fix(deps): vuln minor upgrades — 10 packages (minor: 8 · patch: 2) [src/accountingservice]#77
Conversation
Release Notesgoogle.golang.org/grpc (v1.59.0 → v1.80.0) — GitHub Releasev1.80.0Behavior Changes
Bug Fixes
New Features
Performance Improvements
(truncated) v1.79.3Security
v1.79.2Bug Fixes
v1.79.1Bug Fixes
v1.79.0API Changes
Behavior Changes
New Features
Bug Fixes
(truncated) v1.78.0Behavior Changes
(truncated — see source for full notes) go.opentelemetry.io/otel/sdk (v1.20.0 → v1.43.0) — GitHub Releasev1.43.0Added
Changed
(truncated) v1.42.0Added
Changed
Fixed
Removed
What's Changed
(truncated) v1.41.0This release is the last to support Go 1.24. The next release will require at least Go 1.25. Added
Fixed
What's Changed(truncated — see source for full notes) google.golang.org/protobuf (v1.31.0 → v1.36.11) — GitHub Releasev1.36.11Full Changelog: protocolbuffers/protobuf-go@v1.36.10...v1.36.11 User-visible changes: Bug fixes: Maintenance: v1.36.10Full Changelog: protocolbuffers/protobuf-go@v1.36.9...v1.36.10 Bug fixes: Maintenance: v1.36.9Full Changelog: protocolbuffers/protobuf-go@v1.36.8...v1.36.9 User-visible changes: v1.36.8Maintenance: CL/696316: all: set Go language version to Go 1.23 v1.36.7Maintenance / optimizations: CL/683955: encoding/protowire: micro-optimize SizeVarint (-20% on Intel) v1.36.6Full Changelog: protocolbuffers/protobuf-go@v1.36.5...v1.36.6 User-visible changes: Maintenance: v1.36.5Full Changelog: protocolbuffers/protobuf-go@v1.36.4...v1.36.5 Bug fixes: Maintenance: v1.36.4Full Changelog: protocolbuffers/protobuf-go@v1.36.3...v1.36.4 Bug fixes: Maintenance: (truncated — see source for full notes) github.com/IBM/sarama (v1.42.1 → v1.47.0) — GitHub Releasev1.47.0What's Changed🎉 New Features / Improvements
🐛 Fixes
🔧 Maintenance
📦 Dependency updates
(truncated) v1.46.3What's Changed🐛 Fixes
📦 Dependency updates
🔧 Maintenance
Full Changelog: IBM/sarama@v1.46.2...v1.46.3 v1.46.2What's ChangedA big focus on improving our support for newer protocol versions in this release, particularly supporting a wider range of flexible versions 🎉 New Features / Improvements
🐛 Fixes
(truncated) v1.46.1
What's Changed🎉 New Features / Improvements
(truncated — see source for full notes) go.opentelemetry.io/otel (v1.20.0 → v1.43.0) — GitHub Releasev1.43.0Added
Changed
(truncated) v1.42.0Added
Changed
Fixed
Removed
What's Changed
(truncated) v1.41.0This release is the last to support Go 1.24. The next release will require at least Go 1.25. Added
Fixed
What's Changed(truncated — see source for full notes) go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc (v1.20.0 → v1.43.0) — GitHub Releasev1.43.0Added
Changed
(truncated) v1.42.0Added
Changed
Fixed
Removed
What's Changed
(truncated) v1.41.0This release is the last to support Go 1.24. The next release will require at least Go 1.25. Added
Fixed
What's Changed(truncated — see source for full notes) go.opentelemetry.io/otel/trace (v1.20.0 → v1.43.0) — GitHub Releasev1.43.0Added
Changed
(truncated) v1.42.0Added
Changed
Fixed
Removed
What's Changed
(truncated) v1.41.0This release is the last to support Go 1.24. The next release will require at least Go 1.25. Added
Fixed
What's Changed(truncated — see source for full notes) github.com/sirupsen/logrus (v1.9.3 → v1.9.4) — GitHub ReleaseNotable changes
Full Changelog: sirupsen/logrus@v1.9.3...v1.9.4 Generated by ADMS Sources: 8 GitHub Releases, 2 not available. |
|
Hey, sorry for the noise. This was caused by a bug in our automated dependency update system that incorrectly included upstream changelog content in PR comments, triggering notifications to external contributors. The feature flag has been turned off and we're working on a fix. Sorry about that again. |
Summary: Critical-severity security update — 10 packages upgraded (MINOR changes included)
Manifests changed:
src/accountingservice(go)✅ Action Required: Please review the changes below. If they look good, approve and merge this PR.
Updates
Packages marked with "-" are updated due to dependency constraints.
Security Details
🚨 Critical & High Severity (4 fixed)
ℹ️ Other Vulnerabilities (2)
v1.5.3v1.5.4src/accountingservice/go.modv1.3.0v1.6.1src/accountingservice/go.modReview Checklist
Standard review:
Update Mode: Vulnerability Remediation (Critical/High)
🤖 Generated by DataDog Automated Dependency Management System