Bump github.com/operator-framework/api from 0.37.0 to 0.45.0 - #1
Bump github.com/operator-framework/api from 0.37.0 to 0.45.0#1dependabot[bot] wants to merge 1 commit into
Conversation
858da76 to
d0fbe22
Compare
|
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: dependabot[bot] The full list of commands accepted by this bot can be found here. DetailsNeeds approval from an approver in each of these files:Approvers can indicate their approval by writing |
|
/ok-to-test |
|
/retest |
d0fbe22 to
9a8d429
Compare
Job govulncheck is failing with the following error. ``` Vulnerability openstack-k8s-operators#1: GO-2026-5970 Infinite loop on invalid input in golang.org/x/text More info: https://pkg.go.dev/vuln/GO-2026-5970 Module: golang.org/x/text Found in: golang.org/x/text@v0.37.0 Fixed in: golang.org/x/text@v0.39.0 ``` This commit updates the text dependency and transitive version bumps of other dependencies.
9a8d429 to
646602d
Compare
|
@dependabot[bot]: The following tests failed, say
Full PR test history. Your PR dashboard. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here. |
Job govulncheck is failing with the following error. ``` Vulnerability openstack-k8s-operators#1: GO-2026-5970 Infinite loop on invalid input in golang.org/x/text More info: https://pkg.go.dev/vuln/GO-2026-5970 Module: golang.org/x/text Found in: golang.org/x/text@v0.37.0 Fixed in: golang.org/x/text@v0.39.0 ``` This commit updates the text dependency and transitive version bumps of other dependencies.
Error is: ``` Vulnerability openstack-k8s-operators#1: GO-2026-6061 Vulnerabilities in the xDS RBAC authorization engine and the HTTP/2 transport server implementation in google.golang.org/grpc More info: https://pkg.go.dev/vuln/GO-2026-6061 Module: google.golang.org/grpc Found in: google.golang.org/grpc@v1.78.0 Fixed in: google.golang.org/grpc@v1.82.1 Example traces found: openstack-k8s-operators#1: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.NewHTTP2Client openstack-k8s-operators#2: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.http2Client.Close openstack-k8s-operators#3: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.http2Client.GracefulClose ```
Error is: ``` Vulnerability openstack-k8s-operators#1: GO-2026-6061 Vulnerabilities in the xDS RBAC authorization engine and the HTTP/2 transport server implementation in google.golang.org/grpc More info: https://pkg.go.dev/vuln/GO-2026-6061 Module: google.golang.org/grpc Found in: google.golang.org/grpc@v1.78.0 Fixed in: google.golang.org/grpc@v1.82.1 Example traces found: openstack-k8s-operators#1: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.NewHTTP2Client openstack-k8s-operators#2: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.http2Client.Close openstack-k8s-operators#3: test/utils/utils.go:113:21: utils.LoadImageToKindClusterWithName calls exec.Command, which eventually calls transport.http2Client.GracefulClose ```
Bumps [github.com/operator-framework/api](https://github.com/operator-framework/api) from 0.37.0 to 0.45.0. - [Release notes](https://github.com/operator-framework/api/releases) - [Changelog](https://github.com/operator-framework/api/blob/master/RELEASE.md) - [Commits](operator-framework/api@v0.37.0...v0.45.0) --- updated-dependencies: - dependency-name: github.com/operator-framework/api dependency-version: 0.44.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
646602d to
c151ade
Compare
Bumps github.com/operator-framework/api from 0.37.0 to 0.45.0.
Release notes
Sourced from github.com/operator-framework/api's releases.
... (truncated)
Commits
72d46e1Bump actions/setup-go from 6 to 7 (#506)c4902deBump github.com/google/cel-go from 0.29.1 to 0.29.2 (#505)132f449Bump github.com/google/cel-go from 0.28.1 to 0.29.1 (#504)23c932aBump golang.org/x/net from 0.54.0 to 0.55.0 (#503)3c29466Bump actions/cache from 5 to 6 (#502)492d6bapkg/manifests: fix dropped walk errors (#495)2b39c44Bump actions/checkout from 6 to 7 (#501)5adf634Bump the k8s-dependencies group with 4 updates (#500)887f161Bump the k8s-dependencies group across 1 directory with 5 updates (#498)52c4c32Bump codecov/codecov-action from 6 to 7 (#499)