Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(deps): update osv-scanner minor #1684

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

renovate-bot
Copy link
Collaborator

@renovate-bot renovate-bot commented Mar 2, 2025

This PR contains the following updates:

Package Change Age Adoption Passing Confidence Type Update
deps.dev/api/v3 v3.0.0-20250219000316-bc85dc8a8bd7 -> v3.0.0-20250303052001-679acc0481eb age adoption passing confidence require patch
deps.dev/util/maven bc85dc8 -> 679acc0 age adoption passing confidence require digest
deps.dev/util/resolve bc85dc8 -> 679acc0 age adoption passing confidence require digest
deps.dev/util/semver bc85dc8 -> 679acc0 age adoption passing confidence require digest
github.com/charmbracelet/bubbletea v1.3.3 -> v1.3.4 age adoption passing confidence require patch
github.com/go-git/go-git/v5 v5.13.2 -> v5.14.0 age adoption passing confidence require minor
github.com/google/osv-scalibr 93fce00 -> c8893b0 require digest
github.com/jedib0t/go-pretty/v6 v6.6.6 -> v6.6.7 age adoption passing confidence require patch
github.com/ossf/osv-schema/bindings/go ab8a4f6 -> 10ada0b age adoption passing confidence require digest
golang.org/x/exp aa4b98e -> dead583 age adoption passing confidence require digest

Release Notes

charmbracelet/bubbletea (github.com/charmbracelet/bubbletea)

v1.3.4

Compare Source

This release fixes an issue on Windows where the mouse is always enabled even if it wasn't requested. Now, using mouse options such as tea.WithAllMouseMotion() and commands such as tea.EnableMouseAllMotion and tea.DisableMouse turns the mouse on/off as expected.

Changelog

New Features
Bug fixes
Other work

The Charm logo

Thoughts? Questions? We love hearing from you. Feel free to reach out on Twitter, The Fediverse, or on Discord.

go-git/go-git (github.com/go-git/go-git/v5)

v5.14.0

Compare Source

What's Changed

⚠️ Note that this version requires Go 1.23, due to the bump to golang.org/x/[email protected] which mitigates the CVE above. User's that can't bump to Go 1.23 will need to remain on the previous v5.13.x release.

Full Changelog: go-git/go-git@v5.13.2...v5.14.0

jedib0t/go-pretty (github.com/jedib0t/go-pretty/v6)

v6.6.7

Compare Source

What's Changed

Full Changelog: jedib0t/go-pretty@v6.6.6...v6.6.7


Configuration

📅 Schedule: Branch creation - "before 6am on monday" in timezone Australia/Sydney, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Copy link

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: go.sum
Command failed: install-tool golang 1.23.5

@forking-renovate forking-renovate bot added the dependencies Pull requests that update a dependency file label Mar 2, 2025
@renovate-bot renovate-bot force-pushed the renovate/osv-scanner-minor branch from 1040baf to 49b197c Compare March 3, 2025 01:22
@renovate-bot renovate-bot force-pushed the renovate/osv-scanner-minor branch from 49b197c to a524d21 Compare March 3, 2025 11:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant