Skip to content

Bump the go-deps group with 10 updates - #3937

Merged
phbnf merged 3 commits into
masterfrom
dependabot/go_modules/go-deps-95bda7d8af
Oct 2, 2026
Merged

phbnf merged 3 commits into
masterfrom
dependabot/go_modules/go-deps-95bda7d8af

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the go-deps group with 10 updates:

Package From To
go.etcd.io/etcd/client/v3 3.7.1 3.7.2
go.etcd.io/etcd/etcdctl/v3 3.7.1 3.7.2
go.etcd.io/etcd/server/v3 3.7.1 3.7.2
google.golang.org/api 0.291.0 0.299.0
google.golang.org/genproto 0.0.0-20260523011958-0a33c5d7ca68 0.0.0-20260715232425-e75dac1f907d
google.golang.org/genproto/googleapis/rpc 0.0.0-20260825221802-da73d73af1c5 0.0.0-20260921155816-b14227669459
google.golang.org/grpc 1.83.2 1.84.0
k8s.io/api 0.37.0 0.37.1
k8s.io/apimachinery 0.37.0 0.37.1
k8s.io/client-go 0.37.0 0.37.1

Updates go.etcd.io/etcd/client/v3 from 3.7.1 to 3.7.2

Release notes

Sourced from go.etcd.io/etcd/client/v3's releases.

v3.7.2

Please check out CHANGELOG for a full list of changes. And make sure to read upgrade guide before upgrading etcd (there may be breaking changes).

For installation guides, please check out play.etcd.io and operating etcd. Latest support status for common architectures and operating systems can be found at supported platforms.

Linux
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-linux-amd64.tar.gz -o /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
tar xzvf /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz -C /tmp/etcd-download-test --strip-components=1 --no-same-owner
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
/tmp/etcd-download-test/etcd --version
/tmp/etcd-download-test/etcdctl version
/tmp/etcd-download-test/etcdutl version
start a local etcd server
/tmp/etcd-download-test/etcd
write,read to etcd
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 put foo bar
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 get foo

macOS (Darwin)
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-darwin-amd64.zip -o /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
unzip /tmp/etcd-${ETCD_VER}-darwin-amd64.zip -d /tmp && rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
mv /tmp/etcd-${ETCD_VER}-darwin-amd64/* /tmp/etcd-download-test && rm -rf mv /tmp/etcd-${ETCD_VER}-darwin-amd64
</tr></table>

... (truncated)

Commits
  • 68c065e version: bump up to 3.7.2
  • b85cf4b dependency: bump google.golang.org/grpc to v1.83.2
  • 9e41c76 fileutil: close locked files when purging fails
  • c1c6e17 Delete bump-devcontainer-version GitHub action
  • ca26c7e Merge pull request #22413 from ivanvc/release-3.7-go-1.26.8
  • 9d58213 fix: deflake TestIssue20271
  • adb3646 Bump go to 1.26.8
  • 2632b79 Merge pull request #22404 from k8s-infra-cherrypick-robot/cherry-pick-22173-t...
  • 0c06cc3 Merge pull request #22378 from k8s-infra-cherrypick-robot/cherry-pick-22314-t...
  • 3d67b05 Deflake TestEtcdGrpcResolverRoundRobin: sleep 1s to allow all grpc sub channe...
  • Additional commits viewable in compare view

Updates go.etcd.io/etcd/etcdctl/v3 from 3.7.1 to 3.7.2

Release notes

Sourced from go.etcd.io/etcd/etcdctl/v3's releases.

v3.7.2

Please check out CHANGELOG for a full list of changes. And make sure to read upgrade guide before upgrading etcd (there may be breaking changes).

For installation guides, please check out play.etcd.io and operating etcd. Latest support status for common architectures and operating systems can be found at supported platforms.

Linux
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-linux-amd64.tar.gz -o /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
tar xzvf /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz -C /tmp/etcd-download-test --strip-components=1 --no-same-owner
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
/tmp/etcd-download-test/etcd --version
/tmp/etcd-download-test/etcdctl version
/tmp/etcd-download-test/etcdutl version
start a local etcd server
/tmp/etcd-download-test/etcd
write,read to etcd
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 put foo bar
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 get foo

macOS (Darwin)
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-darwin-amd64.zip -o /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
unzip /tmp/etcd-${ETCD_VER}-darwin-amd64.zip -d /tmp && rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
mv /tmp/etcd-${ETCD_VER}-darwin-amd64/* /tmp/etcd-download-test && rm -rf mv /tmp/etcd-${ETCD_VER}-darwin-amd64
</tr></table>

... (truncated)

Commits
  • 68c065e version: bump up to 3.7.2
  • b85cf4b dependency: bump google.golang.org/grpc to v1.83.2
  • 9e41c76 fileutil: close locked files when purging fails
  • c1c6e17 Delete bump-devcontainer-version GitHub action
  • ca26c7e Merge pull request #22413 from ivanvc/release-3.7-go-1.26.8
  • 9d58213 fix: deflake TestIssue20271
  • adb3646 Bump go to 1.26.8
  • 2632b79 Merge pull request #22404 from k8s-infra-cherrypick-robot/cherry-pick-22173-t...
  • 0c06cc3 Merge pull request #22378 from k8s-infra-cherrypick-robot/cherry-pick-22314-t...
  • 3d67b05 Deflake TestEtcdGrpcResolverRoundRobin: sleep 1s to allow all grpc sub channe...
  • Additional commits viewable in compare view

Updates go.etcd.io/etcd/server/v3 from 3.7.1 to 3.7.2

Release notes

Sourced from go.etcd.io/etcd/server/v3's releases.

v3.7.2

Please check out CHANGELOG for a full list of changes. And make sure to read upgrade guide before upgrading etcd (there may be breaking changes).

For installation guides, please check out play.etcd.io and operating etcd. Latest support status for common architectures and operating systems can be found at supported platforms.

Linux
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-linux-amd64.tar.gz -o /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
tar xzvf /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz -C /tmp/etcd-download-test --strip-components=1 --no-same-owner
rm -f /tmp/etcd-${ETCD_VER}-linux-amd64.tar.gz
/tmp/etcd-download-test/etcd --version
/tmp/etcd-download-test/etcdctl version
/tmp/etcd-download-test/etcdutl version
start a local etcd server
/tmp/etcd-download-test/etcd
write,read to etcd
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 put foo bar
/tmp/etcd-download-test/etcdctl --endpoints=localhost:2379 get foo

macOS (Darwin)
ETCD_VER=v3.7.2
choose either URL
GOOGLE_URL=https://storage.googleapis.com/etcd
GITHUB_URL=https://github.com/etcd-io/etcd/releases/download
DOWNLOAD_URL=${GOOGLE_URL}
rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
rm -rf /tmp/etcd-download-test && mkdir -p /tmp/etcd-download-test
curl -L ${DOWNLOAD_URL}/${ETCD_VER}/etcd-${ETCD_VER}-darwin-amd64.zip -o /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
unzip /tmp/etcd-${ETCD_VER}-darwin-amd64.zip -d /tmp && rm -f /tmp/etcd-${ETCD_VER}-darwin-amd64.zip
mv /tmp/etcd-${ETCD_VER}-darwin-amd64/* /tmp/etcd-download-test && rm -rf mv /tmp/etcd-${ETCD_VER}-darwin-amd64
</tr></table>

... (truncated)

Commits
  • 68c065e version: bump up to 3.7.2
  • b85cf4b dependency: bump google.golang.org/grpc to v1.83.2
  • 9e41c76 fileutil: close locked files when purging fails
  • c1c6e17 Delete bump-devcontainer-version GitHub action
  • ca26c7e Merge pull request #22413 from ivanvc/release-3.7-go-1.26.8
  • 9d58213 fix: deflake TestIssue20271
  • adb3646 Bump go to 1.26.8
  • 2632b79 Merge pull request #22404 from k8s-infra-cherrypick-robot/cherry-pick-22173-t...
  • 0c06cc3 Merge pull request #22378 from k8s-infra-cherrypick-robot/cherry-pick-22314-t...
  • 3d67b05 Deflake TestEtcdGrpcResolverRoundRobin: sleep 1s to allow all grpc sub channe...
  • Additional commits viewable in compare view

Updates google.golang.org/api from 0.291.0 to 0.299.0

Release notes

Sourced from google.golang.org/api's releases.

v0.299.0

0.299.0 (2026-09-21)

Features

v0.298.0

0.298.0 (2026-09-14)

Features

v0.297.0

0.297.0 (2026-09-01)

Features

  • Move to go1.26.0 as the lowest supported go version (#3724) (7770e01)

v0.296.0

0.296.0 (2026-08-31)

Features

v0.295.0

0.295.0 (2026-08-28)

Features

v0.294.0

0.294.0 (2026-08-26)

... (truncated)

Changelog

Sourced from google.golang.org/api's changelog.

0.299.0 (2026-09-21)

Features

0.298.0 (2026-09-14)

Features

0.297.0 (2026-09-01)

Features

  • Move to go1.26.0 as the lowest supported go version (#3724) (7770e01)

0.296.0 (2026-08-31)

Features

0.295.0 (2026-08-28)

Features

0.294.0 (2026-08-26)

Features

... (truncated)

Commits

Updates google.golang.org/genproto from 0.0.0-20260523011958-0a33c5d7ca68 to 0.0.0-20260715232425-e75dac1f907d

Commits

Updates google.golang.org/genproto/googleapis/rpc from 0.0.0-20260825221802-da73d73af1c5 to 0.0.0-20260921155816-b14227669459

Commits

Updates google.golang.org/grpc from 1.83.2 to 1.84.0

Release notes

Sourced from google.golang.org/grpc's releases.

Release 1.84.0

Behavior Changes

  • stats/otel: The grpc.lb.pick_first.* metrics have been removed and replaced with grpc.subchannel.* metrics. See gRFC A94 for more details. (#9215)

New Features

  • xds: Add support for contains_match in route header matchers. (#9223)

Bug Fixes

  • client: Fix a bug where a ClientConn could get permanently stuck in IDLE when an RPC was canceled during stream creation. Previously, such cancellations triggered stream cleanup twice, corrupting the channel's idleness state and causing subsequent RPCs to fail with deadline exceeded errors. (#9191)
  • client: Fix a bug where non-gRPC HTTP responses ending with an empty DATA frame failed the RPC with status code Internal instead of preserving the HTTP-mapped status code and response body. (#9217)
  • credentials: Validate metadata returned by per-RPC credentials, failing the RPC with status code Internal if invalid keys or values are found. Previously, invalid metadata from credentials was sent to the server in outgoing HTTP/2 requests. (#9202)
  • credentials/sts: Prevent potential token leakage by disallowing HTTP redirects during STS token exchange. Previously, 3xx redirects were followed automatically, replaying the request body containing authentication tokens to the redirect destination. (#9299)
  • randomsubsetting: Ignore endpoints that contain no addresses. Previously, this could cause the policy to panic while computing hashes. (#9259)
  • stats/otel: Ensure method names are populated in trace spans when metrics are disabled. Previously, running with tracing enabled and metrics disabled resulted in server trace spans lacking the RPC method name (recording only "Recv."). (#9262)
  • transport: Return io.ErrUnexpectedEOF when EOF is encountered after partial header or message body reads. Previously, partial reads could return a plain io.EOF, failing to distinguish truncated data from a clean end of stream. (#9204)
  • transport: Validate metadata supplied by balancers (in PickResult.Metadata) and resolver addresses, failing the RPC with status code Internal if invalid keys or values are found. Previously, invalid metadata from these sources was sent to the server in outgoing HTTP/2 requests. (#9203)
  • xds: Fix a rare corner case that could prevent a cluster from being removed when it is no longer in use. (#9140)
  • xds: Fix panic during route matching for routes containing header matchers with empty exact_match strings. (#9223)
  • xds: Reject routes containing header matchers with empty prefix_match or suffix_match strings. Previously, this caused a panic during route matching. (#9223)
  • xds: Fix EDS drop policies being applied at a much lower rate than configured due to an integer overflow. (#9257)
  • xds: Reject EDS resources containing drop policies with unsupported denominators. Previously, such resources caused the client to panic when calculating drop rates. (#9218)
  • xds/rbac: Reject RBAC configurations containing nested Principal or Permission rules with :scheme or grpc- prefixed header matchers. Previously, such configurations could cause DENY policies to fail open. (#9258)
  • xds/rbac: Rewrite host header matchers to :authority in nested Principal and Permission rules. Previously, this rewrite only applied to top-level rules, causing nested host matchers to never match incoming requests and DENY policies to fail open. (#9258)
  • xds/rbac: Reject CidrRanges with an unset prefix length. Previously, an omitted prefix_len field caused a panic during RBAC configuration parsing. (#9250)

Performance Improvements

  • transport: Avoid a heap allocation when flushing shared write buffers. (#9233)
  • credentials/alts: Support dynamic frame size negotiation and add the GRPC_GO_EXPERIMENTAL_ALTS_MAX_FRAME_SIZE environment variable (default 4KiB, max 512KiB) to configure the maximum ALTS record frame size. (#9268)
Commits

Updates k8s.io/api from 0.37.0 to 0.37.1

Commits

Updates k8s.io/apimachinery from 0.37.0 to 0.37.1

Commits

Updates k8s.io/client-go from 0.37.0 to 0.37.1

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the go-deps group with 10 updates:

| Package | From | To |
| --- | --- | --- |
| [go.etcd.io/etcd/client/v3](https://github.com/etcd-io/etcd) | `3.7.1` | `3.7.2` |
| [go.etcd.io/etcd/etcdctl/v3](https://github.com/etcd-io/etcd) | `3.7.1` | `3.7.2` |
| [go.etcd.io/etcd/server/v3](https://github.com/etcd-io/etcd) | `3.7.1` | `3.7.2` |
| [google.golang.org/api](https://github.com/googleapis/google-api-go-client) | `0.291.0` | `0.299.0` |
| [google.golang.org/genproto](https://github.com/googleapis/go-genproto) | `0.0.0-20260523011958-0a33c5d7ca68` | `0.0.0-20260715232425-e75dac1f907d` |
| [google.golang.org/genproto/googleapis/rpc](https://github.com/googleapis/go-genproto) | `0.0.0-20260825221802-da73d73af1c5` | `0.0.0-20260921155816-b14227669459` |
| [google.golang.org/grpc](https://github.com/grpc/grpc-go) | `1.83.2` | `1.84.0` |
| [k8s.io/api](https://github.com/kubernetes/api) | `0.37.0` | `0.37.1` |
| [k8s.io/apimachinery](https://github.com/kubernetes/apimachinery) | `0.37.0` | `0.37.1` |
| [k8s.io/client-go](https://github.com/kubernetes/client-go) | `0.37.0` | `0.37.1` |


Updates `go.etcd.io/etcd/client/v3` from 3.7.1 to 3.7.2
- [Release notes](https://github.com/etcd-io/etcd/releases)
- [Commits](etcd-io/etcd@v3.7.1...v3.7.2)

Updates `go.etcd.io/etcd/etcdctl/v3` from 3.7.1 to 3.7.2
- [Release notes](https://github.com/etcd-io/etcd/releases)
- [Commits](etcd-io/etcd@v3.7.1...v3.7.2)

Updates `go.etcd.io/etcd/server/v3` from 3.7.1 to 3.7.2
- [Release notes](https://github.com/etcd-io/etcd/releases)
- [Commits](etcd-io/etcd@v3.7.1...v3.7.2)

Updates `google.golang.org/api` from 0.291.0 to 0.299.0
- [Release notes](https://github.com/googleapis/google-api-go-client/releases)
- [Changelog](https://github.com/googleapis/google-api-go-client/blob/main/CHANGES.md)
- [Commits](googleapis/google-api-go-client@v0.291.0...v0.299.0)

Updates `google.golang.org/genproto` from 0.0.0-20260523011958-0a33c5d7ca68 to 0.0.0-20260715232425-e75dac1f907d
- [Commits](https://github.com/googleapis/go-genproto/commits)

Updates `google.golang.org/genproto/googleapis/rpc` from 0.0.0-20260825221802-da73d73af1c5 to 0.0.0-20260921155816-b14227669459
- [Commits](https://github.com/googleapis/go-genproto/commits)

Updates `google.golang.org/grpc` from 1.83.2 to 1.84.0
- [Release notes](https://github.com/grpc/grpc-go/releases)
- [Commits](grpc/grpc-go@v1.83.2...v1.84.0)

Updates `k8s.io/api` from 0.37.0 to 0.37.1
- [Commits](kubernetes/api@v0.37.0...v0.37.1)

Updates `k8s.io/apimachinery` from 0.37.0 to 0.37.1
- [Commits](kubernetes/apimachinery@v0.37.0...v0.37.1)

Updates `k8s.io/client-go` from 0.37.0 to 0.37.1
- [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md)
- [Commits](kubernetes/client-go@v0.37.0...v0.37.1)

---
updated-dependencies:
- dependency-name: go.etcd.io/etcd/client/v3
  dependency-version: 3.7.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: go.etcd.io/etcd/etcdctl/v3
  dependency-version: 3.7.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: go.etcd.io/etcd/server/v3
  dependency-version: 3.7.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: google.golang.org/api
  dependency-version: 0.299.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: google.golang.org/genproto
  dependency-version: 0.0.0-20260715232425-e75dac1f907d
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: google.golang.org/genproto/googleapis/rpc
  dependency-version: 0.0.0-20260921155816-b14227669459
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: google.golang.org/grpc
  dependency-version: 1.84.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: k8s.io/api
  dependency-version: 0.37.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: k8s.io/apimachinery
  dependency-version: 0.37.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: k8s.io/client-go
  dependency-version: 0.37.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 1, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner October 1, 2026 21:56
@dependabot
dependabot Bot requested a review from phbnf October 1, 2026 21:56
@dpebot

dpebot commented Oct 1, 2026

Copy link
Copy Markdown
Collaborator

/gcbrun

@dpebot

dpebot commented Oct 2, 2026

Copy link
Copy Markdown
Collaborator

/gcbrun

@phbnf
phbnf force-pushed the dependabot/go_modules/go-deps-95bda7d8af branch from acf1cc5 to 0fff75d Compare October 2, 2026 19:43
@dpebot

dpebot commented Oct 2, 2026

Copy link
Copy Markdown
Collaborator

/gcbrun

@phbnf

phbnf commented Oct 2, 2026

Copy link
Copy Markdown
Contributor

The only remaining vulnerability is GO-2026-6443 in google.golang.org/grpc (fixed: v1.85.0-dev.0.20260825072537-93e31b48545e), which hasn't been fixed in a release version yet. Moving on.

@phbnf
phbnf merged commit 587494a into master Oct 2, 2026
19 of 20 checks passed
@phbnf
phbnf deleted the dependabot/go_modules/go-deps-95bda7d8af branch October 2, 2026 19:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants