Skip to content

chore: bump the kubernetes group across 1 directory with 6 updates#1065

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/go_modules/kubernetes-f5d6beaa1d
Open

chore: bump the kubernetes group across 1 directory with 6 updates#1065
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/go_modules/kubernetes-f5d6beaa1d

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 23, 2026

Bumps the kubernetes group with 3 updates in the / directory: k8s.io/api, k8s.io/apiserver and k8s.io/code-generator.

Updates k8s.io/api from 0.35.4 to 0.36.0

Commits
  • 545bb97 Update dependencies to v0.36.0 tag
  • 879d396 Merge remote-tracking branch 'origin/master' into release-1.36
  • 030d81f Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • aef6eb6 Add granular authorization for DRA ResourceClaim status updates
  • 91061ea Merge pull request #136589 from tosi3k/preemption-mode
  • e6b81e2 Add Workload-Aware Preemption fields to Workload and PodGroup APIs
  • f8fce2e Merge pull request #136989 from nojnhuh/podgroup-resourceclaim
  • b928f5e Workload API: PodGroup ResourceClaims (KEP-5729)
  • 61bd78e Merge pull request #137190 from everpeace/KEP-5491-alpha
  • 6bf46eb Merge pull request #137028 from nmn3m/feature/dra-resource-pool-status
  • Additional commits viewable in compare view

Updates k8s.io/apimachinery from 0.35.4 to 0.36.0

Commits
  • debe1eb Update dependencies to v0.36.0 tag
  • efb7f26 Merge remote-tracking branch 'origin/master' into release-1.36
  • d966e56 Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • 79b3632 Merge pull request #137864 from yongruilin/dv-dra-mismatch
  • a8822f7 Add slice and map union member support with tests
  • 7dba2d0 Use IsZero instead of IsNil for union ratcheting check
  • d95710f Fix union validation ratcheting when oldObj is nil
  • 729062d Merge pull request #137849 from bryantbiggs/deps/update-kube-openapi
  • 13b12e6 dependencies: bump kube-openapi to drop ginkgo/gomega indirect deps
  • 27f4670 Merge pull request #136657 from Jefftree/sharding-test
  • Additional commits viewable in compare view

Updates k8s.io/apiserver from 0.35.4 to 0.36.0

Commits
  • 4275b13 Update dependencies to v0.36.0 tag
  • 1c9198d Merge remote-tracking branch 'origin/master' into release-1.36
  • 6f83612 Merge pull request #138346 from dashpole/update_otel_prop
  • 690e679 Merge remote-tracking branch 'origin/master' into release-1.36
  • 66ef378 Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • bb1f8b5 update go.opentelemetry.io/otel to v1.41.0
  • e0b6d8f Merge remote-tracking branch 'origin/master' into release-1.36
  • c8527f7 Downgrade log level from Error to Info for unserved GVRs in peer proxy
  • 5fba3db Merge pull request #137482 from aman4433/fix-apf-timeout-header-test-race
  • 2f7d9d4 Merge pull request #137906 from aramase/aramase/c/grpc_v1.79.0
  • Additional commits viewable in compare view

Updates k8s.io/client-go from 0.35.4 to 0.36.0

Commits
  • 1d95f02 Update dependencies to v0.36.0 tag
  • f22a53e Merge remote-tracking branch 'origin/master' into release-1.36
  • a948641 Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • 7e44ffc Add Workload-Aware Preemption fields to Workload and PodGroup APIs
  • df2d882 Merge pull request #136989 from nojnhuh/podgroup-resourceclaim
  • 4eece52 Workload API: PodGroup ResourceClaims (KEP-5729)
  • 3d35c51 Merge pull request #137190 from everpeace/KEP-5491-alpha
  • 0434117 Merge pull request #137028 from nmn3m/feature/dra-resource-pool-status
  • ba785be Drop CSR analogy, mark ObjectMeta +required,reduce limits (maxItems=500, maxL...
  • 4a9c878 Add ResourcePoolStatusRequest API types and generated code
  • Additional commits viewable in compare view

Updates k8s.io/code-generator from 0.35.4 to 0.36.0

Commits
  • c6258db Update dependencies to v0.36.0 tag
  • a85207c Merge remote-tracking branch 'origin/master' into release-1.36
  • 634d8b3 Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • a8853d1 Merge pull request #137772 from lalitc375/fix-linter
  • eae1aca Merge pull request #137864 from yongruilin/dv-dra-mismatch
  • 6770f5f Merge pull request #137846 from lalitc375/required-forbidden
  • 9681623 Add slice and map union member support with tests
  • 6c2d782 Add nil OldValue test coverage for union doc_tests
  • f4e4b3a Merge pull request #137849 from bryantbiggs/deps/update-kube-openapi
  • 8a4544d Add tests for validateTrueBeta and ValidateTrueAlpha
  • Additional commits viewable in compare view

Updates k8s.io/component-base from 0.35.4 to 0.36.0

Commits
  • 5234ccb Update dependencies to v0.36.0 tag
  • c842c86 Merge remote-tracking branch 'origin/master' into release-1.36
  • ba6e4e3 Merge pull request #138346 from dashpole/update_otel_prop
  • a8a9f00 Merge remote-tracking branch 'origin/master' into release-1.36
  • 597cc27 Update github.com/moby/spdystream from v0.5.0 to v0.5.1
  • 6bdba9b update go.opentelemetry.io/otel to v1.41.0
  • f688683 update google.golang.org/grpc to v1.79.3
  • 1cffdcd Merge pull request #136355 from enj/enj/i/tls_cache_gc
  • 7dbe9af Merge pull request #137849 from bryantbiggs/deps/update-kube-openapi
  • 8a87883 Merge pull request #137843 from pacoxu/cobra-v1.10.2
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Apr 23, 2026
Copilot AI review requested due to automatic review settings April 23, 2026 10:25
@dependabot dependabot Bot requested a review from a team as a code owner April 23, 2026 10:25
@dependabot dependabot Bot review requested due to automatic review settings April 23, 2026 10:25
@github-project-automation github-project-automation Bot moved this to Pending Review in SBOMscanner Apr 23, 2026
@fabriziosestito fabriziosestito self-requested a review April 23, 2026 12:31
@dependabot dependabot Bot changed the title chore: bump the kubernetes group with 6 updates chore: bump the kubernetes group across 1 directory with 6 updates Apr 27, 2026
Copilot AI review requested due to automatic review settings April 27, 2026 12:13
@dependabot dependabot Bot force-pushed the dependabot/go_modules/kubernetes-f5d6beaa1d branch from 91a3f1f to 13d4209 Compare April 27, 2026 12:13
@dependabot dependabot Bot review requested due to automatic review settings April 27, 2026 12:13
@flavio flavio moved this from Pending Review to Todo in SBOMscanner Apr 27, 2026
@dependabot dependabot Bot force-pushed the dependabot/go_modules/kubernetes-f5d6beaa1d branch from 13d4209 to 902bb0f Compare April 28, 2026 05:44
@dependabot dependabot Bot requested review from Copilot and removed request for Copilot April 28, 2026 05:44
@fabriziosestito
Copy link
Copy Markdown
Collaborator

@copilot fix this

Copy link
Copy Markdown
Contributor

Copilot AI commented Apr 28, 2026

@copilot fix this

I looked into the CI failures and this bump can't be made to compile right now:

  • k8s.io/client-go v0.36.0 adds a new method HasSyncedChecker to ResourceEventHandlerRegistration, but the latest sigs.k8s.io/controller-runtime release (v0.23.3) still pins k8s.io/client-go v0.35.0 and doesn't implement it (errors in pkg/cache/multi_namespace_cache.go).
  • k8s.io/kubectl (indirect) stays at v0.35.1 and still imports k8s.io/api/scheduling/v1alpha1, which was removed in v0.36, breaking make manifests and make vet.

There's no upstream controller-runtime release that supports Kubernetes 0.36 yet, so this PR is blocked until one is published. I'd suggest closing this PR for now and letting Dependabot reopen it once the ecosystem catches up. Let me know if you'd prefer a different approach.

Copilot AI review requested due to automatic review settings April 28, 2026 10:27
@dependabot dependabot Bot force-pushed the dependabot/go_modules/kubernetes-f5d6beaa1d branch from 902bb0f to aca9d8c Compare April 28, 2026 10:27
@dependabot dependabot Bot review requested due to automatic review settings April 28, 2026 10:27
@fabriziosestito fabriziosestito moved this from Todo to Block in SBOMscanner Apr 29, 2026
@fabriziosestito
Copy link
Copy Markdown
Collaborator

Blocked, waiting for controller-runtime to release a version compatible with Kubernetes 0.36.0.

@dependabot dependabot Bot force-pushed the dependabot/go_modules/kubernetes-f5d6beaa1d branch from aca9d8c to 2961932 Compare April 29, 2026 10:26
Copilot AI review requested due to automatic review settings April 29, 2026 10:26
@dependabot dependabot Bot review requested due to automatic review settings April 29, 2026 10:26
Bumps the kubernetes group with 3 updates in the / directory: [k8s.io/api](https://github.com/kubernetes/api), [k8s.io/apiserver](https://github.com/kubernetes/apiserver) and [k8s.io/code-generator](https://github.com/kubernetes/code-generator).


Updates `k8s.io/api` from 0.35.4 to 0.36.0
- [Commits](kubernetes/api@v0.35.4...v0.36.0)

Updates `k8s.io/apimachinery` from 0.35.4 to 0.36.0
- [Commits](kubernetes/apimachinery@v0.35.4...v0.36.0)

Updates `k8s.io/apiserver` from 0.35.4 to 0.36.0
- [Commits](kubernetes/apiserver@v0.35.4...v0.36.0)

Updates `k8s.io/client-go` from 0.35.4 to 0.36.0
- [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md)
- [Commits](kubernetes/client-go@v0.35.4...v0.36.0)

Updates `k8s.io/code-generator` from 0.35.4 to 0.36.0
- [Commits](kubernetes/code-generator@v0.35.4...v0.36.0)

Updates `k8s.io/component-base` from 0.35.4 to 0.36.0
- [Commits](kubernetes/component-base@v0.35.4...v0.36.0)

---
updated-dependencies:
- dependency-name: k8s.io/api
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
- dependency-name: k8s.io/apimachinery
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
- dependency-name: k8s.io/apiserver
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
- dependency-name: k8s.io/client-go
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
- dependency-name: k8s.io/code-generator
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
- dependency-name: k8s.io/component-base
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: kubernetes
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/go_modules/kubernetes-f5d6beaa1d branch from 2961932 to 6927f9f Compare April 30, 2026 10:24
@dependabot dependabot Bot requested review from Copilot and removed request for Copilot April 30, 2026 10:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code kind/chore

Projects

Status: Block

Development

Successfully merging this pull request may close these issues.

3 participants