Skip to content

build(deps): Upgrade otelcollector to v0.129.0#1234

Closed
azure-monitor-assistant[bot] wants to merge 2 commits into
grace/improve-upgrade-botfrom
bot/otelcollector-upgrade-v0.129.0
Closed

build(deps): Upgrade otelcollector to v0.129.0#1234
azure-monitor-assistant[bot] wants to merge 2 commits into
grace/improve-upgrade-botfrom
bot/otelcollector-upgrade-v0.129.0

Conversation

@azure-monitor-assistant
Copy link
Copy Markdown
Contributor

This PR upgrades the otelcollector to the latest version available for the opentelemetry-collector and opentelemetry-operator.

It was automatically generated by the GitHub Actions workflow.

The summary of the OSS changelog is below:

Prometheusreceiver Changes

v0.127.0 to v0.129.0

Generated on: 2025-07-22 22:37:33


v0.129.0

  • [FEATURE] prometheusreceiver: Promote the receiver.prometheusreceiver.RemoveLegacyResourceAttributes featuregate to stable (#40572) It has been beta since v0.126.0
  • [BUG FIX] prometheusreceiver: Fix invalid metric name validation error in scrape start from target allocator. (#35459, #40788) Prometheus made setting metric_name_validation_scheme, metric_name_escaping_scheme mandatory mandatory, use sane defaults.

Summary

Category Count
Breaking Changes 0
Features 1
Bug Fixes 1
Other Changes 0
Total 2

Target-allocator Changes

v0.127.0 to v0.129.1

Generated on: 2025-07-22 22:37:49


0.129.1

  • [BREAKING] targetallocator, collector: Remove stable feature gate PrometheusOperatorIsAvailable (#4141)
  • [FEATURE] target allocator: Adds support for HTML output in the target allocator. (#3622)
  • [BUG FIX] target allocator: ensure stable iteration order of target labels when generating hash (#4082)
  • [BUG FIX] target allocator: Fix OpenShift must-gather for Target Allocator (#4084)

Summary

Category Count
Breaking Changes 1
Features 1
Bug Fixes 2
Other Changes 0
Total 4

@azure-monitor-assistant
Copy link
Copy Markdown
Contributor Author

✅ Building the otelcollector and related go binaries succeeded. No breaking changes were detected.
The otelcollector was successfully upgraded to version v0.129.0.

@azure-monitor-assistant
Copy link
Copy Markdown
Contributor Author

CVE Changes Report

The following CVE changes were detected when upgrading to version v0.129.0:

=== CVE Changes Report ===
Removed CVEs:
  - CVE-2023-4806 from prometheusui with severity MEDIUM and package 
  - CVE-2025-22872 from prometheusui with severity MEDIUM and package golang.org/x/net
  - CVE-2024-33601 from  with severity HIGH and package 
  - CVE-2024-33600 from prometheusui with severity MEDIUM and package 
  - CVE-2024-33599 from  with severity HIGH and package 
  - CVE-2023-4527 from prometheusui with severity MEDIUM and package 
Added CVEs:

The trivyignore file was updated to ignore the new CVEs.

@azure-monitor-assistant
Copy link
Copy Markdown
Contributor Author

/azp run

@azure-monitor-assistant
Copy link
Copy Markdown
Contributor Author

@microsoft-github-policy-service agree company="Microsoft"

@azure-pipelines
Copy link
Copy Markdown

Commenter does not have sufficient privileges for PR 1234 in repo Azure/prometheus-collector

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant