dev: bump the safe group with 9 updates #7590
Closed
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the safe group with 9 updates:
0.31.10.32.01.7.21.7.32.11.02.11.11.41.01.41.11.21.11.22.00.36.00.37.00.38.00.39.00.28.00.29.00.12.00.13.0Updates
github.com/getsentry/sentry-gofrom 0.31.1 to 0.32.0Release notes
Sourced from github.com/getsentry/sentry-go's releases.
Changelog
Sourced from github.com/getsentry/sentry-go's changelog.
Commits
530f74drelease: 0.32.0e068944Prepare 0.32.0 (#992)32c062fAddtransaction.datatocontexts.trace.data(#864)6019770Fix lint issues (#981)cfbfc6bExpose MockTransport, MockScope in root sentry package (#972)a4e0ea8Remove github token in lint (#982)031ec47build(deps): bump golangci/golangci-lint-action from 6.2.0 to 6.5.0 (#975)bdbb6bebuild(deps): bump codecov/codecov-action from 5.3.1 to 5.4.0 (#974)3d8d0e1build(deps): bump actions/create-github-app-token from 1.11.2 to 1.11.5 (#973)e56ac30build(deps): bump codecov/codecov-action from 5.1.2 to 5.3.1 (#962)Updates
github.com/gorilla/csrffrom 1.7.2 to 1.7.3Release notes
Sourced from github.com/gorilla/csrf's releases.
Commits
9dd6af1Merge commit from forkUpdates
github.com/nats-io/nats-server/v2from 2.11.0 to 2.11.1Release notes
Sourced from github.com/nats-io/nats-server/v2's releases.
Commits
d78523bRelease v2.11.16cebef9Release v2.11.1-binary06e8537Improved request account validatione94fec4Check server and account limits on stream restore1d60dceImport GitHub Actions, goreleaser and golangci-lint workflow changes frommainUpdates
github.com/nats-io/nats.gofrom 1.41.0 to 1.41.1Release notes
Sourced from github.com/nats-io/nats.go's releases.
Commits
50e6153Release v1.41.1 (#1851)e04728e[FIXED] Use default timeout for ObjectStore.Get when no deadline is set on ct...8a2bd73[IMPROVED] Removegolang.org/x/textdependency (#1849)Updates
github.com/prometheus/client_golangfrom 1.21.1 to 1.22.0Release notes
Sourced from github.com/prometheus/client_golang's releases.
... (truncated)
Changelog
Sourced from github.com/prometheus/client_golang's changelog.
Commits
d50be25Cut 1.22.0 (#1793)1043db7Cut 1.22.0-rc.0 (#1768)e575c9cpromhttp: Isolate zstd support and klauspost/compress library use to promhttp...f2276aaMerge pull request #1764 from prometheus/dependabot/github_actions/github-act...9df772cbuild(deps): bump peter-evans/create-pull-requesta3548c5Merge pull request #1754 from saswatamcode/exp-eh60fd2b0Remove go.work file for now8f9d0deexp: Add dependabot configc5cf981Merge pull request #1762 from prometheus/release-1.21e84c305exp: Reset snappy buf (#1756)Updates
golang.org/x/cryptofrom 0.36.0 to 0.37.0Commits
959f8f3go.mod: update golang.org/x dependencies769bcd6ssh: use the configured rand in kex initd0a798fcryptobyte: fix typo 'octects' into 'octets' for asn1.goacbcbefacme: remove unnecessary []byte conversion376eb14x509roots: support constrained rootsb369b72crypto/internal/poly1305: implement function update in assembly on loong646b853fbssh/knownhosts: check more than one keyUpdates
golang.org/x/netfrom 0.38.0 to 0.39.0Commits
b8d8877go.mod: update golang.org/x dependenciesUpdates
golang.org/x/oauth2from 0.28.0 to 0.29.0Commits
65c15a3oauth2: remove extra periodce56909jws: improve fix for CVE-2025-22868Updates
golang.org/x/syncfrom 0.12.0 to 0.13.0Commits
396f3a0errgroup: document calling Go before WaitDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions