Skip to content

chore(deps): bump golang.org/x/vuln from 1.6.0 to 1.8.0 in /tools/linters - #22849

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/tools/linters/golang.org/x/vuln-1.8.0
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/tools/linters/golang.org/x/vuln-1.8.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 16, 2026

Copy link
Copy Markdown
Contributor

Bumps golang.org/x/vuln from 1.6.0 to 1.8.0.

Commits
  • 7090154 go.mod: update golang.org/x dependencies
  • 8fcedea cmd/govulncheck/integration: bump image version
  • ff4f1c5 all: upgrade go directive to at least 1.26.0 [generated]
  • 617f44b go.mod: update golang.org/x dependencies
  • See full diff in compare view

Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name Ignore Conditions
golang.org/x/vuln [< 1.1, > 1.0.1]

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [golang.org/x/vuln](https://github.com/golang/vuln) from 1.6.0 to 1.8.0.
- [Release notes](https://github.com/golang/vuln/releases)
- [Commits](golang/vuln@v1.6.0...v1.8.0)

---
updated-dependencies:
- dependency-name: golang.org/x/vuln
  dependency-version: 1.8.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added auto-merge Auto-merge minor and patch version bumps auto-retest PRs with this label will be automatically retested if prow checks fails dependencies Pull requests that update a dependency file labels Sep 16, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner September 16, 2026 05:52
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file auto-merge Auto-merge minor and patch version bumps auto-retest PRs with this label will be automatically retested if prow checks fails labels Sep 16, 2026
@codecov

codecov Bot commented Sep 16, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 51.81%. Comparing base (cb14fc3) to head (3bb2076).

Additional details and impacted files
@@            Coverage Diff             @@
##           master   #22849      +/-   ##
==========================================
- Coverage   51.85%   51.81%   -0.04%     
==========================================
  Files        2901     2901              
  Lines      182862   182862              
==========================================
- Hits        94821    94759      -62     
- Misses      79746    79792      +46     
- Partials     8295     8311      +16     
Flag Coverage Δ
go-unit-tests 51.81% <ø> (-0.04%) ⬇️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@github-actions

Copy link
Copy Markdown
Contributor

🚀 Build Images Ready

Images are ready for commit 3bb2076. To use with deploy scripts:

export MAIN_IMAGE_TAG=5.0.x-314-g3bb207633e

@rhacs-bot

Copy link
Copy Markdown
Contributor

/retest

@red-hat-konflux

Copy link
Copy Markdown
Contributor

All PipelineRuns for this commit have already succeeded. Use /retest <pipeline-name> to re-run a specific pipeline or /test to re-run all pipelines.

@openshift-ci

openshift-ci Bot commented Sep 16, 2026

Copy link
Copy Markdown

@dependabot[bot]: The following tests failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
ci/prow/gke-ui-e2e-tests 3bb2076 link true /test gke-ui-e2e-tests
ci/prow/ocp-4-22-nongroovy-e2e-tests 3bb2076 link false /test ocp-4-22-nongroovy-e2e-tests
ci/prow/ocp-4-12-nongroovy-e2e-tests 3bb2076 link false /test ocp-4-12-nongroovy-e2e-tests
ci/prow/gke-qa-e2e-tests 3bb2076 link false /test gke-qa-e2e-tests
ci/prow/gke-nongroovy-e2e-tests 3bb2076 link true /test gke-nongroovy-e2e-tests

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

auto-merge Auto-merge minor and patch version bumps auto-retest PRs with this label will be automatically retested if prow checks fails dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant