Skip to content

chore: go 1.26.3 - #392

Open
mathieu-benoit wants to merge 1 commit into
microcks:masterfrom
mathieu-benoit:go-1-26-3
Open

mathieu-benoit wants to merge 1 commit into
microcks:masterfrom
mathieu-benoit:go-1-26-3

Conversation

@mathieu-benoit

@mathieu-benoit mathieu-benoit commented May 16, 2026

Copy link
Copy Markdown
Contributor

chore: go 1.26.3

image

Packages and Vulnerabilities

+ github.com/cespare/xxhash/v2                                   golang  2.3.0
+ github.com/coreos/go-oidc/v3                                   golang  3.18.0                             3.15.0
+ github.com/docker/docker                                       golang  28.5.2+incompatible                28.5.1+incompatible
+ github.com/docker/go-connections                               golang  0.7.0                              0.6.0
+ github.com/fsnotify/fsnotify                                   golang  1.10.1                             1.9.0
+ github.com/go-jose/go-jose/v4                                  golang  4.1.4                              4.0.5
-  └─  HIGH         CVE-2026-34986  [https://scout.docker.com/v/CVE-2026-34986] 7.5  Uncaught Exception
+ github.com/go-logr/logr                                        golang  1.4.3                              1.4.2
+ github.com/microcks/microcks-cli                               golang  0.0.0-20260516125138-a515e667223c  0.0.0-20260513131621-e84940bae318+dirty
+ github.com/spf13/pflag                                         golang  1.0.10                             1.0.9
+ go.opentelemetry.io/auto/sdk                                   golang  1.2.1                              1.1.0
+ go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp  golang  0.68.0                             0.60.0
+ go.opentelemetry.io/otel                                       golang  1.43.0                             1.35.0
+ go.opentelemetry.io/otel/metric                                golang  1.43.0                             1.35.0
+ go.opentelemetry.io/otel/trace                                 golang  1.43.0                             1.35.0
- golang.org/x/crypto                                            golang                                     0.45.0
+ golang.org/x/sys                                               golang  0.44.0                             0.38.0
+ golang.org/x/term                                              golang  0.43.0                             0.37.0
+ stdlib                                                         golang  1.26.3                             1.25.10

When merged, it will automatically close these:

Signed-off-by: Mathieu Benoit <mathieu-benoit@hotmail.fr>
@mathieu-benoit
mathieu-benoit marked this pull request as draft May 16, 2026 12:52
@mathieu-benoit
mathieu-benoit marked this pull request as ready for review May 16, 2026 19:42
@mathieu-benoit

mathieu-benoit commented May 16, 2026

Copy link
Copy Markdown
Contributor Author

Ready for your review @Harsh4902 and team, thanks!

I see that the License Compliance is failing in the CI, it's also flagged here: #254.
It's apparently related to this:
image

But not sure what needs to be done.

@Harsh4902 Harsh4902 added keep-open Explicitily keep open go Pull requests that update go code labels May 21, 2026

This branch was previously deployed

1 inactive deployment
Build a515e667 Deployed May 16, 2026 by mathieu-benoit via build-verify-package #466
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

go Pull requests that update go code keep-open Explicitily keep open

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants