Bump the root-deps group across 1 directory with 7 updates#2195
Merged
Bump the root-deps group across 1 directory with 7 updates#2195
Conversation
3900ce5 to
3c8769c
Compare
Bumps the root-deps group with 5 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/containerd/stargz-snapshotter/estargz](https://github.com/containerd/stargz-snapshotter) | `0.18.1` | `0.18.2` | | [github.com/docker/cli](https://github.com/docker/cli) | `29.0.3+incompatible` | `29.1.5+incompatible` | | [github.com/spf13/cobra](https://github.com/spf13/cobra) | `1.10.1` | `1.10.2` | | [golang.org/x/oauth2](https://github.com/golang/oauth2) | `0.33.0` | `0.34.0` | | [golang.org/x/tools](https://github.com/golang/tools) | `0.39.0` | `0.41.0` | Updates `github.com/containerd/stargz-snapshotter/estargz` from 0.18.1 to 0.18.2 - [Release notes](https://github.com/containerd/stargz-snapshotter/releases) - [Commits](containerd/stargz-snapshotter@v0.18.1...v0.18.2) Updates `github.com/docker/cli` from 29.0.3+incompatible to 29.1.5+incompatible - [Commits](docker/cli@v29.0.3...v29.1.5) Updates `github.com/klauspost/compress` from 1.18.1 to 1.18.3 - [Release notes](https://github.com/klauspost/compress/releases) - [Commits](klauspost/compress@v1.18.1...v1.18.3) Updates `github.com/spf13/cobra` from 1.10.1 to 1.10.2 - [Release notes](https://github.com/spf13/cobra/releases) - [Commits](spf13/cobra@v1.10.1...v1.10.2) Updates `golang.org/x/oauth2` from 0.33.0 to 0.34.0 - [Commits](golang/oauth2@v0.33.0...v0.34.0) Updates `golang.org/x/sync` from 0.18.0 to 0.19.0 - [Commits](golang/sync@v0.18.0...v0.19.0) Updates `golang.org/x/tools` from 0.39.0 to 0.41.0 - [Release notes](https://github.com/golang/tools/releases) - [Commits](golang/tools@v0.39.0...v0.41.0) --- updated-dependencies: - dependency-name: github.com/containerd/stargz-snapshotter/estargz dependency-version: 0.18.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: root-deps - dependency-name: github.com/docker/cli dependency-version: 29.1.5+incompatible dependency-type: direct:production update-type: version-update:semver-minor dependency-group: root-deps - dependency-name: github.com/klauspost/compress dependency-version: 1.18.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: root-deps - dependency-name: github.com/spf13/cobra dependency-version: 1.10.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: root-deps - dependency-name: golang.org/x/oauth2 dependency-version: 0.34.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: root-deps - dependency-name: golang.org/x/sync dependency-version: 0.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: root-deps - dependency-name: golang.org/x/tools dependency-version: 0.41.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: root-deps ... Signed-off-by: dependabot[bot] <support@github.com>
3c8769c to
d131454
Compare
Subserial
approved these changes
Feb 18, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the root-deps group with 5 updates in the / directory:
0.18.10.18.229.0.3+incompatible29.1.5+incompatible1.10.11.10.20.33.00.34.00.39.00.41.0Updates
github.com/containerd/stargz-snapshotter/estargzfrom 0.18.1 to 0.18.2Release notes
Sourced from github.com/containerd/stargz-snapshotter/estargz's releases.
Commits
3070538Merge pull request #2231 from ktock/prepare-v0.18.23528ff6Prepare for v0.18.226b36caMerge pull request #2233 from ktock/dockerifle202602812ba6cDockerfile: bump up dependencies78a117dMerge pull request #2230 from containerd/dependabot/go_modules/gomod-79093de63b4c0f6a0build(deps): bump the gomod group across 3 directories with 2 updatesee524feMerge pull request #2227 from containerd/dependabot/go_modules/gomod-a2c59b68ad4ba62f4build(deps): bump github.com/sirupsen/logrusb4360b7Merge pull request #2226 from luochenglcs/fixd6c57a3Merge pull request #2205 from wswsmao/pathlogUpdates
github.com/docker/clifrom 29.0.3+incompatible to 29.1.5+incompatibleCommits
0e6fee6Merge pull request #6698 from thaJeztah/inline_parseWindowsDevice88be588Merge pull request #6709 from vvoland/img-list-all-docf7ddc8adocs: Update --all flag description to clarify it shows dangling images00e23cfMerge pull request #6706 from docker/dependabot/github_actions/actions/upload...4d7a8b0build(deps): bump actions/upload-artifact from 5 to 6f52814dMerge pull request #6705 from vvoland/list-fix0f03c31image/list: Fixdangling=falsehandling1e25906cli/tree: Remove unusedallfield4d6fc33Merge pull request #6704 from vvoland/list-fix09a4664image/tree: Add golden testUpdates
github.com/klauspost/compressfrom 1.18.1 to 1.18.3Release notes
Sourced from github.com/klauspost/compress's releases.
Commits
1d6cf28Downstream CVE-2025-61728444d5d9Fix invalid encoding on level 9 with single value input (#1115)503c028build(deps): bump github/codeql-action in the github-actions group (#1111)701ca28flate: reduce stateless allocations (#1106)e0b47ffUpdate changelogUpdates
github.com/spf13/cobrafrom 1.10.1 to 1.10.2Release notes
Sourced from github.com/spf13/cobra's releases.
Commits
88b30abchore: Migrate from gopkg.in/yaml.v3 to go.yaml.in/yaml/v3 (#2336)346d408fix: actions/setup-go v6 (#2337)fc81d20refactor: change minUsagePadding from var to const (#2325)117698arefactor: replace several vars with consts (#2328)e2dd29dAdd documentation for repeated flags functionality (#2316)0629892Fix linter (#2327)Updates
golang.org/x/oauth2from 0.33.0 to 0.34.0Commits
acc3815endpoints: fix %q verb use with wrong typeUpdates
golang.org/x/syncfrom 0.18.0 to 0.19.0Commits
2a180e2errgroup: use consistent read for SetLimit panicUpdates
golang.org/x/toolsfrom 0.39.0 to 0.41.0Commits
2ad2b30go.mod: update golang.org/x dependencies5832cceinternal/diff/lcs: introduce line diffs67c4257gopls/internal/golang: Definition: fix Windows bug wrt //go:embed12c1f04gopls/completion: check Selection invariant6d87185internal/server: add vulncheck scanning after vulncheck prompt0c3a1fego/ast/inspector: FindByPos returns the first innermost nodeca281cfgo/analysis/passes/ctrlflow: add noreturn funcs from popular pkgs09c21a9gopls/internal/analysis/unusedfunc: remove warnings for unused enum consts03cb455internal/modindex: suppress missing modcacheindex message15d13e8gopls/internal/util/typesutil: refine EnclosingSignature bug.ReportDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions