Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Update deps #657

Merged
merged 7 commits into from
Jan 25, 2025
Merged

Update deps #657

merged 7 commits into from
Jan 25, 2025

Conversation

mostafa
Copy link
Member

@mostafa mostafa commented Jan 25, 2025

Ticket(s)

N/A

Description

  • Update Go to v1.23.5
  • Update deps
  • Update Alpine and packages in Dockerfile

Related PRs

N/A

Development Checklist

  • I have added a descriptive title to this PR.
  • I have squashed related commits together.
  • I have rebased my branch on top of the latest main branch.
  • I have performed a self-review of my own code.
  • I have commented on my code, particularly in hard-to-understand areas.
  • I have added docstring(s) to my code.
  • I have made corresponding changes to the documentation (docs).
  • I have updated docs using make gen-docs command.
  • I have added tests for my changes.
  • I have signed all the commits.

Legal Checklist

Copy link

github-actions bot commented Jan 25, 2025

Overview

Image reference ghcr.io/gatewayd-io/gatewayd:5e67670 gatewaydio/gatewayd:latest
- digest adfca0b0b113 383013efa302
- tag 5e67670 latest
- provenance b6df86a
- vulnerabilities critical: 1 high: 1 medium: 0 low: 0 critical: 1 high: 2 medium: 1 low: 0
- platform linux/amd64 linux/amd64
- size 20 MB 18 MB (-2.4 MB)
- packages 146 140 (-6)
Base Image alpine:3
also known as:
3.21
3.21.2
latest
alpine:3.20
also known as:
3
latest
- vulnerabilities critical: 0 high: 0 medium: 0 low: 0 critical: 0 high: 0 medium: 1 low: 0
Packages and Vulnerabilities (51 package changes and 1 vulnerability changes)
  • ➕ 1 packages added
  • ➖ 6 packages removed
  • ♾️ 44 packages changed
  • 91 packages unchanged
  • ❗ 1 vulnerabilities added
Changes for packages of type apk (19 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:5e67670
Version
gatewaydio/gatewayd:latest
alpine-base 3.21.2-r0
♾️ alpine-baselayout 3.6.8-r1 3.6.5-r0
♾️ alpine-baselayout-data 3.6.8-r1 3.6.5-r0
♾️ alpine-keys 2.5-r0 2.4-r1
alpine-release 3.21.2-r0
♾️ apk-tools 2.14.6-r2 2.14.4-r0
♾️ busybox 1.37.0-r9 1.36.1-r29
♾️ busybox-binsh 1.37.0-r9 1.36.1-r29
ca-certificates 20241121-r1
♾️ ca-certificates-bundle 20241121-r1 20240705-r0
♾️ libcrypto3 3.3.2-r4 3.3.2-r0
♾️ libssl3 3.3.2-r4 3.3.2-r0
♾️ musl 1.2.5-r8 1.2.5-r0
♾️ musl-utils 1.2.5-r8 1.2.5-r0
openssl 3.3.2-r4
pax-utils 1.3.8-r1
♾️ scanelf 1.3.8-r1 1.3.7-r2
♾️ ssl_client 1.37.0-r9 1.36.1-r29
♾️ zlib 1.3.1-r2 1.3.1-r1
Changes for packages of type golang (32 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:5e67670
Version
gatewaydio/gatewayd:latest
♾️ github.com/envoyproxy/protoc-gen-validate 1.2.1 1.1.0
♾️ github.com/gatewayd-io/gatewayd (devel) 0.0.0-20241214123014-b6df86a6fe94
♾️ github.com/gatewayd-io/gatewayd-plugin-sdk 0.4.0 0.3.5
♾️ github.com/getsentry/sentry-go 0.31.1 0.30.0
♾️ github.com/grpc-ecosystem/grpc-gateway/v2 2.26.0 2.24.0
github.com/hashicorp/go-metrics 0.5.4
♾️ github.com/hashicorp/go-plugin 1.6.3 1.6.2
♾️ github.com/hashicorp/raft 1.7.2 1.7.1
♾️ github.com/hashicorp/raft-boltdb 0.0.0-20250113192317-e8660f88bcc9 0.0.0-20241202213821-f9dd2ba30efd
♾️ github.com/invopop/jsonschema 0.13.0 0.12.0
♾️ github.com/jackc/pgx/v5 5.7.2 5.7.1
♾️ github.com/mattn/go-colorable 0.1.14 0.1.13
♾️ github.com/pganalyze/pg_query_go/v5 6.0.0 5.1.0
♾️ github.com/prometheus/common 0.62.0 0.61.0
♾️ github.com/spf13/cast 1.7.1 1.7.0
♾️ github.com/wasilibs/go-pgquery 0.0.0-20241226024732-8bfaa0ac5969 0.0.0-20241011013927-817756c5aae4
♾️ github.com/wasilibs/wazero-helpers 0.0.0-20250123031827-cd30c44769bb 0.0.0-20240620070341-3dff1577cd52
♾️ go.opentelemetry.io/otel 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/metric 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/sdk 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/trace 1.34.0 1.33.0
♾️ go.opentelemetry.io/proto/otlp 1.5.0 1.4.0
♾️ golang.org/x/crypto 0.32.0 0.31.0
golang.org/x/exp 0.0.0-20241210194714-1829a127f884
♾️ golang.org/x/net 0.34.0 0.32.0
critical: 0 high: 1 medium: 0 low: 0
Added vulnerabilities (1):
  • high : CVE--2024--45338
♾️ golang.org/x/oauth2 0.25.0 0.24.0
♾️ golang.org/x/sys 0.29.0 0.28.0
♾️ google.golang.org/genproto/googleapis/rpc 0.0.0-20250124145028-65684f501c47 0.0.0-20241209162323-e6fa225c2576
♾️ google.golang.org/grpc 1.70.0 1.69.0
♾️ google.golang.org/protobuf 1.36.4 1.35.2
♾️ stdlib go1.23.5 1.23.4

@mostafa mostafa marked this pull request as ready for review January 25, 2025 21:37
@mostafa mostafa merged commit c629f90 into main Jan 25, 2025
5 checks passed
@mostafa mostafa deleted the update-deps branch January 25, 2025 21:45
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant