fix(deps): vuln minor: google.golang.org/grpc, google.golang.org/protobuf [grpc_check/tests]#2981
Conversation
Release Notesgoogle.golang.org/grpc (v1.48.0 → v1.80.0) — GitHub Releasev1.80.0Behavior Changes
Bug Fixes
New Features
Performance Improvements
(truncated) v1.79.3Security
v1.79.2Bug Fixes
v1.79.1Bug Fixes
v1.79.0API Changes
Behavior Changes
New Features
Bug Fixes
(truncated) v1.78.0Behavior Changes
New Features
Bug Fixes
Performance Improvements
(truncated — see source for full notes) google.golang.org/protobuf (v1.27.1 → v1.36.11) — GitHub Releasev1.36.11Full Changelog: protocolbuffers/protobuf-go@v1.36.10...v1.36.11 User-visible changes: Bug fixes: Maintenance: v1.36.10Full Changelog: protocolbuffers/protobuf-go@v1.36.9...v1.36.10 Bug fixes: Maintenance: v1.36.9Full Changelog: protocolbuffers/protobuf-go@v1.36.8...v1.36.9 User-visible changes: v1.36.8Maintenance: CL/696316: all: set Go language version to Go 1.23 v1.36.7Maintenance / optimizations: CL/683955: encoding/protowire: micro-optimize SizeVarint (-20% on Intel) v1.36.6Full Changelog: protocolbuffers/protobuf-go@v1.36.5...v1.36.6 User-visible changes: Maintenance: v1.36.5Full Changelog: protocolbuffers/protobuf-go@v1.36.4...v1.36.5 Bug fixes: Maintenance: v1.36.4Full Changelog: protocolbuffers/protobuf-go@v1.36.3...v1.36.4 Bug fixes: Maintenance: v1.36.3Full Changelog: protocolbuffers/protobuf-go@v1.36.2...v1.36.3 Bug fixes: User-visible changes: Maintenance: (and 16 more releases — view all) Generated by ADMS Sources: 2 GitHub Releases. |
|
Hey, sorry for the noise. This was caused by a bug in our automated dependency update system that incorrectly included upstream changelog content in PR comments, triggering notifications to external contributors. The feature flag has been turned off and we're working on a fix. Sorry about that again. |
Summary: Critical-severity security update — 2 packages upgraded (MINOR changes included)
Manifests changed:
grpc_check/tests(go)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Security Details
🚨 Critical & High Severity (5 fixed)
ℹ️ Other Vulnerabilities (2)
v1.48.0v1.80.0grpc_check/tests/docker/go.modv1.27.1v1.36.11grpc_check/tests/docker/go.modReview Checklist
Standard review:
Update Mode: Vulnerability Remediation (Critical/High)
🤖 Generated by DataDog Automated Dependency Management System