chore(deps): bump the dependencies group with 15 updates#312
Merged
github-actions[bot] merged 1 commit intomasterfrom Jan 1, 2026
Merged
Conversation
Bumps the dependencies group with 15 updates: | Package | From | To | | --- | --- | --- | | [github.com/bits-and-blooms/bitset](https://github.com/bits-and-blooms/bitset) | `1.24.3` | `1.24.4` | | [github.com/moby/moby](https://github.com/moby/moby) | `28.5.1+incompatible` | `28.5.2+incompatible` | | [go.etcd.io/etcd/api/v3](https://github.com/etcd-io/etcd) | `3.6.5` | `3.6.7` | | [go.etcd.io/etcd/client/v3](https://github.com/etcd-io/etcd) | `3.6.5` | `3.6.7` | | [golang.org/x/sys](https://github.com/golang/sys) | `0.37.0` | `0.39.0` | | [google.golang.org/grpc](https://github.com/grpc/grpc-go) | `1.76.0` | `1.78.0` | | [github.com/Scalingo/logrus-rollbar](https://github.com/Scalingo/logrus-rollbar) | `1.4.2` | `1.4.3` | | [github.com/grpc-ecosystem/grpc-gateway/v2](https://github.com/grpc-ecosystem/grpc-gateway) | `2.27.3` | `2.27.4` | | [go.etcd.io/etcd/client/pkg/v3](https://github.com/etcd-io/etcd) | `3.6.5` | `3.6.7` | | [go.uber.org/zap](https://github.com/uber-go/zap) | `1.27.0` | `1.27.1` | | [golang.org/x/net](https://github.com/golang/net) | `0.46.0` | `0.47.0` | | [golang.org/x/text](https://github.com/golang/text) | `0.30.0` | `0.32.0` | | [google.golang.org/genproto/googleapis/api](https://github.com/googleapis/go-genproto) | `0.0.0-20250929231259-57b25ae835d4` | `0.0.0-20251222181119-0a764e51fe1b` | | [google.golang.org/genproto/googleapis/rpc](https://github.com/googleapis/go-genproto) | `0.0.0-20250929231259-57b25ae835d4` | `0.0.0-20251222181119-0a764e51fe1b` | | google.golang.org/protobuf | `1.36.10` | `1.36.11` | Updates `github.com/bits-and-blooms/bitset` from 1.24.3 to 1.24.4 - [Release notes](https://github.com/bits-and-blooms/bitset/releases) - [Commits](bits-and-blooms/bitset@v1.24.3...v1.24.4) Updates `github.com/moby/moby` from 28.5.1+incompatible to 28.5.2+incompatible - [Release notes](https://github.com/moby/moby/releases) - [Commits](moby/moby@v28.5.1...v28.5.2) Updates `go.etcd.io/etcd/api/v3` from 3.6.5 to 3.6.7 - [Release notes](https://github.com/etcd-io/etcd/releases) - [Commits](etcd-io/etcd@v3.6.5...v3.6.7) Updates `go.etcd.io/etcd/client/v3` from 3.6.5 to 3.6.7 - [Release notes](https://github.com/etcd-io/etcd/releases) - [Commits](etcd-io/etcd@v3.6.5...v3.6.7) Updates `golang.org/x/sys` from 0.37.0 to 0.39.0 - [Commits](golang/sys@v0.37.0...v0.39.0) Updates `google.golang.org/grpc` from 1.76.0 to 1.78.0 - [Release notes](https://github.com/grpc/grpc-go/releases) - [Commits](grpc/grpc-go@v1.76.0...v1.78.0) Updates `github.com/Scalingo/logrus-rollbar` from 1.4.2 to 1.4.3 - [Release notes](https://github.com/Scalingo/logrus-rollbar/releases) - [Changelog](https://github.com/Scalingo/logrus-rollbar/blob/master/CHANGELOG.md) - [Commits](Scalingo/logrus-rollbar@v1.4.2...v1.4.3) Updates `github.com/grpc-ecosystem/grpc-gateway/v2` from 2.27.3 to 2.27.4 - [Release notes](https://github.com/grpc-ecosystem/grpc-gateway/releases) - [Commits](grpc-ecosystem/grpc-gateway@v2.27.3...v2.27.4) Updates `go.etcd.io/etcd/client/pkg/v3` from 3.6.5 to 3.6.7 - [Release notes](https://github.com/etcd-io/etcd/releases) - [Commits](etcd-io/etcd@v3.6.5...v3.6.7) Updates `go.uber.org/zap` from 1.27.0 to 1.27.1 - [Release notes](https://github.com/uber-go/zap/releases) - [Changelog](https://github.com/uber-go/zap/blob/master/CHANGELOG.md) - [Commits](uber-go/zap@v1.27.0...v1.27.1) Updates `golang.org/x/net` from 0.46.0 to 0.47.0 - [Commits](golang/net@v0.46.0...v0.47.0) Updates `golang.org/x/text` from 0.30.0 to 0.32.0 - [Release notes](https://github.com/golang/text/releases) - [Commits](golang/text@v0.30.0...v0.32.0) Updates `google.golang.org/genproto/googleapis/api` from 0.0.0-20250929231259-57b25ae835d4 to 0.0.0-20251222181119-0a764e51fe1b - [Commits](https://github.com/googleapis/go-genproto/commits) Updates `google.golang.org/genproto/googleapis/rpc` from 0.0.0-20250929231259-57b25ae835d4 to 0.0.0-20251222181119-0a764e51fe1b - [Commits](https://github.com/googleapis/go-genproto/commits) Updates `google.golang.org/protobuf` from 1.36.10 to 1.36.11 --- updated-dependencies: - dependency-name: github.com/bits-and-blooms/bitset dependency-version: 1.24.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: github.com/moby/moby dependency-version: 28.5.2+incompatible dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: go.etcd.io/etcd/api/v3 dependency-version: 3.6.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: go.etcd.io/etcd/client/v3 dependency-version: 3.6.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: golang.org/x/sys dependency-version: 0.39.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: google.golang.org/grpc dependency-version: 1.78.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: github.com/Scalingo/logrus-rollbar dependency-version: 1.4.3 dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: github.com/grpc-ecosystem/grpc-gateway/v2 dependency-version: 2.27.4 dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: go.etcd.io/etcd/client/pkg/v3 dependency-version: 3.6.7 dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: go.uber.org/zap dependency-version: 1.27.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: golang.org/x/net dependency-version: 0.47.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: golang.org/x/text dependency-version: 0.32.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: google.golang.org/genproto/googleapis/api dependency-version: 0.0.0-20251222181119-0a764e51fe1b dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: google.golang.org/genproto/googleapis/rpc dependency-version: 0.0.0-20251222181119-0a764e51fe1b dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: google.golang.org/protobuf dependency-version: 1.36.11 dependency-type: indirect update-type: version-update:semver-patch dependency-group: dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the dependencies group with 15 updates:
1.24.31.24.428.5.1+incompatible28.5.2+incompatible3.6.53.6.73.6.53.6.70.37.00.39.01.76.01.78.01.4.21.4.32.27.32.27.43.6.53.6.71.27.01.27.10.46.00.47.00.30.00.32.00.0.0-20250929231259-57b25ae835d40.0.0-20251222181119-0a764e51fe1b0.0.0-20250929231259-57b25ae835d40.0.0-20251222181119-0a764e51fe1b1.36.101.36.11Updates
github.com/bits-and-blooms/bitsetfrom 1.24.3 to 1.24.4Release notes
Sourced from github.com/bits-and-blooms/bitset's releases.
Commits
8c1b8bcMerge pull request #213 from whisk/fix/ShiftRight-pages-zeroingf0f8af2fixed panic in ShiftRight when zeroing pages for the happy caseUpdates
github.com/moby/mobyfrom 28.5.1+incompatible to 28.5.2+incompatibleRelease notes
Sourced from github.com/moby/moby's releases.
Commits
89c5e8fMerge pull request #51396 from thaJeztah/28.x_backport_api_docs9b93878Merge pull request #51395 from thaJeztah/28.x_backport_rootless_reject6178456Merge pull request #51398 from vvoland/51397-28.x0cae4e5vendor: github.com/moby/buildkit v0.25.233cc06fMerge pull request #51394 from vvoland/51393-28.xd525277api/docs: remove BuildCache.Parent field for API v1.42 and up2fbc51bdockerd-rootless.sh: reject DOCKERD_ROOTLESS_ROOTLESSKIT_NET=hostbd98008integration-cli: Adjust nofile limits1967515Dockerfile: update runc binary to v1.3.34489660Merge pull request #51387 from thaJeztah/28.x_bump_goUpdates
go.etcd.io/etcd/api/v3from 3.6.5 to 3.6.7Release notes
Sourced from go.etcd.io/etcd/api/v3's releases.
