Skip to content

v0.55.1

Choose a tag to compare

@cmwylie19 cmwylie19 released this 25 Sep 15:17
· 379 commits to main since this release
6083feb

Overview 📰

tar-fs is a transitive dep of @kubernetes/client-node and has a high sev vulnerability. This release is to override the vulnerable version.

CVE-2025-59343.

What's Changed ♻️

Dependabot 🤖

  • chore: bump the development-dependencies group with 2 updates by @dependabot[bot] in #2635
  • chore: bump anchore/sbom-action from 0.20.5 to 0.20.6 by @dependabot[bot] in #2634
  • chore: bump anchore/scan-action from 6.5.1 to 7.0.0 by @dependabot[bot] in #2633
  • chore: bump rfcurated/node from 24.7.0-jammy-fips-rfcurated to 24.8.0-jammy-fips-rfcurated in /config by @dependabot[bot] in #2637
  • chore: bump @types/node from 24.5.1 to 24.5.2 in the development-dependencies group by @dependabot[bot] in #2639
  • chore: bump trufflesecurity/trufflehog from 3.90.6 to 3.90.8 by @dependabot[bot] in #2638
  • chore: bump rfcurated/node from d34a47e to b7369d7 in /config by @dependabot[bot] in #2643
  • chore: bump pino from 9.9.5 to 9.10.0 in the production-dependencies group by @dependabot[bot] in #2636
  • chore: bump tar-fs from 3.0.10 to 3.1.1 by @dependabot[bot] in #2647
  • chore: bump pino from 9.10.0 to 9.11.0 in the production-dependencies group by @dependabot[bot] in #2648
  • chore: bump kubernetes-fluent-client from 3.10.3 to 3.10.4 in the production-dependencies group by @dependabot[bot] in #2649
  • chore: bump rfcurated/node from b7369d7 to fbe1a36 in /config by @dependabot[bot] in #2650
  • chore: bump the development-dependencies group with 2 updates by @dependabot[bot] in #2651
  • chore: bump github/codeql-action from 3.30.3 to 3.30.4 by @dependabot[bot] in #2652

Full Changelog: v0.55.0...v0.55.1