Robert Sirchia
fbd46961f8
Merge pull request #13621 from helm/dependabot/go_modules/main/github.com/containerd/containerd-1.7.25
...
Bump github.com/containerd/containerd from 1.7.24 to 1.7.25
1 year ago
Robert Sirchia
ba467525ab
Merge pull request #13633 from mattfarina/cleanup-securejoin
...
Ensuring the file paths are clean prior to passing to securejoin
1 year ago
dependabot[bot]
99b22110d8
Bump github.com/containerd/containerd from 1.7.24 to 1.7.25
...
Bumps [github.com/containerd/containerd](https://github.com/containerd/containerd ) from 1.7.24 to 1.7.25.
- [Release notes](https://github.com/containerd/containerd/releases )
- [Changelog](https://github.com/containerd/containerd/blob/main/RELEASES.md )
- [Commits](https://github.com/containerd/containerd/compare/v1.7.24...v1.7.25 )
---
updated-dependencies:
- dependency-name: github.com/containerd/containerd
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Robert Sirchia
3af4e57675
Merge pull request #13630 from helm/dependabot/go_modules/main/github.com/cyphar/filepath-securejoin-0.4.0
...
Bump github.com/cyphar/filepath-securejoin from 0.3.6 to 0.4.0
1 year ago
Robert Sirchia
7f83ea5e5e
Merge pull request #13635 from helm/dependabot/github_actions/main/actions/upload-artifact-4.6.0
...
Bump actions/upload-artifact from 4.4.3 to 4.6.0
1 year ago
Matt Farina
1e256b6198
Merge pull request #13583 from jiashengz/fix-gvk
...
fix: check group for resource info match
1 year ago
dependabot[bot]
ec12a61337
Bump actions/upload-artifact from 4.4.3 to 4.6.0
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 4.4.3 to 4.6.0.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](b4b15b8c7c...65c4c4a1dd )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
George Jenkins
53a4a59eb9
Merge pull request #13600 from gjenkins8/cleanup_NewShowWithConfig
...
cleanup: `NewShowWithConfig` -> `NewShow`
1 year ago
Matt Farina
35a9ead998
Ensuring the file paths are clean prior to passing to securejoin
...
securejoin v0.4.0 made a possibly breaking change. Only clean paths
are safe to pass to SecureJoin or they could return an error or
have the wrong path. The details are in the release notes for v0.4.0.
This change ensures the paths are clean prior to passing to SecureJoin.
Signed-off-by: Matt Farina <matt.farina@suse.com>
1 year ago
Andrew Block
fb54996b00
Merge pull request #13489 from helm/dependabot/github_actions/actions/upload-artifact-4.4.3
...
Bump actions/upload-artifact from 3.2.1.pre.node20 to 4.4.3
1 year ago
dependabot[bot]
4032d159df
Bump github.com/cyphar/filepath-securejoin from 0.3.6 to 0.4.0
...
Bumps [github.com/cyphar/filepath-securejoin](https://github.com/cyphar/filepath-securejoin ) from 0.3.6 to 0.4.0.
- [Release notes](https://github.com/cyphar/filepath-securejoin/releases )
- [Changelog](https://github.com/cyphar/filepath-securejoin/blob/main/CHANGELOG.md )
- [Commits](https://github.com/cyphar/filepath-securejoin/compare/v0.3.6...v0.4.0 )
---
updated-dependencies:
- dependency-name: github.com/cyphar/filepath-securejoin
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Robert Sirchia
7dac0157a7
Merge pull request #13625 from shahbazaamir/main
...
ading info to install helm , referring the documentation
1 year ago
shahbazaamir
6d42a2973d
ading info to install helm , referring the documentation
...
Signed-off-by: shahbazaamir <shahbaz07dbit@gmail.com>
1 year ago
George Jenkins
bd897c96fb
Merge pull request #13601 from gjenkins8/cleanup_values_lint
...
cleanup: Remove superseded 'lint/rules.Values' function
1 year ago
Matt Farina
ad97684029
Merge pull request #13608 from helm/dependabot/go_modules/main/github.com/moby/term-0.5.2
...
Bump github.com/moby/term from 0.5.1 to 0.5.2
1 year ago
Matt Farina
8ab3997e97
Merge pull request #13607 from helm/dependabot/go_modules/main/golang.org/x/crypto-0.32.0
...
Bump golang.org/x/crypto from 0.31.0 to 0.32.0
1 year ago
Matt Farina
090d3e9579
Merge pull request #13611 from mattfarina/version-v4
...
Updating the internal version to v4
1 year ago
George Jenkins
a8d39e6a17
Merge pull request #13576 from gjenkins8/consolidate_lint_run_functions
...
refactor: Consolidate lint package Run() functions
1 year ago
George Jenkins
5d13b0cac3
Merge pull request #13577 from gjenkins8/gjenkins/rm_pull_with_opts
...
refactor: Remove redundant `NewPullWithOpts`
1 year ago
George Jenkins
004b77c1b4
Merge pull request #13599 from gjenkins8/cleanup_ProcessDependenciesWithMerge
...
cleanup: `ProcessDependenciesWithMerge` -> `ProcessDependencies`
1 year ago
Matt Farina
27bcda42dd
Updating the internal version to v4
...
Signed-off-by: Matt Farina <matt.farina@suse.com>
1 year ago
dependabot[bot]
1771b88b03
Bump github.com/moby/term from 0.5.1 to 0.5.2
...
Bumps [github.com/moby/term](https://github.com/moby/term ) from 0.5.1 to 0.5.2.
- [Commits](https://github.com/moby/term/compare/v0.5.1...v0.5.2 )
---
updated-dependencies:
- dependency-name: github.com/moby/term
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
dependabot[bot]
e16bf87047
Bump golang.org/x/crypto from 0.31.0 to 0.32.0
...
Bumps [golang.org/x/crypto](https://github.com/golang/crypto ) from 0.31.0 to 0.32.0.
- [Commits](https://github.com/golang/crypto/compare/v0.31.0...v0.32.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/crypto
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
George Jenkins
6fe37ef26f
Merge pull request #13595 from helm/dependabot/go_modules/main/github.com/moby/term-0.5.1
...
Bump github.com/moby/term from 0.5.0 to 0.5.1
1 year ago
George Jenkins
1c807df5ba
cleanup: Remove superceeded 'lint/rules.Values' function
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
George Jenkins
8468de42ed
cleanup: `NewShowWithConfig` -> `NewShow`
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
George Jenkins
3b9cce9669
cleanup: Remove 'ProcessDependenciesWithMerge'
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
dependabot[bot]
0ff51d974f
Bump github.com/moby/term from 0.5.0 to 0.5.1
...
Bumps [github.com/moby/term](https://github.com/moby/term ) from 0.5.0 to 0.5.1.
- [Commits](https://github.com/moby/term/compare/v0.5.0...v0.5.1 )
---
updated-dependencies:
- dependency-name: github.com/moby/term
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Matt Farina
dde5c2aaf0
Merge pull request #13591 from helm/dependabot/go_modules/github.com/docker/docker-27.1.1incompatible
...
Bump github.com/docker/docker from 27.1.0+incompatible to 27.1.1+incompatible
1 year ago
dependabot[bot]
2dab7df0a1
Bump github.com/docker/docker
...
Bumps [github.com/docker/docker](https://github.com/docker/docker ) from 27.1.0+incompatible to 27.1.1+incompatible.
- [Release notes](https://github.com/docker/docker/releases )
- [Commits](https://github.com/docker/docker/compare/v27.1.0...v27.1.1 )
---
updated-dependencies:
- dependency-name: github.com/docker/docker
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
George Jenkins
e68086b1fa
Merge pull request #13562 from helm/dependabot/go_modules/main/oras.land/oras-go-1.2.6
...
Bump oras.land/oras-go from 1.2.5 to 1.2.6
1 year ago
Matt Farina
f65eaf35ce
Merge pull request #12690 from TerryHowe/oci-install-digest
...
feat: OCI install by digest
1 year ago
Matt Farina
0e035714c1
Merge pull request #13581 from ldlb9527/fix-cve
...
Upgrade golang.org/x/net to v0.33.0 to address CVE-2024-45338
1 year ago
Jiasheng Zhu
f5d488122b
fix: check group for resource info match
...
Closes : #13582
Signed-off-by: Jiasheng Zhu <gnehsaijuhz@hotmail.com>
1 year ago
cx
e00ab86567
Upgrade golang.org/x/net to v0.33.0 to address CVE-2024-45338
...
fixed : #13551
Signed-off-by: cx <1249843194@qq.com>
1 year ago
dependabot[bot]
e1c37d4f48
Bump oras.land/oras-go from 1.2.5 to 1.2.6
...
Bumps [oras.land/oras-go](https://github.com/oras-project/oras-go ) from 1.2.5 to 1.2.6.
- [Release notes](https://github.com/oras-project/oras-go/releases )
- [Commits](https://github.com/oras-project/oras-go/compare/v1.2.5...v1.2.6 )
---
updated-dependencies:
- dependency-name: oras.land/oras-go
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Matt Farina
d1d7bb9911
Merge pull request #13554 from helm/dependabot/go_modules/main/k8s-io-b022215331
...
Bump the k8s-io group with 7 updates
1 year ago
George Jenkins
5e43789817
Merge pull request #13544 from helm/dependabot/go_modules/github.com/distribution/distribution/v3-3.0.0-rc.2
...
Bump github.com/distribution/distribution/v3 from 3.0.0-rc.1 to 3.0.0-rc.2
1 year ago
George Jenkins
88da89085e
refactor: Remove redundant `NewPullWithOpts`
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
George Jenkins
edabef668a
more tidy
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
George Jenkins
63623665ae
refactor: Consolidate lint package Run() functions
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
dependabot[bot]
d5365ab27d
Bump the k8s-io group with 7 updates
...
Bumps the k8s-io group with 7 updates:
| Package | From | To |
| --- | --- | --- |
| [k8s.io/api](https://github.com/kubernetes/api ) | `0.31.3` | `0.32.0` |
| [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver ) | `0.31.3` | `0.32.0` |
| [k8s.io/apimachinery](https://github.com/kubernetes/apimachinery ) | `0.31.3` | `0.32.0` |
| [k8s.io/apiserver](https://github.com/kubernetes/apiserver ) | `0.31.3` | `0.32.0` |
| [k8s.io/cli-runtime](https://github.com/kubernetes/cli-runtime ) | `0.31.3` | `0.32.0` |
| [k8s.io/client-go](https://github.com/kubernetes/client-go ) | `0.31.3` | `0.32.0` |
| [k8s.io/kubectl](https://github.com/kubernetes/kubectl ) | `0.31.3` | `0.32.0` |
Updates `k8s.io/api` from 0.31.3 to 0.32.0
- [Commits](https://github.com/kubernetes/api/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/apiextensions-apiserver` from 0.31.3 to 0.32.0
- [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases )
- [Commits](https://github.com/kubernetes/apiextensions-apiserver/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/apimachinery` from 0.31.3 to 0.32.0
- [Commits](https://github.com/kubernetes/apimachinery/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/apiserver` from 0.31.3 to 0.32.0
- [Commits](https://github.com/kubernetes/apiserver/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/cli-runtime` from 0.31.3 to 0.32.0
- [Commits](https://github.com/kubernetes/cli-runtime/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/client-go` from 0.31.3 to 0.32.0
- [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md )
- [Commits](https://github.com/kubernetes/client-go/compare/v0.31.3...v0.32.0 )
Updates `k8s.io/kubectl` from 0.31.3 to 0.32.0
- [Commits](https://github.com/kubernetes/kubectl/compare/v0.31.3...v0.32.0 )
---
updated-dependencies:
- dependency-name: k8s.io/api
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/apiextensions-apiserver
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/apimachinery
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/apiserver
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/cli-runtime
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/client-go
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
- dependency-name: k8s.io/kubectl
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: k8s-io
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Matt Farina
fbe20ff59a
Merge pull request #13573 from mattfarina/helm-v4-path
...
Updating to helm.sh/helm/v4
1 year ago
Matt Farina
2236294119
Updating to helm.sh/helm/v4
...
Since Helm is going through breaking changes with Helm v4, the version path to
Helm needs to be updated.
Signed-off-by: Matt Farina <matt.farina@suse.com>
1 year ago
George Jenkins
a32d47e7b0
Merge pull request #13556 from helm/dependabot/go_modules/main/github.com/distribution/distribution/v3-3.0.0-rc.2
...
Bump github.com/distribution/distribution/v3 from 3.0.0-rc.1 to 3.0.0-rc.2
1 year ago
Matt Farina
9c7ee48066
Merge pull request #13563 from helm/fix_dev_v3_actions
...
Run `build-test` action on `dev-v3` branch
1 year ago
George Jenkins
bfada38aa9
Run `build-test` action on `dev-v3` branch
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago
dependabot[bot]
9ff8e6fece
Bump github.com/distribution/distribution/v3
...
Bumps [github.com/distribution/distribution/v3](https://github.com/distribution/distribution ) from 3.0.0-rc.1 to 3.0.0-rc.2.
- [Release notes](https://github.com/distribution/distribution/releases )
- [Commits](https://github.com/distribution/distribution/compare/v3.0.0-rc.1...v3.0.0-rc.2 )
---
updated-dependencies:
- dependency-name: github.com/distribution/distribution/v3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
1 year ago
Andrew Block
6ca5f12b18
Merge pull request #13552 from helm/fix_dependabot_targetbranch
...
Fix `dependabot.yml` `target-branch` typo
1 year ago
George Jenkins
eee046f704
Fix `dependabot.yml`
...
Signed-off-by: George Jenkins <gvjenkins@gmail.com>
1 year ago