdriver` from 1.2.15 to 1.2.18 - [Release notes](https://github.com/uptrace/bun/releases) - [Changelog](https://github.com/uptrace/bun/blob/master/CHANGELOG.md) - [Commits](uptrace/bun@v1.2.15...v1.2.18) Updates `golang.org/x/crypto` from 0.51.0 to 0.52.0 - [Commits](golang/crypto@v0.51.0...v0.52.0) Updates `golang.org/x/net` from 0.54.0 to 0.55.0 - [Commits](golang/net@v0.54.0...v0.55.0) --- updated-dependencies: - dependency-name: github.com/aws/aws-sdk-go-v2/config dependency-version: 1.32.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/nats-io/nats-server/v2 dependency-version: 2.14.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/redis/go-redis/v9 dependency-version: 9.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: github.com/uptrace/bun/dialect/pgdialect dependency-version: 1.2.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: github.com/uptrace/bun/driver/pgdriver dependency-version: 1.2.18 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe - dependency-name: golang.org/x/crypto dependency-version: 0.52.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe - dependency-name: golang.org/x/net dependency-version: 0.55.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: safe ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the safe group with 7 updates:
1.32.171.32.182.14.02.14.19.18.09.19.01.2.151.2.181.2.151.2.180.51.00.52.00.54.00.55.0Updates
github.com/aws/aws-sdk-go-v2/configfrom 1.32.17 to 1.32.18Commits
db9f4e5Release 2026-05-2234e7ddcRegenerated Clientsf9db036Update endpoints modelae5eae1Update API model429dbddFeat discover endpoint partition validation (#3410)ab4f5b6Release 2026-05-21757a099Regenerated Clients02c8323Update API modelf4ac954Bump smithy-go version and update imports for evenstream protocoltests (#3420)6d93700Add replace for credentials dependency added on go.mod (#3419)Updates
github.com/nats-io/nats-server/v2from 2.14.0 to 2.14.1Release notes
Sourced from github.com/nats-io/nats-server/v2's releases.
... (truncated)
Commits
cb557cdRelease v2.14.19182ee9Cherry-picks for 2.14.1 (#8219)128e855Add a benchmark for WriteTermVote6bb9af2Allow cancellation ofIntersectGSL, optimise skip block check899bf88[IMPROVED] Clear stale sa/ca.err after successa1e81c0[IMPROVED] Surface assignment errors in stream/consumer log messages2477ebc[IMPROVED] Surface assignment errors in stream/consumer health checksb7d533e[IMPROVED] Consumer's deleteNotActive compares against object-local assignmente667787[FIXED] Async INFO flipped tls_required for in-process clientsf56faadRelease v2.14.1-RC.2Updates
github.com/redis/go-redis/v9from 9.18.0 to 9.19.0Release notes
Sourced from github.com/redis/go-redis/v9's releases.
... (truncated)
Changelog
Sourced from github.com/redis/go-redis/v9's changelog.
... (truncated)
Commits
e7e9866chore(release): v9.19.0 (#3796)22b26f4feat(ft.aggregate): Add Steps for query building (#3782)d9d7694fix(pool): two fixes for closed connection handling (#3764)44e8b73fix(sch): auto hostname type detection (#3789)ad21622fix(hello): do not send maintnotifications handshake when hello fails (#3788)1a7ac74fix(pool): suppress pool Close() errors for stale connections (#3778)903d6bdfix(retry): make dial tcp error redirectable (#3786) (#3787)00a551bfix(credentials): leak in wrappedOnClose (#3785)b5a6f99refactor(pool): remove redundant Conn.closed atomic field (#3783)928f27afeat(hscan): add support for encoding.BinaryUnmarshaler (#3768)Updates
github.com/uptrace/bun/dialect/pgdialectfrom 1.2.15 to 1.2.18Release notes
Sourced from github.com/uptrace/bun/dialect/pgdialect's releases.
Changelog
Sourced from github.com/uptrace/bun/dialect/pgdialect's changelog.
... (truncated)
Commits
5de0fb9chore: release v1.2.18 (release.sh) (#1341)bec98b9fix: handle []byte and [N]byte in Tuple, separate List from Tuple imp… (#1340)b8da15bfix: validate parenthesized content in ReadIdentifier to prevent ?(?, ?) misp...6b7a19bAdd client cert support in postgres dsn (sslcert and sslkey) (#1336)3c9f8fbchore: remove Go 1.24 from CI build matrix43d07bechore: release v1.2.17 (release.sh) (#1333)a94579fchore: add doc comments for exported identifiers across sub-packagesb19d8f7chore: add doc comments for package, type, and exported functions415f372chore: re-order features by category and add missing documentation44ac056feat: create unique index on migration name column in Migrator.Init (#1332)Updates
github.com/uptrace/bun/driver/pgdriverfrom 1.2.15 to 1.2.18Release notes
Sourced from github.com/uptrace/bun/driver/pgdriver's releases.
Changelog
Sourced from github.com/uptrace/bun/driver/pgdriver's changelog.
... (truncated)
Commits
5de0fb9chore: release v1.2.18 (release.sh) (#1341)bec98b9fix: handle []byte and [N]byte in Tuple, separate List from Tuple imp… (#1340)b8da15bfix: validate parenthesized content in ReadIdentifier to prevent ?(?, ?) misp...6b7a19bAdd client cert support in postgres dsn (sslcert and sslkey) (#1336)3c9f8fbchore: remove Go 1.24 from CI build matrix43d07bechore: release v1.2.17 (release.sh) (#1333)a94579fchore: add doc comments for exported identifiers across sub-packagesb19d8f7chore: add doc comments for package, type, and exported functions415f372chore: re-order features by category and add missing documentation44ac056feat: create unique index on migration name column in Migrator.Init (#1332)Updates
golang.org/x/cryptofrom 0.51.0 to 0.52.0Commits
a1c0d99go.mod: update golang.org/x dependencies3c7c869ssh: fix deadlock on unexpected channel responses533fb3fssh: fix source-address critical option bypassabbc44dssh: fix incorrect operator ordere052873ssh: fix infinite loop on large channel writes due to integer overflowb61cf85ssh: enforce user presence verification for security keys9c2cd33ssh: enforce strict limits on DSA key parameters8907318ssh: reject RSA keys with excessively large moduliffd87b4ssh: fix panic when authority callbacks are nil4e7a738ssh: fix deadlock on unexpected global responsesUpdates
golang.org/x/netfrom 0.54.0 to 0.55.0Commits
7770ec4go.mod: update golang.org/x dependencies4ece7b6html: escape greater-than symbol in doctype identifiers08be507html: improve Noah's Ark clause performancea8fb2fehtml: properly render fostered elements in foreign content0dc5b7ahtml: properly check namespace in "in body" any other end taga452f3chtml: ignore duplicate attributes during tokenizationf865199quic: fix appendMaxDataFrame erroneously accumulating sentLimit210ed3cquic: establish a "happened-before" relationship between stream write and readad8140equic: fix buffer slicing when handling overlapping stream data23ee2efhttp2: avoid API changes when built with go1.27Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions