chore(deps): bump the dependencies group with 10 updates #1099
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the dependencies group with 10 updates:
3.1.63.1.75.13.25.14.00.32.00.35.00.28.00.29.00.21.00.22.01.1.51.1.61.5.01.6.00.0.0-20210331224755-41bb18bfe9da0.0.0-20241129210726-2c02b8208cf80.34.00.35.00.29.00.30.0Updates
github.com/cheggaaa/pb/v3from 3.1.6 to 3.1.7Commits
555a83brequire go1.1803653c2update go mods6f99b91replace Sprintf to Sprint; possible fix for #227Updates
github.com/go-git/go-git/v5from 5.13.2 to 5.14.0Release notes
Sourced from github.com/go-git/go-git/v5's releases.
Commits
863c621Merge pull request #1436 from pjbgf/v5-bumps2e69e81build: Bump dependenciesb2c1ec9build: Bump Go versionsUpdates
golang.org/x/cryptofrom 0.32.0 to 0.35.0Commits
7292932ssh: limit the size of the internal packet queue while waiting for KEXf66f74bacme/autocert: check host policy before probing the cacheb0784b7x509roots/fallback: drop obsolete build constraint911360call: bump golang.org/x/crypto dependencies of asm generators89ff08dall: upgrade go directive to at least 1.23.0 [generated]e47973ball: update certs for go1.249290511go.mod: update golang.org/x dependenciesfa5273ex509roots/fallback: update bundlea8ea4bessh: add ServerConfig.PreAuthConnCallback, ServerPreAuthConn (banner) interface71d3a4cacme: support challenges that require the ACME client to send a non-empty JSO...Updates
golang.org/x/termfrom 0.28.0 to 0.29.0Commits
743b270go.mod: update golang.org/x dependenciesUpdates
golang.org/x/textfrom 0.21.0 to 0.22.0Commits
3b64043go.mod: update golang.org/x dependencies1e59086message/pipeline: add two Unalias callsUpdates
github.com/ProtonMail/go-cryptofrom 1.1.5 to 1.1.6Release notes
Sourced from github.com/ProtonMail/go-crypto's releases.
Commits
e52eadaMerge pull request #271 from ProtonMail/feat/improve-errors-key-selection4bf9d90feat(v2): Improve error message for encryption key selectiond47bb38Merge pull request #266 from caarlos0/issuer-key-id756ebbdMake Issuer Key ID signature subpacket non-critical44ef98cMerge pull request #276 from mdosch/fix-random-source-is-brokenb105e24Merge branch 'main' into fix-random-source-is-broken89b0776Only check that message signatures are newer than the key2b2dbe9openpgp/clearsign: just use rand.Reader in tests2732e09Merge pull request #275 from ProtonMail/only-check-msg-sig-newer-than-key8e272e7Only check that message signatures are newer than the keyUpdates
github.com/cloudflare/circlfrom 1.5.0 to 1.6.0Release notes
Sourced from github.com/cloudflare/circl's releases.
Commits
89e658cAdd X-Wing to the readme and bump version.6e910fdAdd Prio3 in readme.4e35591Adding polynomial multiplication based on NTT.830152fPassing NTT size.0a61b66Removing deprecated use of elliptic in P384.342ad81Update HPKE code to use ecdh stdlib package.4987803ckem: move crypto/elliptic to crypto/ecdh (#529)9340445Relax kem constaint from kem.AuthScheme to kem.Scheme.964fefaX-Wing PQ/T hybridcd157f0Run semgrep cronjob only in upstream repository.Updates
github.com/golang/groupcachefrom 0.0.0-20210331224755-41bb18bfe9da to 0.0.0-20241129210726-2c02b8208cf8Commits
Updates
golang.org/x/netfrom 0.34.0 to 0.35.0Commits
df97a48go.mod: update golang.org/x dependencies2dab271route: treat short sockaddr lengths as unspecifiedb914489internal/http3: refactor in prep for sharing transport/server codeebd23f8route: fix parsing network address of length zero938a9fbinternal/http3: add request/response body transfer145b2d7internal/http3: add RoundTrip5bda71ainternal/http3: define connection and stream error types3c1185ainternal/http3: return error on mid-frame EOFa6c2c7fhttp2, internal/httpcommon: factor out common request header logic for h2/h3c72e89dinternal/http3: QPACK encoding and decodingUpdates
golang.org/x/sysfrom 0.29.0 to 0.30.0Commits
863b3c4unix: update glibc to 2.414d4692eunix: add Auxvb215a1cunix: update to Linux kernel 6.13c756214cpu: add support for AVX-VNNI and IFMA detection1c14dcaunix: add GetPeerUcred and UcredGet for solarisDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions