Skip to content

chore(deps): bump securego/gosec from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to 4ead098510926e1015958a36dc966bfcb7f6ee11#45

Merged
Jaro-c merged 1 commit intomainfrom
dependabot/github_actions/securego/gosec-c864f68365f29c18b09b66880c76bf74af403aba
Apr 26, 2026
Merged

chore(deps): bump securego/gosec from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to 4ead098510926e1015958a36dc966bfcb7f6ee11#45
Jaro-c merged 1 commit intomainfrom
dependabot/github_actions/securego/gosec-c864f68365f29c18b09b66880c76bf74af403aba

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 20, 2026

Bumps securego/gosec from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to 4ead098510926e1015958a36dc966bfcb7f6ee11.

Commits
  • 4ead098 Add G710 rule for open redirect via taint analysis (#1654)
  • 8ff985f Fix formatting
  • a1aad0c Update the default models use by autofix and phase out the older models
  • 74bdf7f Format and clean-up the README
  • 74dc989 Add HTTP file-serving function to the skins of pathtraversal analyzer (#1647)
  • 7020111 Skip flaging the TLS min version for go 1.18+ (#1646)
  • d5869fc chore(deps): bump go.opentelemetry.io/otel from 1.39.0 to 1.41.0 (#1645)
  • 24ee992 Added filepath.Abs as a sanitizer (#1643)
  • 87bdc09 Allow rune to byte conversion (#1642)
  • 73293bd Allow platform specific conversions (#1641)
  • Additional commits viewable in compare view

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Apr 20, 2026

Labels

The following labels could not be found: dependencies, github-actions. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot requested a review from Jaro-c as a code owner April 20, 2026 07:43
@Jaro-c Jaro-c added dependencies Dependency updates github-actions GitHub Actions labels Apr 26, 2026
@dependabot dependabot Bot changed the title chore(deps): bump securego/gosec from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to c864f68365f29c18b09b66880c76bf74af403aba chore(deps): bump securego/gosec from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to 4ead098510926e1015958a36dc966bfcb7f6ee11 Apr 26, 2026
Bumps [securego/gosec](https://github.com/securego/gosec) from 64b97151cd7b978abdf8d2f1159a4e9096a12c2b to 4ead098510926e1015958a36dc966bfcb7f6ee11.
- [Release notes](https://github.com/securego/gosec/releases)
- [Commits](securego/gosec@64b9715...4ead098)

---
updated-dependencies:
- dependency-name: securego/gosec
  dependency-version: c864f68365f29c18b09b66880c76bf74af403aba
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/securego/gosec-c864f68365f29c18b09b66880c76bf74af403aba branch from dc57122 to 4301a85 Compare April 26, 2026 18:42
@Jaro-c Jaro-c merged commit 6fb96a0 into main Apr 26, 2026
9 checks passed
@Jaro-c Jaro-c deleted the dependabot/github_actions/securego/gosec-c864f68365f29c18b09b66880c76bf74af403aba branch April 26, 2026 18:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Dependency updates github-actions GitHub Actions

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant