Skip to content

deps: bump github.com/getkin/kin-openapi from 0.136.0 to 0.139.0#109

Merged
santiago-praetorian merged 1 commit into
mainfrom
dependabot/go_modules/github.com/getkin/kin-openapi-0.139.0
May 26, 2026
Merged

deps: bump github.com/getkin/kin-openapi from 0.136.0 to 0.139.0#109
santiago-praetorian merged 1 commit into
mainfrom
dependabot/go_modules/github.com/getkin/kin-openapi-0.139.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 25, 2026

Copy link
Copy Markdown
Contributor

Bumps github.com/getkin/kin-openapi from 0.136.0 to 0.139.0.

Release notes

Sourced from github.com/getkin/kin-openapi's releases.

v0.139.0

What's Changed

Full Changelog: getkin/kin-openapi@v0.138.0...v0.139.0

v0.138.0

What's Changed

Full Changelog: getkin/kin-openapi@v0.137.0...v0.138.0

v0.137.0

What's Changed

Full Changelog: getkin/kin-openapi@v0.136.0...v0.137.0

Commits
  • 8381bfc openapi3: type the remaining bare-error validation sites (#1187)
  • d29b5c0 openapi3: fix validation of duplicated path templates (#1189)
  • e56c2c7 openapi3: aggregate independent validation errors via EnableMultiError (#1185)
  • 7ea1ac8 openapi3: tests flakiness corrected (#1159)
  • dc70f84 openapi3: track Origin on the document root (T) (#1184)
  • 69492df openapi3: typed context errors for Validate() wrapper chain (#1183)
  • 0a89925 un-patch YAML serialization of dates (see issue #697)
  • 55a4c72 openapi3: re-enable tests disabled due to YAML dates in map keys
  • c61836c ci: fixup lint after modifications to marsh.go
  • 7633481 feat: migrate to oasdiff/yaml v0.1.0 single Unmarshal API + enable DisableTim...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.136.0 to 0.139.0.
- [Release notes](https://github.com/getkin/kin-openapi/releases)
- [Commits](getkin/kin-openapi@v0.136.0...v0.139.0)

---
updated-dependencies:
- dependency-name: github.com/getkin/kin-openapi
  dependency-version: 0.139.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels May 25, 2026
@chatgpt-codex-connector

Copy link
Copy Markdown

Codex usage limits have been reached for code reviews. Please check with the admins of this repo to increase the limits by adding credits.
Credits must be used to enable repository wide code reviews.

@santiago-praetorian santiago-praetorian left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Verified end-to-end alongside #106 in worktree lab-3865 (LAB-3865): build/vet/lint clean, go test -race ./... all 19 packages PASS, live tests 7/7 PASS (vulnerable-api × 4 auth modes, grpc, dvga, crapi, 284 findings).

@santiago-praetorian santiago-praetorian merged commit 78c51bb into main May 26, 2026
19 of 20 checks passed
@santiago-praetorian santiago-praetorian deleted the dependabot/go_modules/github.com/getkin/kin-openapi-0.139.0 branch May 26, 2026 00:24
santiago-praetorian pushed a commit that referenced this pull request May 26, 2026
Verified end-to-end alongside #109 in worktree lab-3865 (LAB-3865): build/vet/lint clean, go test -race ./... 19/19 packages PASS, live tests 7/7 PASS (vulnerable-api × 4 auth modes, grpc, dvga, crapi, 284 findings). Includes upstream security fix for xds/rbac authorization bypass (grpc/grpc-go#9111).
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant