Skip to content

chore: Bump dependencies#101

Merged
elgopher merged 2 commits intomasterfrom
bump-deps
Dec 20, 2025
Merged

chore: Bump dependencies#101
elgopher merged 2 commits intomasterfrom
bump-deps

Conversation

@elgopher
Copy link
Owner

No description provided.

Because 1.9.0 is vulnerable to DoS.
Because 1.0.0 insecurely uses temporary files.
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates two logging library dependencies to their newer versions as part of routine dependency maintenance for the YALA logging abstraction library.

  • Updated golang/glog from v1.0.0 to v1.2.4
  • Updated sirupsen/logrus from v1.9.0 to v1.9.1
  • Updated go.sum with corresponding checksums and a new transitive dependency (google/go-cmp v0.6.0)

Reviewed changes

Copilot reviewed 1 out of 2 changed files in this pull request and generated no comments.

File Description
go.mod Updates golang/glog to v1.2.4 and sirupsen/logrus to v1.9.1
go.sum Updates checksums for bumped dependencies and adds google/go-cmp v0.6.0 as a transitive dependency

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@elgopher elgopher merged commit da05b16 into master Dec 20, 2025
6 of 10 checks passed
@elgopher elgopher deleted the bump-deps branch December 20, 2025 10:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants