Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

🌱 Update Builder Image group #236

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

cluster-stack-bot[bot]
Copy link
Contributor

@cluster-stack-bot cluster-stack-bot bot commented Jul 1, 2024

This PR contains the following updates:

Package Type Update Change
docker.io/aquasec/trivy (source) stage minor 0.54.1 -> 0.55.2
docker.io/hadolint/hadolint stage digest 7dba9a9 -> 3c206a4
docker.io/library/alpine stage patch 3.20.2 -> 3.20.3
docker.io/library/golang final patch 1.23.0-bullseye -> 1.23.2-bullseye
golangci/golangci-lint minor v1.60.3 -> v1.61.0
helm/helm minor v3.14.1 -> v3.16.1

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

aquasecurity/trivy (docker.io/aquasec/trivy)

v0.55.2

Compare Source

Changelog

  • 928c7c0 release: v0.55.2 [release/v0.55] (#​7523)
  • 14a058f fix(java): use dependencyManagement from root/child pom's for dependencies from parents [backport: release/v0.55] (#​7521)
  • 990bc4e chore(deps): bump alpine from 3.20.0 to 3.20.3 [backport: release/v0.55] (#​7516)

v0.55.1

Compare Source

⚡Release highlights and summary⚡

👉https://github.com/aquasecurity/trivy/discussions/7494

Changelog

https://github.com/aquasecurity/trivy/blob/release/v0.55/CHANGELOG.md#0551-2024-09-12

v0.55.0

Compare Source

⚠ BREAKING CHANGES
  • cli: delete deprecated SBOM flags (#​7266)
Features
Bug Fixes
Performance Improvements
golangci/golangci-lint (golangci/golangci-lint)

v1.61.0

Compare Source

  1. Enhancements
    • Add junit-xml-extended format
    • Exclude Swagger Codegen files by default
  2. Updated linters
    • dupword: from 0.0.14 to 0.1.1
    • fatcontext: from 0.4.0 to 0.5.2
    • gci: from 0.13.4 to 0.13.5 (new option no-lex-order)
    • go-ruleguard: from 0.4.2 to 0fe6f58 (fix panic with custom linters)
    • godot: from 1.4.16 to 1.4.17
    • gomodguard: from 1.3.3 to 1.3.5
    • gosec: disable temporarily G407
    • gosec: from ab3f6c1 to 2.21.2 (partially fix G115)
    • intrange: from 0.1.2 to 0.2.0
    • nolintlint: remove the empty line in the directive replacement
  3. Misc.
    • Improve runtime version parsing
  4. Documentation
    • Add additional info about typecheck
helm/helm (helm/helm)

v3.16.1: Helm 3.16.1

Compare Source

Helm v3.16.1 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.

This release fixes a regression that is in 3.16.0.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.16.1. The common platform binaries are here:

This release was signed with 672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E and can be found at @​mattfarina keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.16.2 is the next patch release and will be on October 09, 2024
  • 3.17.0 is the next feature release and will be on January 15, 2025

Changelog

  • bumping version to 1.22.7 5a5449d (Robert Sirchia)
  • Merge pull request #​13327 from mattfarina/revert-11726 2cbf7fc (Joe Julian)

v3.16.0: Helm v3.16.0

Compare Source

Helm v3.16.0 is a feature release. Users are encouraged to upgrade for the best experience.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Notable Changes

  • added sha512sum template function
  • added ActiveHelp for cmds that don't take any more args
  • drops very old Kubernetes versions support in helm create
  • add --skip-schema-validation flag to helm 'install', 'upgrade' and 'lint'
  • fixed bug to now use burst limit setting for discovery
  • Added windows arm64 support

Installation and Upgrading

Download Helm v3.16.0. The common platform binaries are here:

This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @​r6by keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.16.1 is the next patch release and will be on October 09, 2024
  • 3.17.0 is the next feature release and will be on January 15, 2025

Changelog

  • bump version to v3.16.0 0d439e1 (Matt Farina)
  • Bump github.com/cyphar/filepath-securejoin from 0.2.5 to 0.3.1 0d12150 (dependabot[bot])
  • Bump github.com/rubenv/sql-migrate from 1.6.1 to 1.7.0 b1f9f0c (dependabot[bot])
  • Updating sprig to latest release 6a228aa (Matt Farina)
  • Bump github/codeql-action from 3.26.3 to 3.26.6 e448aae (dependabot[bot])
  • remove utc 31a1252 (Giulio)
  • Updating to Kubernetes client libraries for 1.31.0 a539b6a (Matt Farina)
  • update 39799ad (Giulio)
  • Bump github.com/evanphx/json-patch 8716c42 (dependabot[bot])
  • removing old adopter. c979992 (Robert Sirchia)
  • fixing changes as per requested. b92cc92 (Robert Sirchia)
  • Bump github/codeql-action from 3.26.2 to 3.26.3 c58cb9a (dependabot[bot])
  • ActiveHelp for cmds that don't take any more args c92cc07 (Marc Khouzam)
  • Updating the inline documentation. e72978e (Robert Sirchia)
  • Bump github/codeql-action from 3.26.1 to 3.26.2 83874d9 (dependabot[bot])
  • Fix linting error for pr 12876 8a26add (Scott Rigby)
  • Add Scott's key for releases 32875e2 (Scott Rigby)
  • Bump github/codeql-action from 3.26.0 to 3.26.1 990dbf6 (dependabot[bot])
  • Bump github.com/spf13/cobra from 1.8.0 to 1.8.1 a5db73b (dependabot[bot])
  • Bump github.com/foxcpp/go-mockdns from 1.0.0 to 1.1.0 00caf00 (dependabot[bot])
  • Bump the k8s-io group across 1 directory with 7 updates ac57b60 (dependabot[bot])
  • Bump github/codeql-action from 3.25.15 to 3.26.0 5bbe19a (dependabot[bot])
  • ref(create): drop old Kubernetes versions support in Ingress template f9ba3c5 (dnskr)
  • Bump github.com/docker/docker 3a1aa21 (dependabot[bot])
  • Bump golangci/golangci-lint-action from 6.0.1 to 6.1.0 f293480 (dependabot[bot])
  • Bump github/codeql-action from 3.25.13 to 3.25.15 8c1bfc7 (dependabot[bot])
  • verbiage c677272 (George Jenkins)
  • verbiage 04ece1f (George Jenkins)
  • verbiage e1b95d5 (George Jenkins)
  • Update CONTRIBUTING.md 1ea6fd5 (George Jenkins)
  • Update .github/pull_request_template.md 7530241 (George Jenkins)
  • Update CONTRIBUTING.md 0554fdd (George Jenkins)
  • rm spurious paste b881266 (George Jenkins)
  • docs: Introduce docs wanted label cd92c43 (George Jenkins)
  • Bump github/codeql-action from 3.25.12 to 3.25.13 856d576 (dependabot[bot])
  • Move hickeyma to emeritus a5ff111 (Martin Hickey)
  • Bump github/codeql-action from 3.25.11 to 3.25.12 168c48b (dependabot[bot])
  • fix repository-cache flag help description from file to directory 84cbb2c (Maor Friedman)
  • Bump actions/setup-go from 5.0.1 to 5.0.2 98e2af9 (dependabot[bot])
  • Bump github.com/cyphar/filepath-securejoin from 0.2.4 to 0.2.5 6dba544 (dependabot[bot])
  • Bump github.com/jmoiron/sqlx from 1.3.5 to 1.4.0 10d01bc (dependabot[bot])
  • Bump golang.org/x/crypto from 0.21.0 to 0.25.0 e4c792f (dependabot[bot])
  • Bump github/codeql-action from 3.25.10 to 3.25.11 d59d0de (dependabot[bot])
  • feat(helm): add --skip-schema-validation flag to helm 'install', 'upgrade' and 'lint' acf7158 (anessi)
  • Fix race condition in TestInstallRelease_Wait_Interrupted test f69a2dd (Alex Johnson)
  • fix: update error handling in Configuration.Init method, add tests for the method 800c33a (Suleiman Dibirov)
  • fix(helm): Use burst limit setting for discovery 69362df (Evan Foster)
  • fixed dependency_update_test.go 4d25dd3 (Suleiman Dibirov)
  • fix(dependencyBuild): prevent race condition in concurrent helm dependency adeb4ca (Suleiman Dibirov)
  • fix: respect proxy envvars on helm install/upgrade b0603fb (Sidharth Menon)
  • Bump github/codeql-action from 3.25.9 to 3.25.10 b4f7167 (dependabot[bot])
  • Bump actions/checkout from 4.1.1 to 4.1.7 a13a353 (dependabot[bot])
  • Bump github/codeql-action from 3.25.8 to 3.25.9 7e6904e (dependabot[bot])
  • Add Syself to ADOPTERS.md 144d65e (Janis Kemper)
  • Bump github/codeql-action from 3.25.7 to 3.25.8 ca98970 (dependabot[bot])
  • Update CONTRIBUTING.MD a01f19e (Robert Sirchia)
  • Bump github/codeql-action from 3.25.6 to 3.25.7 6ae6438 (dependabot[bot])
  • chore(deps): bump github.com/opencontainers/image-spec b61a1fc (dependabot[bot])
  • Bump github.com/docker/docker 6773d5b (dependabot[bot])
  • Update CONTRIBUTE.md 35e91dc (Robert Sirchia)
  • Update CONTRIBUTING.md ae55833 (Evans Mungai)
  • Update walk.go 30a5598 (Robert Sirchia)
  • fix docs of DeployedAll 90df4fa (Daniel Strobusch)
  • Fixing build issue where wrong version is used 0b64775 (Matt Farina)
  • --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... 5e31004 (dependabot[bot])
  • chore: Update backward compatibility section in CONTRIBUTING.md 0f026b4 (Evans Mungai)
  • chore(deps): bump github/codeql-action from 3.25.4 to 3.25.5 63ba355 (dependabot[bot])
  • Update github.com/asaskevich/govalidator 65b03d7 (Shahar Harari)
  • [scripts] Add windows arm64 entries in install and release notes scripts f615c1a (Asmit De)
  • [mk] Add windows arm64 build targets 5cef143 (Asmit De)
  • chore(deps): bump golangci/golangci-lint-action from 4.0.0 to 6.0.1 e68e82d (dependabot[bot])
  • Updating to k8s 1.30 d209b9b (Matt Farina)
  • chore(deps): bump github/codeql-action from 3.24.10 to 3.25.4 abd42d4 (dependabot[bot])
  • bump version to v3.15.0 886e626 (Matt Farina)
  • chore(deps): bump actions/setup-go from 5.0.0 to 5.0.1 53177e0 (dependabot[bot])
  • bump oras minor version e111320 (Austin Abro)
  • Update manager_test.go ee41b5f (Jeff van Dam)
  • Remove somewhat incorrect comment. f5d2ac0 (Marcin Owsiany)
  • Add error details when a dependent chart's version cannot be found in a repo ac75eae (Andreas Sommer)
  • Drop unused field. a6863a6 (Marcin Owsiany)
  • Add ability to adopt unmanaged resources a7856c0 (Mario Manno)
  • feat(load.go): add warning on requirements.lock 29ab5c4 (Aaron U'Ren)
  • Remove Helm 2 instructions from CONTRIBUTING.md 7700be5 (George Jenkins)
  • fix typo in load_plugins.go 7fbde33 (yxxhero)
  • Remove circleci configuration b9e6dd4 (Matt Farina)
  • chore(deps): bump github.com/rubenv/sql-migrate from 1.5.2 to 1.6.1 b1ca05a (dependabot[bot])
  • bump version to f4c37e7 (Matt Farina)
  • fix: wrong cli description bf4d6f2 (yyzxw)
  • Added support for hiding notes from install/upgrade output 0c54139 (Miles Wilson)
  • Made urls key more specific 183f01b (Jeff van Dam)
  • Update chart_downloader.go e5fdaa1 (Jeff van Dam)
  • Update chart_downloader.go 13b9c67 (Jeff van Dam)
  • Improve helm dependency update performance 1ce7939 (JvD_Ericsson)
  • Improve helm dependency update performance 8c80f58 (JvD_Ericsson)

v3.15.4: Helm v3.15.4

Compare Source

Helm v3.15.4 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.15.4. The common platform binaries are here:

This release was signed with 672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E and can be found at @​mattfarina keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.16.0 is the next feature release and will be on September 11, 2024.

Changelog

  • Bump the k8s-io group across 1 directory with 7 updates fa9efb0 (dependabot[bot])
  • Bump github.com/docker/docker 36a21b1 (dependabot[bot])

v3.15.3: Helm v3.15.3

Compare Source

Helm v3.15.3 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.15.3. The common platform binaries are here:

This release was signed with 672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E and can be found at @​mattfarina keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.15.4 will contain only bug fixes and be released on August 14, 2024.
  • 3.16.0 is the next feature release and will be on September 11, 2024.

Changelog

  • fix(helm): Use burst limit setting for discovery 3bb50bb (Evan Foster)
  • fixed dependency_update_test.go f440d3b (Suleiman Dibirov)
  • fix(dependencyBuild): prevent race condition in concurrent helm dependency f262d80 (Suleiman Dibirov)
  • fix: respect proxy envvars on helm install/upgrade 7413819 (Sidharth Menon)
  • Merge pull request #​13085 from alex-kattathra-johnson/issue-12961 eb4cf60 (Joe Julian)

v3.15.2: Helm v3.15.2

Compare Source

Helm v3.15.2 is a security (patch) release. Users are strongly recommended to update to this release.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.15.2. The common platform binaries are here:

This release was signed with 672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E and can be found at @​mattfarina keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.15.3 will contain only bug fixes and be released on July 10, 2024.
  • 3.16.0 is the next feature release and will be on September 11, 2024.

Changelog

  • fix: wrong cli description 1a500d5 (yyzxw)
  • fix typo in load_plugins.go 70b225c (yxxhero)
  • fix docs of DeployedAll b3640f1 (Daniel Strobusch)
  • Bump github.com/docker/docker 46e2ba0 (dependabot[bot])
  • bump oras minor version fb311d3 (Austin Abro)
  • feat(load.go): add warning on requirements.lock 23552a7 (Aaron U'Ren)

v3.15.1: Helm v3.15.1

Compare Source

Helm v3.15.1 is a patch release. The Helm application source is the same as 3.15.0. The 3.15.0 builds stated the wrong version when running helm version. Instead of the release number it had the release candidate version which pointed to the same revision of the source.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.15.1. The common platform binaries are here:

This release was signed with 672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E and can be found at @​mattfarina keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.15.2 is the next patch release and will be on June 12, 2024.
  • 3.16.0 is the next feature release and will be on September 11, 2024.

Changelog

  • Fixing build issue where wrong version is used e211f2a (Matt Farina)

v3.15.0: Helm v3.15.0

Compare Source

Helm v3.15.0 is a feature release. Users are encouraged to upgrade for the best experience.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Notable Changes

  • Opt-in to hiding secrets when running dry-run for install and upgrade
  • Added robustness to wait checks

Installation and Upgrading

Download Helm v3.15.0. The common platform binaries are here:


Configuration

📅 Schedule: Branch creation - "on the first day of the month" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

@cluster-stack-bot cluster-stack-bot bot force-pushed the renovate/cso-builder-image branch 2 times, most recently from 4e6fd34 to 04b521b Compare July 28, 2024 11:18
@cluster-stack-bot cluster-stack-bot bot force-pushed the renovate/cso-builder-image branch 2 times, most recently from 4deeab9 to f53ccb9 Compare August 2, 2024 11:17
@cluster-stack-bot cluster-stack-bot bot force-pushed the renovate/cso-builder-image branch 3 times, most recently from 276513c to f4d843c Compare August 21, 2024 11:16
@cluster-stack-bot cluster-stack-bot bot force-pushed the renovate/cso-builder-image branch 2 times, most recently from a8af883 to 907ab33 Compare September 4, 2024 13:12
@cluster-stack-bot cluster-stack-bot bot force-pushed the renovate/cso-builder-image branch 4 times, most recently from b253a55 to c70baa5 Compare September 13, 2024 11:19
| datasource  | package                  | from    | to      |
| ----------- | ------------------------ | ------- | ------- |
| docker      | docker.io/aquasec/trivy  | 0.54.1  | 0.55.2  |
| docker      | docker.io/library/alpine | 3.20.2  | 3.20.3  |
| docker      | docker.io/library/golang | 1.23.0  | 1.23.2  |
| github-tags | golangci/golangci-lint   | v1.60.3 | v1.61.0 |
| github-tags | helm/helm                | v3.14.1 | v3.16.1 |
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants