Skip to content

Commit 5ffac8f

Browse files
Merge pull request #292 from katexochen/update-vuln-deps
update vulnerable Go dependencies
2 parents 9101d1f + 7514639 commit 5ffac8f

File tree

2 files changed

+248
-1026
lines changed

2 files changed

+248
-1026
lines changed

go.mod

Lines changed: 65 additions & 62 deletions
Original file line numberDiff line numberDiff line change
@@ -19,14 +19,14 @@ require (
1919
github.com/creack/pty v1.1.18
2020
github.com/cucumber/godog v0.12.4
2121
github.com/docker/distribution v2.8.2+incompatible
22-
github.com/docker/docker v24.0.5+incompatible
22+
github.com/docker/docker v24.0.7+incompatible
2323
github.com/docker/go-connections v0.4.0
2424
github.com/facebookgo/symwalk v0.0.0-20150726040526-42004b9f3222
2525
github.com/fatih/color v1.15.0
2626
github.com/go-chi/chi v1.5.4
2727
github.com/go-chi/cors v1.2.1
2828
github.com/google/uuid v1.6.0
29-
github.com/gorilla/websocket v1.4.2
29+
github.com/gorilla/websocket v1.5.0
3030
github.com/gosuri/uitable v0.0.4
3131
github.com/hashicorp/go-getter v1.7.3
3232
github.com/hashicorp/go-hclog v1.1.0
@@ -45,13 +45,13 @@ require (
4545
github.com/mohae/deepcopy v0.0.0-20170929034955-c48cc78d4826
4646
github.com/muesli/reflow v0.3.0
4747
github.com/muesli/termenv v0.15.2
48-
github.com/opencontainers/image-spec v1.1.0-rc3
48+
github.com/opencontainers/image-spec v1.1.0-rc5
4949
github.com/otiai10/copy v1.10.0
5050
github.com/pkg/errors v0.9.1
5151
github.com/ryanuber/go-glob v1.0.0
5252
github.com/sethvargo/go-retry v0.2.4
5353
github.com/shipyard-run/version-manager v0.0.5
54-
github.com/spf13/cobra v1.7.0
54+
github.com/spf13/cobra v1.8.0
5555
github.com/spf13/pflag v1.0.5
5656
github.com/stretchr/testify v1.9.0
5757
github.com/zclconf/go-cty v1.14.3
@@ -60,10 +60,10 @@ require (
6060
golang.org/x/xerrors v0.0.0-20231012003039-104605ab7028
6161
google.golang.org/grpc v1.62.1
6262
gopkg.in/yaml.v3 v3.0.1
63-
helm.sh/helm/v3 v3.8.2
64-
k8s.io/api v0.23.5
65-
k8s.io/apimachinery v0.23.5
66-
k8s.io/client-go v0.23.5
63+
helm.sh/helm/v3 v3.14.1
64+
k8s.io/api v0.29.0
65+
k8s.io/apimachinery v0.29.0
66+
k8s.io/client-go v0.29.0
6767
)
6868

6969
require (
@@ -72,17 +72,17 @@ require (
7272
cloud.google.com/go/compute/metadata v0.2.3 // indirect
7373
cloud.google.com/go/iam v1.1.6 // indirect
7474
cloud.google.com/go/storage v1.39.1 // indirect
75+
github.com/AdaLogics/go-fuzz-headers v0.0.0-20230811130428-ced1acdcaa24 // indirect
7576
github.com/Azure/go-ansiterm v0.0.0-20210617225240-d185dfc1b5a1 // indirect
76-
github.com/BurntSushi/toml v0.4.1 // indirect
77-
github.com/MakeNowJust/heredoc v0.0.0-20170808103936-bb23615498cd // indirect
77+
github.com/BurntSushi/toml v1.3.2 // indirect
78+
github.com/MakeNowJust/heredoc v1.0.0 // indirect
7879
github.com/Masterminds/goutils v1.1.1 // indirect
79-
github.com/Masterminds/semver/v3 v3.1.1 // indirect
80-
github.com/Masterminds/sprig/v3 v3.2.2 // indirect
81-
github.com/Masterminds/squirrel v1.5.2 // indirect
80+
github.com/Masterminds/semver/v3 v3.2.1 // indirect
81+
github.com/Masterminds/sprig/v3 v3.2.3 // indirect
82+
github.com/Masterminds/squirrel v1.5.4 // indirect
8283
github.com/MichaelMure/go-term-text v0.3.1 // indirect
83-
github.com/Microsoft/go-winio v0.5.2 // indirect
84-
github.com/PuerkitoBio/purell v1.1.1 // indirect
85-
github.com/PuerkitoBio/urlesc v0.0.0-20170810143723-de5bf2ad4578 // indirect
84+
github.com/Microsoft/go-winio v0.6.1 // indirect
85+
github.com/Microsoft/hcsshim v0.11.4 // indirect
8686
github.com/agext/levenshtein v1.2.3 // indirect
8787
github.com/alecthomas/chroma v0.10.0 // indirect
8888
github.com/apparentlymart/go-textseg/v13 v13.0.0 // indirect
@@ -94,35 +94,38 @@ require (
9494
github.com/beorn7/perks v1.0.1 // indirect
9595
github.com/bgentry/go-netrc v0.0.0-20140422174119-9fd32a8b3d3d // indirect
9696
github.com/cespare/xxhash/v2 v2.2.0 // indirect
97-
github.com/chai2010/gettext-go v0.0.0-20160711120539-c6fed771bfd5 // indirect
97+
github.com/chai2010/gettext-go v1.0.2 // indirect
9898
github.com/containerd/console v1.0.4-0.20230313162750-1ae8d489ac81 // indirect
99-
github.com/containerd/containerd v1.6.21 // indirect
99+
github.com/containerd/containerd v1.7.11 // indirect
100+
github.com/containerd/log v0.1.0 // indirect
100101
github.com/cucumber/gherkin-go/v19 v19.0.3 // indirect
101102
github.com/cucumber/messages-go/v16 v16.0.1 // indirect
102-
github.com/cyphar/filepath-securejoin v0.2.3 // indirect
103+
github.com/cyphar/filepath-securejoin v0.2.4 // indirect
103104
github.com/davecgh/go-spew v1.1.1 // indirect
104105
github.com/disintegration/imaging v1.6.2 // indirect
105106
github.com/dlclark/regexp2 v1.4.0 // indirect
106-
github.com/docker/cli v20.10.11+incompatible // indirect
107-
github.com/docker/docker-credential-helpers v0.6.4 // indirect
107+
github.com/docker/cli v24.0.6+incompatible // indirect
108+
github.com/docker/docker-credential-helpers v0.7.0 // indirect
108109
github.com/docker/go-metrics v0.0.1 // indirect
109110
github.com/docker/go-units v0.5.0 // indirect
110111
github.com/eliukblau/pixterm/pkg/ansimage v0.0.0-20191210081756-9fb6cf8c2f75 // indirect
111-
github.com/evanphx/json-patch v4.12.0+incompatible // indirect
112+
github.com/emicklei/go-restful/v3 v3.11.0 // indirect
113+
github.com/evanphx/json-patch v5.7.0+incompatible // indirect
112114
github.com/exponent-io/jsonpath v0.0.0-20151013193312-d6023ce2651d // indirect
113115
github.com/facebookgo/ensure v0.0.0-20200202191622-63f1cf65ac4c // indirect
114116
github.com/facebookgo/stack v0.0.0-20160209184415-751773369052 // indirect
115117
github.com/facebookgo/subset v0.0.0-20200203212716-c811ad88dec4 // indirect
116118
github.com/facebookgo/testname v0.0.0-20150612200628-5443337c3a12 // indirect
117119
github.com/felixge/httpsnoop v1.0.4 // indirect
118120
github.com/flytam/filenamify v1.2.0 // indirect
119-
github.com/go-errors/errors v1.0.1 // indirect
121+
github.com/go-errors/errors v1.4.2 // indirect
122+
github.com/go-gorp/gorp/v3 v3.1.0 // indirect
120123
github.com/go-logfmt/logfmt v0.6.0 // indirect
121124
github.com/go-logr/logr v1.4.1 // indirect
122125
github.com/go-logr/stdr v1.2.2 // indirect
123-
github.com/go-openapi/jsonpointer v0.19.5 // indirect
124-
github.com/go-openapi/jsonreference v0.19.5 // indirect
125-
github.com/go-openapi/swag v0.19.14 // indirect
126+
github.com/go-openapi/jsonpointer v0.19.6 // indirect
127+
github.com/go-openapi/jsonreference v0.20.2 // indirect
128+
github.com/go-openapi/swag v0.22.3 // indirect
126129
github.com/go-playground/locales v0.13.0 // indirect
127130
github.com/go-playground/universal-translator v0.17.0 // indirect
128131
github.com/go-playground/validator/v10 v10.3.0 // indirect
@@ -131,8 +134,9 @@ require (
131134
github.com/gogo/protobuf v1.3.2 // indirect
132135
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
133136
github.com/golang/protobuf v1.5.4 // indirect
134-
github.com/gomarkdown/markdown v0.0.0-20191123064959-2c17d62f5098 // indirect
137+
github.com/gomarkdown/markdown v0.0.0-20230922105210-14b16010c2ee // indirect
135138
github.com/google/btree v1.0.1 // indirect
139+
github.com/google/gnostic-models v0.6.8 // indirect
136140
github.com/google/go-cmp v0.6.0 // indirect
137141
github.com/google/go-github v17.0.0+incompatible // indirect
138142
github.com/google/go-querystring v1.0.0 // indirect
@@ -141,7 +145,6 @@ require (
141145
github.com/google/shlex v0.0.0-20191202100458-e7afc7fbc510 // indirect
142146
github.com/googleapis/enterprise-certificate-proxy v0.3.2 // indirect
143147
github.com/googleapis/gax-go/v2 v2.12.2 // indirect
144-
github.com/googleapis/gnostic v0.5.5 // indirect
145148
github.com/gorilla/css v1.0.0 // indirect
146149
github.com/gorilla/mux v1.8.0 // indirect
147150
github.com/gregjones/httpcache v0.0.0-20180305231024-9cad4c3443a7 // indirect
@@ -150,25 +153,26 @@ require (
150153
github.com/hashicorp/go-cleanhttp v0.5.2 // indirect
151154
github.com/hashicorp/go-immutable-radix v1.3.1 // indirect
152155
github.com/hashicorp/go-memdb v1.3.2 // indirect
156+
github.com/hashicorp/go-multierror v1.1.1 // indirect
153157
github.com/hashicorp/go-safetemp v1.0.0 // indirect
154158
github.com/hashicorp/go-version v1.6.0 // indirect
155159
github.com/hashicorp/golang-lru v0.5.4 // indirect
156-
github.com/huandu/xstrings v1.3.2 // indirect
157-
github.com/imdario/mergo v0.3.12 // indirect
160+
github.com/huandu/xstrings v1.4.0 // indirect
161+
github.com/imdario/mergo v0.3.13 // indirect
158162
github.com/inconshreveable/mousetrap v1.1.0 // indirect
159163
github.com/jmespath/go-jmespath v0.4.0 // indirect
160-
github.com/jmoiron/sqlx v1.3.4 // indirect
164+
github.com/jmoiron/sqlx v1.3.5 // indirect
161165
github.com/josharian/intern v1.0.0 // indirect
162166
github.com/json-iterator/go v1.1.12 // indirect
163167
github.com/klauspost/compress v1.17.7 // indirect
164168
github.com/kyokomi/emoji/v2 v2.2.8 // indirect
165169
github.com/lann/builder v0.0.0-20180802200727-47ae307949d0 // indirect
166170
github.com/lann/ps v0.0.0-20150810152359-62de8c46ede0 // indirect
167171
github.com/leodido/go-urn v1.2.0 // indirect
168-
github.com/lib/pq v1.10.4 // indirect
172+
github.com/lib/pq v1.10.9 // indirect
169173
github.com/liggitt/tabwriter v0.0.0-20181228230101-89fcab3d43de // indirect
170174
github.com/lucasb-eyer/go-colorful v1.2.0 // indirect
171-
github.com/mailru/easyjson v0.7.6 // indirect
175+
github.com/mailru/easyjson v0.7.7 // indirect
172176
github.com/mattn/go-colorable v0.1.13 // indirect
173177
github.com/mattn/go-localereader v0.0.1 // indirect
174178
github.com/mattn/go-runewidth v0.0.14 // indirect
@@ -182,34 +186,35 @@ require (
182186
github.com/mitchellh/reflectwalk v1.0.2 // indirect
183187
github.com/moby/locker v1.0.1 // indirect
184188
github.com/moby/spdystream v0.2.0 // indirect
185-
github.com/moby/sys/mountinfo v0.6.2 // indirect
186189
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
187190
github.com/modern-go/reflect2 v1.0.2 // indirect
188191
github.com/monochromegane/go-gitignore v0.0.0-20200626010858-205db1a8cc00 // indirect
189192
github.com/morikuni/aec v1.0.0 // indirect
190193
github.com/muesli/ansi v0.0.0-20211018074035-2e021307bc4b // indirect
191194
github.com/muesli/cancelreader v0.2.2 // indirect
195+
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
196+
github.com/mxk/go-flowrate v0.0.0-20140419014527-cca7078d478f // indirect
192197
github.com/olekukonko/tablewriter v0.0.5 // indirect
193198
github.com/opencontainers/go-digest v1.0.0 // indirect
194199
github.com/peterbourgon/diskv v2.0.1+incompatible // indirect
195200
github.com/pmezard/go-difflib v1.0.0 // indirect
196-
github.com/prometheus/client_golang v1.14.0 // indirect
197-
github.com/prometheus/client_model v0.3.0 // indirect
198-
github.com/prometheus/common v0.37.0 // indirect
199-
github.com/prometheus/procfs v0.8.0 // indirect
201+
github.com/prometheus/client_golang v1.16.0 // indirect
202+
github.com/prometheus/client_model v0.4.0 // indirect
203+
github.com/prometheus/common v0.44.0 // indirect
204+
github.com/prometheus/procfs v0.10.1 // indirect
200205
github.com/rivo/uniseg v0.2.0 // indirect
201-
github.com/rubenv/sql-migrate v0.0.0-20210614095031-55d5740dbbcc // indirect
202-
github.com/russross/blackfriday v1.6.0 // indirect
203-
github.com/shopspring/decimal v1.2.0 // indirect
206+
github.com/rubenv/sql-migrate v1.5.2 // indirect
207+
github.com/russross/blackfriday/v2 v2.1.0 // indirect
208+
github.com/shopspring/decimal v1.3.1 // indirect
204209
github.com/silas/dag v0.0.0-20220518035006-a7e85ada93c5 // indirect
205210
github.com/sirupsen/logrus v1.9.3 // indirect
206-
github.com/spf13/cast v1.4.1 // indirect
211+
github.com/spf13/cast v1.5.0 // indirect
207212
github.com/stretchr/objx v0.5.2 // indirect
208213
github.com/ulikunitz/xz v0.5.11 // indirect
209-
github.com/xeipuuv/gojsonpointer v0.0.0-20180127040702-4e3ac2762d5f // indirect
214+
github.com/xeipuuv/gojsonpointer v0.0.0-20190905194746-02993c407bfb // indirect
210215
github.com/xeipuuv/gojsonreference v0.0.0-20180127040603-bd5ef7bd5415 // indirect
211216
github.com/xeipuuv/gojsonschema v1.2.0 // indirect
212-
github.com/xlab/treeprint v0.0.0-20181112141820-a009c3971eca // indirect
217+
github.com/xlab/treeprint v1.2.0 // indirect
213218
github.com/yuin/goldmark v1.5.2 // indirect
214219
github.com/yuin/goldmark-emoji v1.0.1 // indirect
215220
go.opencensus.io v0.24.0 // indirect
@@ -218,9 +223,9 @@ require (
218223
go.opentelemetry.io/otel v1.24.0 // indirect
219224
go.opentelemetry.io/otel/metric v1.24.0 // indirect
220225
go.opentelemetry.io/otel/trace v1.24.0 // indirect
221-
go.starlark.net v0.0.0-20200306205701-8dd3e2ee1dd5 // indirect
222-
golang.org/x/image v0.0.0-20191206065243-da761ea9ff43 // indirect
223-
golang.org/x/net v0.22.0 // indirect
226+
go.starlark.net v0.0.0-20230525235612-a134d8f9ddca // indirect
227+
golang.org/x/image v0.10.0 // indirect
228+
golang.org/x/net v0.23.0 // indirect
224229
golang.org/x/oauth2 v0.18.0 // indirect
225230
golang.org/x/sync v0.6.0 // indirect
226231
golang.org/x/sys v0.18.0 // indirect
@@ -234,23 +239,21 @@ require (
234239
google.golang.org/genproto/googleapis/api v0.0.0-20240311173647-c811ad7063a7 // indirect
235240
google.golang.org/genproto/googleapis/rpc v0.0.0-20240311173647-c811ad7063a7 // indirect
236241
google.golang.org/protobuf v1.33.0 // indirect
237-
gopkg.in/gorp.v1 v1.7.2 // indirect
238242
gopkg.in/inf.v0 v0.9.1 // indirect
239243
gopkg.in/yaml.v2 v2.4.0 // indirect
240-
gotest.tools/v3 v3.4.0 // indirect
241-
k8s.io/apiextensions-apiserver v0.23.5 // indirect
242-
k8s.io/apiserver v0.23.5 // indirect
243-
k8s.io/cli-runtime v0.23.5 // indirect
244-
k8s.io/component-base v0.23.5 // indirect
245-
k8s.io/klog/v2 v2.80.1 // indirect
246-
k8s.io/kube-openapi v0.0.0-20211115234752-e816edb12b65 // indirect
247-
k8s.io/kubectl v0.23.5 // indirect
248-
k8s.io/utils v0.0.0-20211116205334-6203023598ed // indirect
249-
oras.land/oras-go v1.1.1 // indirect
250-
sigs.k8s.io/json v0.0.0-20211020170558-c049b76a60c6 // indirect
251-
sigs.k8s.io/kustomize/api v0.10.1 // indirect
252-
sigs.k8s.io/kustomize/kyaml v0.13.0 // indirect
253-
sigs.k8s.io/structured-merge-diff/v4 v4.2.1 // indirect
244+
k8s.io/apiextensions-apiserver v0.29.0 // indirect
245+
k8s.io/apiserver v0.29.0 // indirect
246+
k8s.io/cli-runtime v0.29.0 // indirect
247+
k8s.io/component-base v0.29.0 // indirect
248+
k8s.io/klog/v2 v2.110.1 // indirect
249+
k8s.io/kube-openapi v0.0.0-20231010175941-2dd684a91f00 // indirect
250+
k8s.io/kubectl v0.29.0 // indirect
251+
k8s.io/utils v0.0.0-20230726121419-3b25d923346b // indirect
252+
oras.land/oras-go v1.2.4 // indirect
253+
sigs.k8s.io/json v0.0.0-20221116044647-bc3834ca7abd // indirect
254+
sigs.k8s.io/kustomize/api v0.13.5-0.20230601165947-6ce0bf390ce3 // indirect
255+
sigs.k8s.io/kustomize/kyaml v0.14.3-0.20230601165947-6ce0bf390ce3 // indirect
256+
sigs.k8s.io/structured-merge-diff/v4 v4.4.1 // indirect
254257
sigs.k8s.io/yaml v1.3.0 // indirect
255258
)
256259

0 commit comments

Comments
 (0)