fix(deps): vuln major upgrades — 23 packages (major: 1 · unstable: 1 · minor: 21) [exp/khaudit]#419
Conversation
Release Notesgoogle.golang.org/grpc (v1.74.2 → v1.80.0) — GitHub Releasev1.80.0Behavior Changes
Bug Fixes
New Features
Performance Improvements
(truncated) v1.79.3Security(truncated — see source for full notes) github.com/DataDog/KubeHound (v0.0.0-00010101000000-000000000000 → v1.6.7) — GitHub Releasev1.6.7What's Changed
Full Changelog: v1.6.6...v1.6.7 v1.6.6What's Changed
Full Changelog: v1.6.5...v1.6.6 v1.6.5What's Changed
(truncated — see source for full notes) github.com/DataDog/appsec-internal-go (v1.9.0 → v1.14.0) — GitHub Releasev1.14.0What's Changed
Full Changelog: DataDog/appsec-internal-go@v1.13.0...v1.14.0 v1.13.0What's Changed
New Contributors
Full Changelog: DataDog/appsec-internal-go@v1.12.0...v1.13.0 v1.12.0What's Changed
Full Changelog: DataDog/appsec-internal-go@v1.11.2...v1.12.0 v1.11.2What's Changed
Full Changelog: DataDog/appsec-internal-go@v1.11.1...v1.11.2 v1.11.1What's Changed
Full Changelog: DataDog/appsec-internal-go@v1.11.0...v1.11.1 v1.11.0What's Changed
Full Changelog: DataDog/appsec-internal-go@v1.10.0...v1.11.0 v1.10.0What's Changed
(truncated — see source for full notes) github.com/DataDog/datadog-go/v5 (v5.6.0 → v5.8.3) — GitHub Releasev5.8.3
See the CHANGELOG for the details on previous releases. v5.8.2
See the CHANGELOG for the details on previous releases. v5.8.1See the Changelog for the details. v5.8.0See the Changelog for the details. v5.7.1Retracting v5.7.0 as it included a breaking change. v5.7.0See the Changelog for the details. github.com/fxamacker/cbor/v2 (v2.7.0 → v2.9.1) — GitHub Releasev2.9.1This release includes important bugfixes, defensive checks, improved code quality, and more tests. Although not public, the fuzzer was also improved by adding more fuzz tests. 🐞 Bug fixes related to the
|
|
Hey, sorry for the noise. This was caused by a bug in our automated dependency update system that incorrectly included upstream changelog content in PR comments, triggering notifications to external contributors. The feature flag has been turned off and we're working on a fix. Sorry about that again. |
Summary: Critical-severity security update — 23 packages upgraded (MAJOR changes included)
Manifests changed:
exp/khaudit(go)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Packages marked with "-" are updated due to dependency constraints.
Warning
Major Version Upgrade
This update includes major version changes that may contain breaking changes. Please:
Security Details
🚨 Critical & High Severity (3 fixed)
v1.2.6v1.3.0exp/khaudit/go.modv1.1.3-0.20240612014219-fbbf4953d986v1.2.0exp/khaudit/go.modReview Checklist
Extra review is recommended for this update:
Update Mode: Vulnerability Remediation (Critical)
🤖 Generated by DataDog Automated Dependency Management System