... (truncated)
Commits
e838ef1version: bump up to 3.6.76bfd01cMerge pull request #21024 from ivanvc/release-3.6-x-net-0.45.061af088dependency: Bump golang.org/x/net from 0.38.0 to 0.45.0dbaf5cfMerge pull request #20998 from hwdef/release36-bump-go-1241197141e1Bump go to 1.24.11f185ce6Merge pull request #20941 from ahrtr/20251117_tokens_3.6554dc70Print token fingerprint instead of the original tokens in log messagesd2809cfversion: bump up to 3.6.60745315Merge pull request #20905 from k8s-infra-cherrypick-robot/cherry-pick-20887-t...145d927v3rpc: add and use getServerMetrics() with global metricsServerCachedUpdates
go.etcd.io/etcd/client/v3from 3.6.5 to 3.6.7Release notes
Sourced from go.etcd.io/etcd/client/v3's releases.
... (truncated)
Commits
e838ef1version: bump up to 3.6.76bfd01cMerge pull request #21024 from ivanvc/release-3.6-x-net-0.45.061af088dependency: Bump golang.org/x/net from 0.38.0 to 0.45.0dbaf5cfMerge pull request #20998 from hwdef/release36-bump-go-1241197141e1Bump go to 1.24.11f185ce6Merge pull request #20941 from ahrtr/20251117_tokens_3.6554dc70Print token fingerprint instead of the original tokens in log messagesd2809cfversion: bump up to 3.6.60745315Merge pull request #20905 from k8s-infra-cherrypick-robot/cherry-pick-20887-t...145d927v3rpc: add and use getServerMetrics() with global metricsServerCachedUpdates
golang.org/x/sysfrom 0.37.0 to 0.39.0Commits
08e5482unix: fix out of bounds memory access in tests4f4f1c6Revert "cpu: add HPDS, LOR, PAN detection for arm64"ca63116unix: add IOCTL_MEI_* constantsa4199c0unix: fix definition of Statvfs_t for netbsd-arm.15129aacpu: also use MRS instruction in getmmfr1ed38ca2unix: add SizeofNhmsg and SizeofNexthopGrp3675c4ccpu: use MRS instruction to read arm64 system registers2a15272unix: add consts for ELF handling6239615cpu: add HPDS, LOR, PAN detection for arm64ea436efwindows: add iphlpapi routing functionsUpdates
google.golang.org/grpcfrom 1.76.0 to 1.78.0Release notes
Sourced from google.golang.org/grpc's releases.
... (truncated)
Commits
9df039eChange version to 1.78.0 (#8761)9b990b6gracefulswitch: Wait for all goroutines on close (#8746)6677d9axds: Fixing a typo (#8760)d35ceddxds/resolver: pass route's auto_host_rewrite to LB picker (gRFC A81) (#8740)d931fdcclient: allow overriding grpc-accept-encoding header (#8718)0800ec7xds/clusterimpl: update TestChildPolicyChangeOnConfigUpdate to use custom lb ...6553ea1stats/otel: Add subchannel metrics (A94) (#8738)81a00cegrpc: Fixing spelling typo (#8756)e413838client: Change connectivity state to CONNECTING when creating the name resolv...f9d2bdbstats/otel: Add grpc.lb.backend_service label to wrr metrics (A89) (#8737)Updates
github.com/Scalingo/logrus-rollbarfrom 1.4.2 to 1.4.3Release notes
Sourced from github.com/Scalingo/logrus-rollbar's releases.
Changelog
Sourced from github.com/Scalingo/logrus-rollbar's changelog.
Commits
922fc20Merge pull request #65 from Scalingo/release/1.4.39e31c1ddocs(readme): new release reviewer is IST4c2929bBump v1.4.3f1c44a2Merge pull request #64 from Scalingo/dependabot/go_modules/dependencies-e345d...581f3c8chore(deps): bump golang.org/x/sys in the dependencies groupa876804Merge pull request #63 from Scalingo/build/STORY-2981/dependabot-automerge572fd7bbuild(workflows): use the Scalingo actions4403be5Merge pull request #62 from Scalingo/dependabot/go_modules/dependencies-fc088...88d526dchore(deps): bump golang.org/x/sys in the dependencies group9e2052fMerge pull request #61 from Scalingo/dependabot/go_modules/dependencies-3babb...Updates
github.com/grpc-ecosystem/grpc-gateway/v2from 2.27.3 to 2.27.4Release notes
Sourced from github.com/grpc-ecosystem/grpc-gateway/v2's releases.
Commits
11fc3b8fix(gengateway): correct body field decoding in opaque API mode (#6197)2cca0efchore(deps): update googleapis digest to 60f1e6a (#6196)c32ae8dfix(deps): update module google.golang.org/grpc to v1.78.0 (#6195)5cd2c52chore(deps): update googleapis digest to ef6a532 (#6194)7506f3bfix(deps): update google.golang.org/genproto/googleapis/rpc digest to 0a764e5...a895f47fix(deps): update google.golang.org/genproto/googleapis/api digest to 0a764e5...4abd9dcchore(deps): update googleapis digest to 347b0e4 (#6190)01881e6Add note about Authorization header forwarding (#6185)e88e585chore(deps): update googleapis digest to affadb6 (#6188)63ea9aachore(deps): update googleapis digest to bc7e3ba (#6187)Updates
go.etcd.io/etcd/client/pkg/v3from 3.6.5 to 3.6.7Release notes
Sourced from go.etcd.io/etcd/client/pkg/v3's releases.
... (truncated)
Commits
e838ef1version: bump up to 3.6.76bfd01cMerge pull request #21024 from ivanvc/release-3.6-x-net-0.45.061af088dependency: Bump golang.org/x/net from 0.38.0 to 0.45.0dbaf5cfMerge pull request #20998 from hwdef/release36-bump-go-1241197141e1Bump go to 1.24.11f185ce6Merge pull request #20941 from ahrtr/20251117_tokens_3.6554dc70Print token fingerprint instead of the original tokens in log messagesd2809cfversion: bump up to 3.6.60745315Merge pull request #20905 from k8s-infra-cherrypick-robot/cherry-pick-20887-t...145d927v3rpc: add and use getServerMetrics() with global metricsServerCachedUpdates
go.uber.org/zapfrom 1.27.0 to 1.27.1Release notes
Sourced from go.uber.org/zap's releases.
Changelog
Sourced from go.uber.org/zap's changelog.
Commits
7b755a3release 1.27.1 (#1521)d6b395bUpdate lazy logger not to materialize unless it's being written to (#1519)4b9cea0ci: Test with Go 1.24, Go 1.25 (#1508)7c80d7bFix race condition in WithLazy implementation (#1426) (#1511)07077a6Prevent zap.Object from panicing on nils (#1501)a6afd05Fix lint check name (#1502)6d48253chore: fix typo (#1482)32f2ec1Fix the field test for bool type (#1480)fe16eb5Upgrade grpc in zapgrc test package & bump go version (#1478)5f00c34test(AtomicLevel): demonstrate Handler is not vulnerable to XSS (#1477)Updates
golang.org/x/netfrom 0.46.0 to 0.47.0Commits
9a29643go.mod: update golang.org/x dependencies07cefd8context: deprecate5ac9dacpublicsuffix: don't treat ip addresses as domain namesd1f64ccquic: use testing/synctestfff0469http2: document that RFC 7540 prioritization does not work with small payloadsf35e3a4http2: fix weight overflow in RFC 7540 write scheduler89adc90http2: fix typo referring to RFC 9218 as RFC 9128 instead8d76a2cquic: don't defer MAX_STREAMS frames indefinitely027f8b7quic: fix expected ACK Delay in client's ACK after HANDSHAKE_DONEdec9fe7dns/dnsmessage: update SVCB packing to prohibit name compressionUpdates
golang.org/x/textfrom 0.30.0 to 0.32.0Commits
0dd57a6go.mod: update golang.org/x dependencies087616btransform: fix %q verb use with wrong type16f85a7all: eliminate vet diagnosticse7ff6b3go.mod: update golang.org/x dependenciesfbf012ball: use reflect.TypeFor instead of reflect.TypeOfUpdates
google.golang.org/genproto/googleapis/apifrom 0.0.0-20250929231259-57b25ae835d4 to 0.0.0-20251222181119-0a764e51fe1bCommits
Updates
google.golang.org/genproto/googleapis/rpcfrom 0.0.0-20250929231259-57b25ae835d4 to 0.0.0-20251222181119-0a764e51fe1bCommits
Updates
google.golang.org/protobuffrom 1.36.10 to 1.36.11Most Recent Ignore Conditions Applied to This Pull Request
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions