Skip to content

gomod(deps): Bump the go-deps group across 1 directory with 20 updates - #2928

Closed
dependabot[bot] wants to merge 1 commit into
stagingfrom
dependabot/go_modules/staging/go-deps-3fd577657b
Closed

dependabot[bot] wants to merge 1 commit into
stagingfrom
dependabot/go_modules/staging/go-deps-3fd577657b

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 20, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the go-deps group with 20 updates in the / directory:

Package From To
github.com/anchore/stereoscope 0.3.0 0.3.2
github.com/cli/cli/v2 2.98.0 2.101.0
github.com/cli/go-gh/v2 2.13.0 2.16.1
github.com/compose-spec/compose-go/v2 2.14.0 2.15.0
github.com/containerd/containerd/v2 2.3.4 2.3.5
github.com/containerd/log 0.1.0 0.2.0
github.com/docker/cli 29.7.2+incompatible 29.8.0+incompatible
github.com/gobwas/glob 0.2.3 1.0.0
github.com/google/go-containerregistry 0.22.0 0.22.1
github.com/mattn/go-shellwords 1.0.14 1.0.15
github.com/moby/buildkit 0.32.2 0.33.0
github.com/moby/moby/api 1.55.0 1.56.0
github.com/moby/moby/client 0.5.1 0.6.0
github.com/onsi/ginkgo/v2 2.32.1 2.32.2
github.com/onsi/gomega 1.42.1 1.43.0
github.com/tonistiigi/fsutil 0.0.0-20260717003753-6d9dc2ebad62 0.0.0-20260819142231-83cac42c1c52
golang.org/x/oauth2 0.36.0 0.37.0
golang.org/x/sync 0.22.0 0.23.0
golang.org/x/sys 0.47.0 0.48.0
golang.org/x/term 0.45.0 0.46.0

Updates github.com/anchore/stereoscope from 0.3.0 to 0.3.2

Release notes

Sourced from github.com/anchore/stereoscope's releases.

v0.3.2

Bug Fixes

Performance

  • overlap layer fetch and indexing in Image.Read [PR #681 @​asomya]
  • keep one open descriptor per layer tar and read entries positionally [PR #679 @​asomya]
  • take layer diff IDs from the image config instead of recomputing [PR #680 @​asomya]

Dependencies

15 dependency changes (14 updated, 1 added). 7 vulnerabilities remediated.

🟢 Remediated (7)

  • github.com/containerd/containerd/v2 v2.3.4 → v2.3.5 (🟢 remediated GHSA-7jxh-36q5-gcqv)
  • github.com/docker/cli v29.7.2+incompatible → v29.8.0+incompatible
  • github.com/google/go-containerregistry v0.21.9 → v0.22.1
  • github.com/klauspost/compress v1.19.1 → v1.19.2
  • github.com/moby/moby/api v1.55.0 → v1.56.0
  • github.com/moby/moby/client v0.5.1 → v0.6.0
  • go.opentelemetry.io/otel v1.43.0 → v1.44.0 (🟢 remediated GO-2026-5158)
  • go.opentelemetry.io/otel/metric v1.43.0 → v1.44.0
  • go.opentelemetry.io/otel/sdk v1.43.0 → v1.44.0
  • go.opentelemetry.io/otel/sdk/metric v1.43.0 → v1.44.0
  • go.opentelemetry.io/otel/trace v1.43.0 → v1.44.0
  • golang.org/x/crypto v0.55.0 → v0.56.0 (🟢 remediated GO-2026-6354, GO-2026-6355)
  • google.golang.org/genproto/googleapis/rpc v0.0.0-afd174a → v0.0.0-3dc84a4
  • google.golang.org/grpc v1.82.1 → v1.83.2 (🟢 remediated GHSA-2v4p-qf9q-27wj, GHSA-qc2q-p7wx-3px3, GHSA-vp52-pcj8-j9qc)

... (truncated)

Commits
  • cb6de87 Fix: whiteout marker correctness (#696)
  • db5362a Fix: read cancellation should wait for workers (#693)
  • 1f355bd Fix: clear opaque whiteouts by real path, not through symlinks (#694)
  • a22e5ae fix: populate OCI platform metadata & do not ignore platform option for singl...
  • 7d54621 fix: continue file tree searches after link cycles (#666)
  • ef9a9a3 perf: overlap layer fetch and indexing in Image.Read (#681)
  • 4e5b774 chore(deps): update tool versions (#692)
  • 4f188af chore(deps): bump github.com/moby/moby/client from 0.5.1 to 0.6.0 (#688)
  • 52cbac6 chore(deps): bump golang.org/x/crypto from 0.55.0 to 0.56.0 (#691)
  • e7889db chore(deps): bump github.com/docker/cli (#690)
  • Additional commits viewable in compare view

Updates github.com/cli/cli/v2 from 2.98.0 to 2.101.0

Release notes

Sourced from github.com/cli/cli/v2's releases.

GitHub CLI 2.101.0

Linux package repository signing key rotation

GitHub CLI's APT and RPM repositories, along with individual RPM packages, are now signed only with the new PGP key (fingerprint: 7F38BBB59D064DBCB3D84D725612B36462313325)

[!IMPORTANT] Linux users who installed gh from the official APT or RPM repositories before April 8, 2026, and have not refreshed their keyring, may now see package installation or update failures. Follow the PGP signing key rotation guidance to check and update your keyring. Users on Windows or macOS, and users who installed gh through Homebrew, GitHub Releases, another package manager, or from source, are not affected.

Copy authentication codes to the clipboard by default

gh auth login and gh auth refresh now copy OAuth device codes to the clipboard by default, saving a manual copy step during authentication.

To persistently opt out, run:

gh config set clipboard disabled

Explicit clipboard options still take precedence for an individual invocation.

What's Changed

✨ Features

🐛 Fixes

📚 Docs & Chores

... (truncated)

Commits
  • 0cf1092 Merge pull request #14462 from cli/revert-14437-williammartin-apple-codesign-...
  • 189706b Revert "Use internal Apple codesign action (#14437)"
  • 9eb4db2 Merge pull request #14461 from cli/bump-go-gh
  • adeb51e Test explicit default repository resolution (#14460)
  • e09f1b1 Bump github.com/cli/go-gh/v2 to v2.16.1
  • be35276 Add repo default network acceptance test
  • cac0dd7 Merge pull request #14443 from cli/dependabot/go_modules/golang.org/x/crypto-...
  • 0baa362 Merge pull request #14444 from cli/dependabot/go_modules/golang.org/x/text-0....
  • 28a47f4 chore(deps): bump golang.org/x/text from 0.41.0 to 0.42.0
  • e4dc241 chore(deps): bump golang.org/x/crypto from 0.56.0 to 0.57.0
  • Additional commits viewable in compare view

Updates github.com/cli/go-gh/v2 from 2.13.0 to 2.16.1

Release notes

Sourced from github.com/cli/go-gh/v2's releases.

v2.16.1

What's Changed

New Contributors

Full Changelog: cli/go-gh@v2.16.0...v2.16.1

v2.16.0

What's Changed

Full Changelog: cli/go-gh@v2.15.0...v2.16.0

v2.15.0

What's Changed

Full Changelog: cli/go-gh@v2.14.0...v2.15.0

v2.14.0

What's Changed

🐛 Fixes

📚 Docs & Chores

:dependabot: Dependencies

  • Update Go module and GitHub Actions dependencies

Full Changelog: cli/go-gh@v2.13.0...v2.14.0

Commits
  • 37aa5bb fix(repository): honor resolved remote (#290)
  • 01be116 Merge pull request #263 from baiyuxi930826/fix/atomic-api-cache-store
  • 3707f4d harden cache publication across platforms
  • d8f2f73 fix(api): make HTTP response cache writes atomic
  • c9808f2 Merge pull request #289 from cli/williammartin-relax-api-host-auth
  • d53df0d Merge pull request #287 from cli/dependabot/github_actions/codeql-actions-f1b...
  • 494d231 chore(deps): Bump the codeql-actions group across 1 directory with 2 updates
  • fbd0ed5 Trust canonical host alongside API host
  • 1b0b67c Merge pull request #275 from cli/williammartin-implement-per-host-api-host
  • 96a581e Add guarded release workflow (#288)
  • Additional commits viewable in compare view

Updates github.com/compose-spec/compose-go/v2 from 2.14.0 to 2.15.0

Release notes

Sourced from github.com/compose-spec/compose-go/v2's releases.

v2.15.0

What's Changed

New Contributors

Full Changelog: compose-spec/compose-go@v2.14.0...v2.15.0

Commits
  • 4ddbf11 cli: validate COMPOSE_FILE entries point to actual compose files
  • 500d50c fix: merge attributes of repeated variable occurrences in ExtractVariables
  • 57f6c16 tests: run named table cases as subtests
  • 261851b loader/tests: completeness test keeps the conformance matrix exhaustive
  • 3843a20 loader/tests: link every attribute file to the spec section it locks
  • 728b3f2 loader/tests: loadsAs expresses expectations as canonical YAML
  • f8211c4 docs: TESTING.md codifies the testing contract
  • 95dbfdf test: cover short/long ulimit syntax combinations in override merge
  • 5a10b5a fix: ignore default .env probe on permission denied
  • f0442ff fix(types): reject unrecognized pull_policy values instead of defaulting
  • Additional commits viewable in compare view

Updates github.com/containerd/containerd/v2 from 2.3.4 to 2.3.5

Release notes

Sourced from github.com/containerd/containerd/v2's releases.

containerd 2.3.5

Welcome to the v2.3.5 release of containerd!

The fifth patch release for containerd 2.3 contains various fixes and updates including security patches.

Security Updates

Highlights

Image Distribution

  • Apply hardening to strip sensitive authentication headers when fetching descriptor URLs (#14030)

Runtime

  • Avoid hangs and data races when streaming container standard I/O in CRI (#14094)
  • Fix missing error messages in OpenTelemetry trace attributes (#14049)
  • Fix user and group lookup failures in container rootfs containing symlinked /etc/passwd or /etc/group (#13999)
  • Fix configuration loading error when drop-in configuration files have a higher version than the root configuration (#13995)
  • Avoid containerd startup hangs when loading shims (#13983)
  • Add context to error when shim delete times out (#13921)
  • Fix Windows Server 2022 container compatibility on host builds newer than the latest LTSC (containerd/platforms#34)

Snapshotters

  • Fix unpack failure for EROFS images containing the erofs OS feature (#14062)

Please try out the release binaries and report any issues at https://github.com/containerd/containerd/issues.

Contributors

  • Phil Estes
  • Samuel Karp
  • Derek McGowan
  • Sebastiaan van Stijn
  • Akhil Mohan
  • Maksym Pavlenko
  • Wei Fu
  • Oleh Konko
  • Austin Vazquez
  • Jing Chen
  • Martín Fernández
  • Paco Xu
  • XlabAI

... (truncated)

Commits
  • 1294c24 Merge pull request #14092 from samuelkarp/prepare-release-2.3.5
  • db68d72 Prepare release notes for v2.3.5
  • be419b0 Merge commit from fork
  • 84ea25b Merge commit from fork
  • 5db0399 Merge pull request #14094 from k8s-infra-cherrypick-robot/cherry-pick-14085-t...
  • 9f6be86 Fix data races and a deadlock in the byte stream helpers
  • 9ec55f0 cri: cancel ExecSync IO drain on context cancellation
  • c535779 archive: skip redundant opaque whiteout walks
  • 3684f86 Merge pull request #14063 from k8s-infra-cherrypick-robot/cherry-pick-14057-t...
  • 7459b1f Merge pull request #14062 from k8s-infra-cherrypick-robot/cherry-pick-14012-t...
  • Additional commits viewable in compare view

Updates github.com/containerd/log from 0.1.0 to 0.2.0

Release notes

Sourced from github.com/containerd/log's releases.

v0.2.0

What's Changed

New Contributors

Full Changelog: containerd/log@v0.1.0...v0.2.0

Commits
  • 8b5d653 Merge pull request #25 from thaJeztah/integrate_tracing_improve
  • 65e60ca otel: add option to set span error status
  • 9c0b6a4 otel: add option to configure log level
  • 6fcf9c1 Merge pull request #28 from thaJeztah/handle_nil_contexts
  • 2b5e7c3 otel: avoid span lookup for entries without context
  • 4ec26d0 Merge pull request #24 from thaJeztah/integrate_tracing
  • dd120bd Merge pull request #21 from thaJeztah/rewrite_slog
  • dd21ae6 Merge pull request #27 from thaJeztah/bump_logrus
  • 18f2de6 log: accept slog-compatible levels in SetLevel
  • c474254 slog: improve bridge test coverage
  • Additional commits viewable in compare view

Updates github.com/docker/cli from 29.7.2+incompatible to 29.8.0+incompatible

Commits
  • 88096ef Merge pull request #7288 from thaJeztah/bump_jose
  • c50ce17 vendor: github.com/go-jose/go-jose/v4 v4.1.5
  • cec24c7 Merge pull request #7285 from vvoland/update-docker
  • d5ea3bd vendor: github.com/moby/moby/client v0.6.0
  • 7cf09ba vendor: github.com/moby/moby/api v1.56.0
  • 6239084 Merge pull request #7108 from zhangyoufu/umask
  • 45a3e0b e2e/container: Skip umask test until engine support
  • 79dd1f4 Merge pull request #7284 from thaJeztah/trust_bump
  • 32bfe54 cmd/docker-trust: update dependencies
  • d703697 cmd/docker-trust: fix tests
  • Additional commits viewable in compare view

Updates github.com/gobwas/glob from 0.2.3 to 1.0.0

Release notes

Sourced from github.com/gobwas/glob's releases.

v1.0.0

What's Changed

New Contributors

Full Changelog: gobwas/glob@v0.2.3...v1.0.0

Commits
  • 80c58b0 bench.sh: fix the assignment and the benchstat args, ignore *.bench
  • 60a7c15 readme: clarify ** and escaping, make the regexp comparison exact
  • c45ce1c remove parked files (but keep them in git history)
  • dab909e all: split parse.go into parse.go/match.go, polish docs, fix U+FFFD
  • 12d7a23 globtest: print out matchers tree and pretty syntax errors
  • ae63730 shape matchers: switch from <> to () and quote literals
  • a82038c pattern: String() and Separators() impl
  • e9b2193 ci: migrate to github actions
  • c0ec127 glob/v1: rewrite the matching engine
  • e7a84e9 Fix speed results table formatting.
  • Additional commits viewable in compare view

Updates github.com/google/go-containerregistry from 0.22.0 to 0.22.1

Release notes

Sourced from github.com/google/go-containerregistry's releases.

v0.22.1

What's Changed

New Contributors

Full Changelog: google/go-containerregistry@v0.22.0...v0.22.1

Commits
  • 8a72a42 remote: copy manifest annotations to referrers fallback tag descriptors (#2441)
  • 5765c35 build(deps): bump the go-deps group across 2 directories with 3 updates (#2439)
  • 969402f fix(mutate): make Time layer updates lazy (#2429)
  • 25c682e flatten: preserve config and layer media types when flattening (#2438)
  • 79af990 remote: add SSRF redirect protection to writer-side HTTP clients (#2432)
  • 4b9b3c7 fix(release): honor declared Go toolchain (#2435)
  • e033b9c fix(build): install binaries to /ko-app and add to PATH (#2424) (#2436)
  • 8bd7902 name: return a helpful error when a reference contains a URL scheme (#2431)
  • 163134d validate: support index attestation manifests and empty configs (#2414)
  • 44f7ea3 fix(build): Use dependencies.gitSource in cloudbuild_v2.yaml (#2434)
  • Additional commits viewable in compare view

Updates github.com/mattn/go-shellwords from 1.0.14 to 1.0.15

Release notes

Sourced from github.com/mattn/go-shellwords's releases.

v1.0.15

What's Changed

New Contributors

Full Changelog: mattn/go-shellwords@v1.0.14...v1.0.15

Commits
  • f40666a Merge pull request #77 from vitalivo/fix/comments-after-empty-quotes
  • f7c60ee Keep hash characters following empty quotes as word content
  • See full diff in compare view

Updates github.com/moby/buildkit from 0.32.2 to 0.33.0

Release notes

Sourced from github.com/moby/buildkit's releases.

v0.33.0

Welcome to the v0.33.0 release of buildkit!

Please try out the release binaries and report any issues at https://github.com/moby/buildkit/issues.

Contributors

  • CrazyMax
  • Tõnis Tiigi
  • Sebastiaan van Stijn
  • Matthieu MOREL
  • eliuriegas
  • Daniel Nephin
  • Dawei Wei
  • Guthrie McAfee Armstrong
  • Jiří Moravčík
  • Leo Li
  • Ravi Arnan
  • Shurong Cao
  • Spencer G. Jones
  • Vedant Madane

Notable Changes

  • Built-in Dockerfile frontend has been updated to v1.27.0 changelog
  • Builds using proxy-based network tracking/monitoring for exec steps now support fallback to the daemon's proxy settings when the BuildKit daemon is running behind a proxy. #7074
  • The maximum attestation size for exporters has been raised to 80 MiB. #7104
  • Content produced by Rootless versions of BuildKit has been updated to be compatible with Rootful versions of BuildKit for result reproducibility. #7039
  • Buildctl now supports passing valueless build-args read from the environment. #7030
  • Sanitize platform IDs returned by frontend to ensure tar exports can't end up with invalid paths for Windows. #7022
  • Suppress bogus git advice messages on progress output from the way BuildKit checks out git repositories. #6998
  • Build history can now be disabled from daemon configuration #7040
  • Redact more possible inline credentials in progress output or HTTP source and Git bundle steps. This didn't include builds that used build secrets to pass credentials. #7068Description has been truncated

Bumps the go-deps group with 20 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [github.com/anchore/stereoscope](https://github.com/anchore/stereoscope) | `0.3.0` | `0.3.2` |
| [github.com/cli/cli/v2](https://github.com/cli/cli) | `2.98.0` | `2.101.0` |
| [github.com/cli/go-gh/v2](https://github.com/cli/go-gh) | `2.13.0` | `2.16.1` |
| [github.com/compose-spec/compose-go/v2](https://github.com/compose-spec/compose-go) | `2.14.0` | `2.15.0` |
| [github.com/containerd/containerd/v2](https://github.com/containerd/containerd) | `2.3.4` | `2.3.5` |
| [github.com/containerd/log](https://github.com/containerd/log) | `0.1.0` | `0.2.0` |
| [github.com/docker/cli](https://github.com/docker/cli) | `29.7.2+incompatible` | `29.8.0+incompatible` |
| [github.com/gobwas/glob](https://github.com/gobwas/glob) | `0.2.3` | `1.0.0` |
| [github.com/google/go-containerregistry](https://github.com/google/go-containerregistry) | `0.22.0` | `0.22.1` |
| [github.com/mattn/go-shellwords](https://github.com/mattn/go-shellwords) | `1.0.14` | `1.0.15` |
| [github.com/moby/buildkit](https://github.com/moby/buildkit) | `0.32.2` | `0.33.0` |
| [github.com/moby/moby/api](https://github.com/moby/moby) | `1.55.0` | `1.56.0` |
| [github.com/moby/moby/client](https://github.com/moby/moby) | `0.5.1` | `0.6.0` |
| [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo) | `2.32.1` | `2.32.2` |
| [github.com/onsi/gomega](https://github.com/onsi/gomega) | `1.42.1` | `1.43.0` |
| [github.com/tonistiigi/fsutil](https://github.com/tonistiigi/fsutil) | `0.0.0-20260717003753-6d9dc2ebad62` | `0.0.0-20260819142231-83cac42c1c52` |
| [golang.org/x/oauth2](https://github.com/golang/oauth2) | `0.36.0` | `0.37.0` |
| [golang.org/x/sync](https://github.com/golang/sync) | `0.22.0` | `0.23.0` |
| [golang.org/x/sys](https://github.com/golang/sys) | `0.47.0` | `0.48.0` |
| [golang.org/x/term](https://github.com/golang/term) | `0.45.0` | `0.46.0` |



Updates `github.com/anchore/stereoscope` from 0.3.0 to 0.3.2
- [Release notes](https://github.com/anchore/stereoscope/releases)
- [Changelog](https://github.com/anchore/stereoscope/blob/main/RELEASE.md)
- [Commits](anchore/stereoscope@v0.3.0...v0.3.2)

Updates `github.com/cli/cli/v2` from 2.98.0 to 2.101.0
- [Release notes](https://github.com/cli/cli/releases)
- [Changelog](https://github.com/cli/cli/blob/trunk/docs/release-process-deep-dive.md)
- [Commits](cli/cli@v2.98.0...v2.101.0)

Updates `github.com/cli/go-gh/v2` from 2.13.0 to 2.16.1
- [Release notes](https://github.com/cli/go-gh/releases)
- [Commits](cli/go-gh@v2.13.0...v2.16.1)

Updates `github.com/compose-spec/compose-go/v2` from 2.14.0 to 2.15.0
- [Release notes](https://github.com/compose-spec/compose-go/releases)
- [Commits](compose-spec/compose-go@v2.14.0...v2.15.0)

Updates `github.com/containerd/containerd/v2` from 2.3.4 to 2.3.5
- [Release notes](https://github.com/containerd/containerd/releases)
- [Changelog](https://github.com/containerd/containerd/blob/main/RELEASES.md)
- [Commits](containerd/containerd@v2.3.4...v2.3.5)

Updates `github.com/containerd/log` from 0.1.0 to 0.2.0
- [Release notes](https://github.com/containerd/log/releases)
- [Commits](containerd/log@v0.1.0...v0.2.0)

Updates `github.com/docker/cli` from 29.7.2+incompatible to 29.8.0+incompatible
- [Commits](docker/cli@v29.7.2...v29.8.0)

Updates `github.com/gobwas/glob` from 0.2.3 to 1.0.0
- [Release notes](https://github.com/gobwas/glob/releases)
- [Commits](gobwas/glob@v0.2.3...v1.0.0)

Updates `github.com/google/go-containerregistry` from 0.22.0 to 0.22.1
- [Release notes](https://github.com/google/go-containerregistry/releases)
- [Commits](google/go-containerregistry@v0.22.0...v0.22.1)

Updates `github.com/mattn/go-shellwords` from 1.0.14 to 1.0.15
- [Release notes](https://github.com/mattn/go-shellwords/releases)
- [Commits](mattn/go-shellwords@v1.0.14...v1.0.15)

Updates `github.com/moby/buildkit` from 0.32.2 to 0.33.0
- [Release notes](https://github.com/moby/buildkit/releases)
- [Commits](moby/buildkit@v0.32.2...v0.33.0)

Updates `github.com/moby/moby/api` from 1.55.0 to 1.56.0
- [Release notes](https://github.com/moby/moby/releases)
- [Commits](moby/moby@api/v1.55.0...api/v1.56.0)

Updates `github.com/moby/moby/client` from 0.5.1 to 0.6.0
- [Release notes](https://github.com/moby/moby/releases)
- [Changelog](https://github.com/moby/moby/blob/v0.6.0/CHANGELOG.md)
- [Commits](moby/moby@v0.5.1...v0.6.0)

Updates `github.com/onsi/ginkgo/v2` from 2.32.1 to 2.32.2
- [Release notes](https://github.com/onsi/ginkgo/releases)
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md)
- [Commits](onsi/ginkgo@v2.32.1...v2.32.2)

Updates `github.com/onsi/gomega` from 1.42.1 to 1.43.0
- [Release notes](https://github.com/onsi/gomega/releases)
- [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md)
- [Commits](onsi/gomega@v1.42.1...v1.43.0)

Updates `github.com/tonistiigi/fsutil` from 0.0.0-20260717003753-6d9dc2ebad62 to 0.0.0-20260819142231-83cac42c1c52
- [Commits](https://github.com/tonistiigi/fsutil/commits)

Updates `golang.org/x/oauth2` from 0.36.0 to 0.37.0
- [Commits](golang/oauth2@v0.36.0...v0.37.0)

Updates `golang.org/x/sync` from 0.22.0 to 0.23.0
- [Commits](golang/sync@v0.22.0...v0.23.0)

Updates `golang.org/x/sys` from 0.47.0 to 0.48.0
- [Commits](golang/sys@v0.47.0...v0.48.0)

Updates `golang.org/x/term` from 0.45.0 to 0.46.0
- [Commits](golang/term@v0.45.0...v0.46.0)

---
updated-dependencies:
- dependency-name: github.com/anchore/stereoscope
  dependency-version: 0.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/cli/cli/v2
  dependency-version: 2.101.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/cli/go-gh/v2
  dependency-version: 2.16.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/compose-spec/compose-go/v2
  dependency-version: 2.15.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/containerd/containerd/v2
  dependency-version: 2.3.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/containerd/log
  dependency-version: 0.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/docker/cli
  dependency-version: 29.8.0+incompatible
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/gobwas/glob
  dependency-version: 1.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: go-deps
- dependency-name: github.com/google/go-containerregistry
  dependency-version: 0.22.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/mattn/go-shellwords
  dependency-version: 1.0.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/moby/buildkit
  dependency-version: 0.33.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/moby/moby/api
  dependency-version: 1.56.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/moby/moby/client
  dependency-version: 0.6.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/onsi/ginkgo/v2
  dependency-version: 2.32.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/onsi/gomega
  dependency-version: 1.43.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/tonistiigi/fsutil
  dependency-version: 0.0.0-20260819142231-83cac42c1c52
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: golang.org/x/oauth2
  dependency-version: 0.37.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: golang.org/x/sync
  dependency-version: 0.23.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: golang.org/x/sys
  dependency-version: 0.48.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: golang.org/x/term
  dependency-version: 0.46.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Sep 20, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Sep 20, 2026
@github-project-automation github-project-automation Bot moved this to 🧊 Icebox in KraftKit Roadmap Sep 20, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 27, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 27, 2026
@dependabot
dependabot Bot deleted the dependabot/go_modules/staging/go-deps-3fd577657b branch September 27, 2026 09:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code

Projects

Status: 🚀 Done

Development

Successfully merging this pull request may close these issues.

0 participants