Skip to content

chore(deps): update non-rpm dependencies - #241

Merged
slimreaper35 merged 2 commits into
mainfrom
konflux/mintmaker/main/non-rpm-dependencies
Sep 8, 2026
Merged

chore(deps): update non-rpm dependencies#241
slimreaper35 merged 2 commits into
mainfrom
konflux/mintmaker/main/non-rpm-dependencies

Conversation

@red-hat-konflux

@red-hat-konflux red-hat-konflux Bot commented Aug 1, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence Type Update
awscli (source, changelog) ==1.45.46==1.46.1 age confidence minor
deps/go-submodules/kubernetes v1.36.2v1.37.0 age confidence minor
github.com/anchore/syft v1.46.0v1.51.1 age confidence indirect minor
github.com/mikefarah/yq/v4 v4.53.3v4.53.6 age confidence indirect patch
github.com/open-policy-agent/conftest v0.68.2v0.69.0 age confidence indirect minor
github.com/sigstore/cosign/v3 v3.1.1v3.1.3 age confidence indirect patch
github.com/tektoncd/cli v0.44.2v0.46.0 age confidence indirect minor
go.podman.io/buildah v1.44.0v1.45.0 age confidence indirect minor
huggingface-hub ==1.23.0==1.29.0 age confidence minor
oras.land/oras v1.3.3v1.3.4 age confidence indirect patch

Release Notes

aws/aws-cli (awscli)

v1.46.1

Compare Source

======

  • enhancement:CodeArtifact: Updated npm login to write configuration directly to .npmrc, consistent with how other package manager integrations handle their config files.
  • enhancement:SSM SessionManager: Add warning message for outdated SessionManagerPlugin version

v1.46.0

Compare Source

======

  • feature:dependencies: Vendor botocore and s3transfer

v1.45.64

Compare Source

=======

  • api-change:connect: Amazon Connect Customer now supports up to 50 attachments per email, increased from the previous limit of 10. The individual maximum attachment size limit of 20 MB and the total email size limit of 25 MB still hold true.
  • api-change:dsql: UpdateCluster now checks the RemovePeerCluster permission on the specific cluster being removed, not a wildcard and docs now clarify how to set kmsEncryptionKey so the cluster uses the AWS-owned key.
  • api-change:dynamodb: Vector indexes are a type of index in Amazon DynamoDB that enable similarity search on vector embedding stored in your table items. Vector indexes use approximate nearest neighbor search to find items whose vectors are most similar to a query vector that you provide.
  • api-change:ec2: Amazon EC2 now supports Application Status Checks, a new status check that monitors your application's health through configurable HTTP(S) paths and ports, so you can detect and automatically respond to application-level impairments.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:iam: Updating endpoint generation logic
  • api-change:inspector2: Adding Azure SBOM export capability.
  • api-change:organizations: Improved accuracy of CloudTrail event documentation for AWS Organizations membership operations.
  • api-change:partnercentral-selling: Partners can now create leads with only 5 required fields and free-text values for all other fields, reducing import friction. Engagement invitations now include enrichment data (propensity scores, lead readiness) directly in the response.
  • api-change:sso-admin: AWS IAM Identity Center now lets you create organization-level instances without enabling multi-account permissions. You can enable multi-account permissions during instance creation or later via console or API, which then provisions the necessary service-linked roles.
  • api-change:workspaces: Added ClientExperiencePolicy to ClientProperties object for ModifyClientProperties and DescribeClientProperties APIs.

v1.45.63

Compare Source

=======

  • api-change:directconnect: Added route visibility support for AWS Direct Connect, allowing customers to call ListVirtualInterfaceRoutes to view the BGP routes including AS path and BGP communities advertised over their virtual interfaces.
  • api-change:eks-auth: Added eksNodeName, instanceId, and zone optional parameters to the AssumeRoleForPodIdentity API.
  • api-change:mediaconvert: Updates Kantar server URL validation to accept Fifty5Blue domain. Adds support for output to S3 Glacier Instant Retrieval.
  • api-change:network-firewall: This launch allows customers to use Network Firewall as an explicit Proxy and protect their workloads against threat of data exfiltration.
  • api-change:observabilityadmin: Launch CMK support for Telemetry Enablement Organization and Account Rules.
  • api-change:timestream-influxdb: This release adds support for customer-managed backup restore, and encryption of new DbInstances and DbClusters using customer-managed KMS keys.
  • api-change:wafv2: Updated descriptions for number of PreParseTextTransformations allowed per rule statement

v1.45.62

Compare Source

=======

  • api-change:amp: Amazon Managed Service for Prometheus adds support for an Amazon OpenSearch Service exporter for managed collectors.
  • api-change:bedrock-runtime: Added support for mid-conversation tool changes in the Amazon Bedrock Converse and ConverseStream APIs
  • api-change:billing: Adds GetEnterpriseSupportChargeSummary, GetEnterpriseSupportContractDetails, and ListEnterpriseSupportLinkedAccountCharges. These APIs provide first-time programmatic access to billing data for Enterprise Support usage previously only available upon request through AWS Concierge or Support.
  • api-change:cloudformation: Adding enum for sensitive property to DriftIgnoredReason
  • api-change:connectcampaignsv2: Launching feature for abandonment rate pacing control for outbound campaigns.
  • api-change:datazone: Adding support for enhanced Git experience in Sagemaker Unified Studio.
  • api-change:elementalinference: AWS Elemental Inference now supports graphic composition on cropped video outputs, enabling branded graphics and other visual elements to be overlaid as part of the inference workflow.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:logs: Amazon CloudWatch Logs now lets you create and update lookup tables directly from CloudWatch Logs query results by passing a queryId, and configure a lookup table as a scheduled query destination so it refreshes automatically with the latest query results on each run.
  • api-change:marketplace-catalog: This release enhances the ListEntities API to support TargetAgreementId, TargetAgreementIntent, and CreatedBySource filters for the Offer entity type.
  • api-change:network-firewall: Doc Updates for Container Attributes
  • api-change:outposts: Adds the "EKS" value to the AWSServiceName enum and marks the Address field as sensitive.
  • api-change:quicksight: Adding TopicV2 management APIs, adding possibility to use Topics in Analysis
  • api-change:rds: Adds StorageOperationStatus and StorageOperationPercentProgress to DescribeDBInstances, letting you monitor RDS storage initialization and optimization progress.
  • api-change:resiliencehubv2: Adding support for new testing capability in AWS Resilience Hub.

v1.45.61

Compare Source

=======

  • api-change:bcm-pricing-calculator: Removing Smithy RPC v2 CBOR support that was added in previous SDK release.
  • api-change:bcm-recommended-actions: Removing Smithy RPC v2 CBOR support that was added in previous SDK release.

v1.45.60

Compare Source

=======

  • api-change:bedrock-agentcore-control: Adds support for configuring models through the OpenResponses API for custom evaluators. CreateEvaluator and UpdateEvaluator now accept an OpenResponses model configuration for LLM-as-a-Judge evaluations.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:iam: Improved IAM Policy Simulator accuracy. Simulator now evaluates SCP conditions and resource scoping, returns explicitDeny for explicit SCP denials, and reports accurate cross-account decisions.
  • api-change:kafka: Amazon MSK Express brokers now support streaming tables for Apache Iceberg, continuously materializing Apache Kafka topics as Iceberg tables in Amazon S3 Tables. Express brokers also now support data delivery to Amazon S3 general purpose buckets.
  • api-change:lambda: Add Python3.15 (python3.15) and NodeJs 26 (nodejs26.x) support to AWS Lambda
  • api-change:network-firewall: Adds UPDATING field to Container Association Status
  • api-change:pricing-plan-manager: Adds support for Public PricingPlanManager SDK
  • api-change:sagemaker: Adds support for g7 family instance types for SageMaker Studio JupyterLab and CodeEditor apps for IAD (us-east-1), PDX (us-west-2), CMH (us-east-2).
  • api-change:securityagent: Adds support for providing a branch override when configured integrated repositories

v1.45.59

Compare Source

=======

  • api-change:dms: Updated documentation for various DMS Schema Conversion operations
  • api-change:ec2: This release adds support for policy-based routing on AWS Transit Gateway, enabling you to route traffic based on 5-tuple matching (source IP, destination IP, source port, destination port, and protocol) using new policy table entry APIs that direct matching traffic to a target route table.
  • api-change:gameliftstreams: Adds ListApplicationShaderCaches API to retrieve shader cache metadata for applications and adds stream URLs, which give end users temporary, unauthenticated access to a stream session in their browser. Includes CreateStreamUrl, GetStreamUrl, ListStreamUrls, and RevokeStreamUrl operations.
  • api-change:glue: Adding filtering, partitioning, and VPC support to AWS Glue REST API connector
  • api-change:iotsitewise: We have released a new set of APIs in support of a major new feature within AWS IoT SiteWise called Scenario Discover. Please see user guide about the feature and the API guide in public documentation for new APIs.
  • api-change:wafv2: AWS WAF now supports pre-parse text transformations, letting you normalize raw query strings before parsing, available on rule statements that use SingleQueryArgument or AllQueryArguments as the FieldToMatch. AWS WAF also added 10 new text transformations, including ModSecurity v3 parity options.

v1.45.58

Compare Source

=======

  • api-change:bedrock-agentcore-control: AgentCore Identity now supports Private Key JWT client authentication for OAuth 2.0 credential providers. Agents can authenticate to identity provider token endpoints with a JWT client assertion signed by a customer-managed AWS KMS asymmetric key, eliminating the need for client secrets.
  • api-change:connect: Documentation updates for SearchRules, AssociateRoutingProfileQueues, CreateRoutingProfile, AssociateContactWithUser CreateTaskTemplate, and UpdateTaskTemplate
  • api-change:datasync: Adds Enhanced mode support for EFS and FSx Lustre locations without an agent, and for HDFS (TDE), Azure Blob, and object storage locations with an agent. HDFS Enhanced mode supports multiple NameNodes for High Availability. Enhanced mode agents can now be deployed on Microsoft Hyper-V.
  • api-change:rolesanywhere: Increases certificate string length for trust anchor source data to support new adjustable trust anchor limits.
  • api-change:trustedadvisor: Adds ListRecommendationsForResource API and four CheckSummary fields (resourceArnQueryable, awsResourceTypes, checkGranularity, recommendationId) to retrieve recommendations for a given resource ARN.

v1.45.57

Compare Source

=======

  • api-change:account: This release adds support for the GetPrimaryEmailUpdateStatus API operation, which allows customers to retrieve the current status of a primary email address update request for an AWS account. The operation returns status information including whether the update is pending, completed, or failed.
  • api-change:bcm-data-exports: With this release, customers can configure their data exports to deliver CSV reports in ZIP compressed format.
  • api-change:cleanrooms: This release adds support for the CR.8X worker type for SQL (32 vCPU)
  • api-change:cleanroomsml: This release adds support for the CR.8X worker type for SQL (32 vCPU)
  • api-change:emr-containers: With this launch, you can now set concurrent job limits on a virtual cluster, giving you fine-grained control over how many job runs execute at once and how many can wait in queue.
  • api-change:glue: Adds BatchGetDataQualityRulesetEvaluationRun API to retrieve multiple runs in one call, ObservationScope and ObservationMode parameters for anomaly detection, writing evaluation results to Data Catalog tables, and custom log group paths for recommendation runs.
  • api-change:partnercentral-account: Adds optional headquarters location to StartProfileUpdateTask, letting partners record their headquarters as an ISO 3166 country and subdivision code on their profile. When headquarters is provided, both the country and subdivision codes are required.
  • api-change:quicksight: Added new Governance fields to Custom Permissions API to support Deny By Default functionality.
  • api-change:sagemaker: This release adds LoRA adapters, training plans, and new instance types to SageMaker inference optimization. CreateAIRecommendationJob accepts optional AdapterSource and CreateOptimizationJob accepts optional TrainingPlanArns and the ml.g7e and ml.p6-b200 families.
  • api-change:securityagent: AWS Security Agent adds a new task hours field that reflects the active work done for a task.

v1.45.56

Compare Source

=======

  • api-change:application-insights: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol.
  • api-change:artifact: Added the PutComplianceInquiryFeedback API, enabling customers to submit feedback on compliance inquiry responses. Customers can rate responses as helpful or not helpful and provide optional reason codes and comments.
  • api-change:cognito-idp: Amazon Cognito user pools now support the AdminGetUserAuthFactors operation, which lets administrators retrieve the configured authentication factors (such as password, SMS, email, and TOTP) available for a specific user in a user pool.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:neptune-graph: Update validations for Tag Keys and KMS Key ARNs.
  • api-change:odb: Documentation-only update to clarify the operation-specific valid values for the externalIdType field.
  • api-change:rtbfabric: The deprecated inboundLinksCount field has been removed from the GetResponderGateway API response. Customers who previously relied on this field should use linksRequestedCount instead.

v1.45.55

Compare Source

=======

  • api-change:appstream: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol.
  • api-change:backup-gateway: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bcm-pricing-calculator: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bcm-recommended-actions: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bedrock-agentcore: Adds support for the Bring Your Own Storage(BYOS) feature in AgentCore Browser and Code Interpreter. Enables mounting S3Files and EFS File Systems via Access points.
  • api-change:bedrock-agentcore-control: Adds support for the Bring Your Own Storage(BYOS) feature in AgentCore Browser and Code Interpreter. Enables mounting S3Files and EFS File Systems via Access points.
  • api-change:datazone: Adds support for notebook sync with S3 ipynb files
  • api-change:gameliftstreams: GameLift Streams now supports configuring a custom aspect ratio per stream session to accommodate different player devices. Supported aspect ratios include landscape, portrait, and square - delivering a full-screen experience without letterboxing or cropping.
  • api-change:kendra-ranking: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:mediapackagev2: This release adds support for non-epoch-locked CMAF ingest in MediaPackageV2 channels.
  • api-change:quicksight: Added new capabilities to custom permissions profiles to control access to Amazon Quick through the browser extension and Microsoft Word, Outlook, Excel, and PowerPoint add-ins.
  • api-change:redshift-data: This release include long polling provids a new parameter wait-time-seconds to 5 API operations, new API ListSessions, and a new parameter execution-mode to BatchExecuteStatement
  • api-change:sagemaker: Release support for c6a, m6a, m6g, m7g, m8g instance types for SageMaker HyperPod
  • api-change:workspaces-instances: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.

v1.45.54

Compare Source

=======

  • api-change:amp: Add CloudWatch dataset destinations for Amazon Managed Service for Prometheus collectors.
  • api-change:arc-region-switch: Adds support for a client token in StartPlanExecution to make plan execution requests idempotent for safe retries.
  • api-change:cloudwatch: Adds documented value constraints for CloudWatch Log Alarm scheduled query configuration fields, and makes LogGroupIdentifiers optional for log alarms.
  • api-change:elbv2: This adds CLI examples for the IpAddressType field on SourceIpConfig, enabling Network Load Balancer listener rules to match traffic based on whether the source IP is IPv4 or IPv6.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:guardduty: Amazon GuardDuty now returns filter lifecycle metadata in GetFilter responses. The response includes createdAt and updatedAt timestamps and a version number that increments on each update, giving you visibility into when a filter was created and last modified.
  • api-change:observabilityadmin: Enablement for ALB and Bedrock Knowledge Base logs via Observability Admin Telemetry Rule for account and organization level
  • api-change:partnercentral-account: Adds Qualifications Association APIs that enable partners to associate a subsidiary account's qualifications with a primary account. Once associated, qualifications are shared across all connected accounts and scorecards are consolidated. Partners can start and track association and disassociation.
  • api-change:pcs: AWS PCS Node Lifecycle Actions provides a structured way to run custom scripts at defined points in a compute node's lifecycle directly through the AWS PCS compute node group API.
  • api-change:sesv2: Launching DEED and MREP in US GOV

v1.45.53

Compare Source

=======

  • api-change:emr-containers: Added support for the DeleteSecurityConfiguration API, which allows customers to delete security configurations in Amazon EMR on EKS. Also added authenticationConfiguration in securityConfigurationdata structure.
  • api-change:entityresolution: Add support for real time matching with AWS Entity Resolution matching workflows with advanced rule sets.
  • api-change:inspector2: GA date - July 21st 2026, remove Tags field from ListCodeSecurityIntegration and ListCodeSecurityScanConfiguration.
  • api-change:invoicing: Added the SendProcurementPortalValidation and VerifyProcurementPortalValidation APIs. You can use the AWS SDKs to self-service activate your Procurement Portal Preferences created on the Billing Preferences page with a one-time-passcode (OTP) delivered to your portal.
  • api-change:redshift: Amazon Redshift - Added support for managing Query Editor V2 IAM Identity Center applications via new CreateQev2IdcApplication, DescribeQev2IdcApplications, ModifyQev2IdcApplication, and DeleteQev2IdcApplication API operations.
  • api-change:redshift-data: update the workgroupArn to include EUSC partition, tests in THF Gamma and Prod no issue
  • api-change:ssm: Added a WarningMessage field to Automation along with corresponding public documentation.
  • api-change:timestream-influxdb: This release adds support for custom plugins in Amazon Timestream for InfluxDB. InfluxDB 3 Core and Enterprise DB parameter groups now accept a plugin repository URL and optional AWS Secrets Manager secret ARN, so the Processing Engine loads your Python plugins from a public or private repository.
  • bugfix:Shorthand: Fix an issue where shorthand syntax error messages printed the literal text {self._error_location()} instead of the input expression annotated with a caret pointing at the location of the syntax error.

v1.45.52

Compare Source

=======

  • api-change:bedrock-agentcore: Add W3C trace context headers (traceparent, tracestate, baggage) and X-Amzn-Trace-Id to InvokeHarness request for end-to-end observability propagation. Add toolResultMetadata to the streaming content block delta for MCP tool result meta delivery without oversized SSE frames.
  • api-change:bedrock-agentcore-control: This release adds support for specifying a connector version on Gateway targets to pin the connector's tool schema. It also introduces web-search connector version 1.2.0, which adds agent-side domain filtering, published date range filtering, and admin-side domain allowlisting.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:inspector2: Adds Windows path support for deep inspection. Fixes tag propagation for connector CloudFormation stack operations.
  • api-change:mediatailor: This change adds api support for configuring ad decision server timeouts and concurrency fields on MediaTailor playback configurations
  • api-change:meteringmarketplace: For new SaaS product integrations, CustomerIdentifier is not populated in ResolveCustomer responses and is not supported in BatchMeterUsage. Use CustomerAWSAccountId and LicenseArn instead.
  • api-change:organizations: Updated InvalidInputException error documentation to clarify that the service validates free-text field values against common cross-site scripting (XSS) patterns.
  • api-change:quicksight: Adds support for custom permissions for Triggers, allowing administrators to control user access to Schedule, Inbound Email and Quick Event triggers.
  • api-change:sesv2: Amazon SES introduces three new Pricing Plans (Essentials, Pro, Enterprise), which bundle SES features under one pricing umbrella. The new PutAccountPricingAttributes API lets the user set the account's plan, while current plan retrievalif done through the new PricingAttributes field on GetAccount.

v1.45.51

Compare Source

=======

  • api-change:cognito-idp: Amazon Cognito user pools now support sending SMS via AWS End User Messaging. A new EumsSms object in SmsConfigurationType lets you deliver MFA and verification texts through AWS End User Messaging, alongside the existing Amazon SNS option.
  • api-change:gameliftstreams: Amazon GameLift Streams now supports assigning an IAM role to a stream session, enabling your application to securely access resources in your AWS account, such as Amazon S3 buckets and DynamoDB tables.
  • api-change:kinesisanalyticsv2: Support for Flink 2.3 in Managed Service for Apache Flink
  • api-change:odb: Adds support for sourcing Autonomous Database admin and wallet passwords from customer-managed AWS Secrets Manager secrets, including password source configuration and summaries, and enabling or disabling the OCI IAM service role for Secrets Manager integration via InitializeService.
  • api-change:rds: Adds the AssociatedRoles parameter to CreateDBCluster, RestoreDBClusterFromSnapshot, RestoreDBClusterToPointInTime, and RestoreDBClusterFromS3, letting customers associate IAM roles with an Aurora DB cluster at create or restore time instead of calling AddRoleToDBCluster afterward.

v1.45.50

Compare Source

=======

  • api-change:chime-sdk-voice: Marked CreateProxySession, DeleteProxySession, GetProxySession, ListProxySessions, UpdateProxySession, PutVoiceConnectorProxy, DeleteVoiceConnectorProxy, and GetVoiceConnectorProxy as deprecated.
  • api-change:emr: Amazon EMR updates the Session object returned by GetSession API
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:omics: Adds support for returning the task UUID (universally unique identifier) in GetRunTask and ListRunTasks responses
  • api-change:redshift: Amazon Redshift - Added support for rg.large and rg.12xlarge node types in CreateCluster, ModifyCluster, and ResizeCluster API operations.
  • api-change:s3: Documentation update for removing the 30 day minimum restriction for transition to Standard-IA or OneZone-IA storage classes
  • api-change:sagemaker: Release support for g7 instance type for SageMaker inference endpoints.
  • api-change:sustainability: Adds support for retrieving estimated water allocation data.

v1.45.49

Compare Source

=======

  • api-change:bedrock-agentcore-control: Fix HarnessEndpointArn pattern to match the actual service-emitted ARN format ('harness-endpoint' instead of 'endpoint'). Add additionalParams to Gemini model configuration for passing provider-specific parameters through to the model unchanged.
  • api-change:elbv2: This release adds support for the IpAddressType field on SourceIpConfig, enabling Network Load Balancer listener rules to match traffic based on whether the source IP is IPv4 or IPv6.
  • api-change:healthlake: AWS HealthLake now offers data transformation in Preview to convert CSV and C-CDA data to FHIR R4. Customers can maintain reusable mapping profiles, run sync or async jobs with provenance tracking and drift detection, and use an AI agent to build and edit mapping logic from natural language.
  • api-change:payment-cryptography-data: Adds support for UnionPay session key derivation to the GenerateAuthRequestCryptogram, VerifyAuthRequestCryptogram, GenerateMac, and VerifyMac APIs.
  • api-change:rds: Adds support for modifying EngineLifecycleSupport on DB instances and DB clusters through ModifyDBInstance and ModifyDBCluster.

v1.45.48

Compare Source

=======

  • api-change:connect: This release adds SearchRules API which can be used to search for rules within an Amazon Connect instance.
  • api-change:drs: Fast recovery of EC2 based drs workloads by skipping the conversion step
  • api-change:emr-containers: Introduced 5 new fields across 3 APIs as part of Spark Connect server launch for EMR on EKS. The fields added are sessionIdleTimeoutInMinutes, sessionEnabled, endpointToken, authProxyUrl and encryptionKeyArn.
  • api-change:endpoint-rules: Update endpoint-rules command to latest version
  • api-change:lambda: AWS Lambda now returns a new DependencyError value in StateReasonCode and LastUpdateStatusReasonCode to provide more actionable information when a function reaches a failed state due to an error from an upstream dependency or service.
  • api-change:mq: This release adds storage size parameter for Amazon MQ for RabbitMQ cluster deployment broker on engine version RabbitMQ 4.2. You can now set a configurable storage size within a range of sizes dependent on broker instance size.
  • api-change:securityhub: AWS Security Hub now provides an AI inventory, giving central security teams a continuously updated, organization-wide view of AI assets and their security posture
  • api-change:servicediscovery: Fixed Cloud Map endpoint resolution to correctly route to the dualstack endpoint when dualstack is enabled.
  • api-change:ssm: Update AWS Systems Manager Automation Targets to be correct max value.

v1.45.47

Compare Source

=======

  • api-change:es: Adds support for the EngineMode and UseCase parameters on Amazon Elasticsearch Service domains, enabling GENERAL or OPTIMIZED engine modes and SEARCH, VECTOR, OBSERVABILITY, or MIXED usecases when creating and updating domain configurations.
  • api-change:gamelift: Amazon GameLift Servers now includes fleet expiration for managed fleets. A managed fleet expires one year after creation, transitioning to EXPIRED status, emitting a FLEET EXPIRED event, and scaling to zero instances. Expired fleets cannot host new game sessions or increase capacity.
  • api-change:guardduty: GuardDuty AI Protection is now publicly available. Findings include Bedrock guardrail details, model details, observation numbers, and continuous scan details. GuardrailArn and GuardrailVersion are deprecated in favor of the guardrails list.
  • api-change:lambda: Add Java 8, 11 and 17 on AL2023 (java8.al2023, java11.al2023, java17.al2023) support to AWS Lambda.
  • api-change:redshift-serverless: Add support for preserving datasharing, zero-ETL and S3 event integrations on snapshot restore to serverless namespace.
kubernetes/kubernetes (deps/go-submodules/kubernetes)

v1.37.0

Compare Source

See kubernetes-announce@. Additional binary downloads are linked in the CHANGELOG.

See the CHANGELOG for more details.

v1.36.4

Compare Source

See kubernetes-announce@. Additional binary downloads are linked in the CHANGELOG.

See the CHANGELOG for more details.

v1.36.3

Compare Source

See kubernetes-announce@. Additional binary downloads are linked in the CHANGELOG.

See the CHANGELOG for more details.

anchore/syft (github.com/anchore/syft)

v1.51.1

Compare Source

Bug Fixes
Additional Changes
Dependencies

72 dependency changes (70 updated, 1 added, 1 removed). 3 vulnerabilities remediated.

🟢 Remediated (3)

Updated (70 packages)
  • cel.dev/expr v0.25.1v0.25.2
  • cloud.google.com/go/auth v0.18.2v0.22.0
  • cloud.google.com/go/iam v1.5.3v1.11.0
  • cloud.google.com/go/logging v1.13.1v1.18.0
  • cloud.google.com/go/longrunning v0.8.0v1.2.0
  • cloud.google.com/go/monitoring v1.24.3v1.29.0
  • cloud.google.com/go/storage v1.61.3v1.64.0
  • cloud.google.com/go/trace v1.11.7v1.16.0
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.32.0v1.33.0
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric v0.55.0v0.57.0
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/cloudmock v0.55.0v0.57.0
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping v0.55.0v0.57.0
  • github.com/anchore/stereoscope v0.3.0v0.3.1
  • github.com/aws/aws-sdk-go-v2 v1.41.5v1.43.4
  • github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.8v1.7.16
  • github.com/aws/aws-sdk-go-v2/config v1.32.12v1.32.35
  • github.com/aws/aws-sdk-go-v2/credentials v1.19.12v1.19.34
  • github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.20v1.18.35
  • github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.21v1.4.35
  • github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.21v2.7.35
  • github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.22v1.4.36
  • github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.7v1.13.15
  • github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.13v1.9.28
  • github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.21v1.13.35
  • github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.21v1.19.36
  • github.com/aws/aws-sdk-go-v2/service/s3 v1.97.3v1.106.5
  • github.com/aws/aws-sdk-go-v2/service/signin v1.0.8v1.5.4
  • github.com/aws/aws-sdk-go-v2/service/sso v1.30.13v1.33.4
  • github.com/aws/aws-sdk-go-v2/service/ssooidc v1.35.17v1.38.4
  • github.com/aws/aws-sdk-go-v2/service/sts v1.41.9v1.45.4
  • github.com/aws/smithy-go v1.24.2v1.27.6
  • github.com/containerd/containerd/v2 v2.3.3v2.3.4
  • github.com/containerd/platforms v1.0.0-rc.4v1.0.0-rc.5
  • github.com/docker/cli v29.6.1+incompatiblev29.7.2+incompatible
  • github.com/docker/go-connections v0.7.0v0.8.1
  • github.com/fatih/color v1.18.0v1.19.0
  • github.com/gabriel-vasile/mimetype v1.4.13v1.4.15
  • github.com/google/go-containerregistry v0.21.7v0.21.9
  • github.com/google/pprof v0.0.0-a4b03ecv0.0.0-ef3492d
  • github.com/googleapis/enterprise-certificate-proxy v0.3.14v0.3.19
  • github.com/googleapis/gax-go/v2 v2.17.0v2.23.0
  • github.com/hashicorp/aws-sdk-go-base/v2 v2.0.0-beta.72v2.0.0-beta.74
  • github.com/hashicorp/go-getter v1.8.6v1.8.8
  • github.com/hashicorp/go-version v1.8.0v1.9.0
  • github.com/klauspost/compress v1.19.1v1.19.2
  • github.com/mattn/go-isatty v0.0.20v0.0.24
  • github.com/moby/moby/client v0.5.0v0.5.1
  • github.com/spiffe/go-spiffe/v2 v2.6.0v2.7.0
  • github.com/stretchr/objx v0.5.2v0.5.3
  • github.com/stretchr/testify v1.11.1v1.12.1
  • go.opentelemetry.io/contrib/detectors/gcp v1.43.0v1.44.0
  • go.opentelemetry.io/otel v1.43.0v1.44.0 (🟢 remediated GO-2026-5158)
  • go.opentelemetry.io/otel/exporters/stdout/stdoutmetric v1.40.0v1.44.0
  • go.opentelemetry.io/otel/metric v1.43.0v1.44.0
  • go.opentelemetry.io/otel/sdk v1.43.0v1.44.0
  • go.opentelemetry.io/otel/sdk/metric v1.43.0v1.44.0
  • go.opentelemetry.io/otel/trace v1.43.0v1.44.0
  • golang.org/x/crypto v0.54.0v0.55.0
  • golang.org/x/mod v0.38.0v0.40.0 (🟢 remediated GO-2026-6179, GO-2026-6180)
  • golang.org/x/net v0.57.0v0.58.0
  • golang.org/x/text v0.40.0v0.41.0
  • golang.org/x/tools v0.48.0v0.49.0
  • google.golang.org/api v0.271.0v0.292.0
  • google.golang.org/genproto v0.0.0-8636f87v0.0.0-aa98bba
  • google.golang.org/genproto/googleapis/api v0.0.0-afd174av0.0.0-925bb5d
  • google.golang.org/genproto/googleapis/rpc v0.0.0-afd174av0.0.0-6ac0973
  • google.golang.org/grpc v1.82.1v1.83.0
  • modernc.org/cc/v4 v4.29.0v4.29.1
  • modernc.org/libc v1.74.1v1.74.4
  • modernc.org/sqlite v1.55.0v1.56.0
Added (1 package)
  • go.opentelemetry.io/otel/metric/x v0.66.0
Removed (1 package)
  • github.com/aws/aws-sdk-go-v2/internal/ini v1.8.6

(Full Changelog)

v1.51.0

Compare Source

Added Features
Bug Fixes
  • Cleanup snap temporary directories [PR #​5117 @​spiffcs]
  • add correct CPE vendor/product candidates for Git for Windows PE binary [PR #​5156 @​westonsteimel]
  • javascript-package-cataloger creates phantom <name>@&#8203;unknown packages for subpath or export-map stub package.json files [Issue #​5118]
  • Syft generates incorrect PURLs for legacy JARs missing Maven metadata, causing Grype false negatives [Issue #​4598] [PR #​5146 @​ankit090701]
  • When scanning an image, syft only reports one file per set of hardlinks, leading to wrong SPDX packageVerificationCode [Issue #​5019] [PR #​5029 @​wagoodman]
  • Support deno binary latest and some old versions [Issue #​5057] [PR #​5084 @​ychampion]
  • Update install methods in README.md [Issue #​3198]
Dependencies

9 dependency changes (9 updated). 2 vulnerabilities remediated.

🟢 Remediated (2)

Updated (9 packages)
  • github.com/diskfs/go-diskfs v1.9.3v1.9.4
  • github.com/go-git/go-billy/v5 v5.9.0v5.9.1
  • github.com/go-git/go-git/v5 v5.19.1v5.19.2 (🟢 remediated GHSA-hc8v-wwc9-vgxm, GHSA-qgq7-7hm3-q39j)
  • github.com/jedib0t/go-pretty/v6 v6.8.1v6.8.3
  • github.com/klauspost/compress v1.19.0v1.19.1
  • github.com/magiconair/properties v1.8.10v1.18.11
  • github.com/ulikunitz/xz v0.5.15v0.5.16
  • go.yaml.in/yaml/v3 v3.0.4v3.0.5
  • modernc.org/sqlite v1.54.0v1.55.0

(Full Changelog)

v1.50.0

Compare Source

Added Features
Bug Fixes
Additional Changes
Dependencies

14 dependency changes (14 updated). 1 vulnerability remediated.

🟢 Remediated (1)

Updated (14 packages)
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.31.0v1.32.0
  • github.com/cncf/xds/go v0.0.0-ee656c7v0.0.0-dba9d58
  • github.com/envoyproxy/go-control-plane/envoy v1.36.0v1.37.0
  • github.com/envoyproxy/protoc-gen-validate v1.3.0v1.3.3
  • github.com/gpustack/gguf-parser-go v0.24.1v0.25.0
  • go.opentelemetry.io/contrib/detectors/gcp v1.39.0v1.43.0
  • google.golang.org/genproto/googleapis/api v0.0.0-9d38bb4v0.0.0-afd174a
  • google.golang.org/genproto/googleapis/rpc v0.0.0-6f92a3bv0.0.0-afd174a
  • google.golang.org/grpc v1.80.0v1.82.1 (🟢 remediated GHSA-hrxh-6v49-42gf)
  • modernc.org/cc/v4 v4.28.4v4.29.0
  • modernc.org/ccgo/v4 v4.34.4v4.34.6
  • modernc.org/gc/v3 v3.1.3v3.1.4
  • modernc.org/libc v1.73.4v1.74.1
  • modernc.org/sqlite v1.53.0v1.54.0

(Full Changelog)

v1.49.0

Compare Source

Added Features
Bug Fixes
Dependencies

16 dependency changes (16 updated).

Updated (16 packages)
  • github.com/anchore/go-rpmdb v0.1.0v0.2.0
  • github.com/anchore/stereoscope v0.2.2v0.3.0
  • github.com/containerd/containerd/v2 v2.3.2v2.3.3
  • github.com/docker/cli v29.5.3+incompatiblev29.6.1+incompatible
  • github.com/gkampitakis/go-snaps v0.5.22v0.5.23
  • github.com/moby/moby/api v1.54.2v1.55.0
  • github.com/moby/moby/client v0.4.1v0.5.0
  • github.com/pelletier/go-toml/v2 v2.3.1v2.4.3
  • golang.org/x/crypto v0.53.0v0.54.0
  • golang.org/x/mod v0.37.0v0.38.0
  • golang.org/x/net v0.56.0v0.57.0
  • golang.org/x/sync v0.21.0v0.22.0
  • golang.org/x/sys v0.46.0v0.47.0
  • golang.org/x/term v0.44.0v0.45.0
  • golang.org/x/text v0.38.0v0.40.0
  • golang.org/x/tools v0.47.0v0.48.0

(Full Changelog)

v1.48.0

Compare Source

Added Features
Bug Fixes

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • On day 1 and 15 of the month (* * 1,15 * *)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

To execute skipped test pipelines write comment /ok-to-test.


Documentation

Find out how to configure dependency updates in MintMaker documentation or see all available configuration options in Renovate documentation.

@red-hat-konflux
red-hat-konflux Bot requested a review from a team as a code owner August 1, 2026 02:37
@red-hat-konflux

red-hat-konflux Bot commented Aug 1, 2026

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: deps/go-tools/buildah/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 45 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.6 -> 1.25.9
cyphar.com/go-pathrs v0.2.4 -> v0.2.5
github.com/containerd/typeurl/v2 v2.2.3 -> v2.3.0
github.com/containers/ocicrypt v1.3.0 -> v1.3.2
github.com/cyphar/filepath-securejoin v0.6.1 -> v0.7.0
github.com/docker/docker-credential-helpers v0.9.7 -> v0.9.8
github.com/docker/go-connections v0.7.0 -> v0.8.1
github.com/fsouza/go-dockerclient v1.13.1 -> v1.13.2
github.com/klauspost/compress v1.18.6 -> v1.19.1
github.com/mattn/go-runewidth v0.0.23 -> v0.0.27
github.com/mattn/go-shellwords v1.0.13 -> v1.0.14
github.com/mattn/go-sqlite3 v1.14.44 -> v1.14.48
github.com/miekg/pkcs11 v1.1.1 -> v1.1.2
github.com/moby/buildkit v0.30.0 -> v0.31.2
github.com/moby/moby/api v1.54.2 -> v1.55.0
github.com/moby/moby/client v0.4.1 -> v0.5.1
github.com/moby/sys/sequential v0.6.0 -> v0.7.0
github.com/moby/sys/user v0.4.0 -> v0.4.1
github.com/opencontainers/cgroups v0.0.6 -> v0.0.8
github.com/opencontainers/runc v1.4.2 -> v1.5.1
github.com/opencontainers/selinux v1.14.1 -> v1.15.1
github.com/sigstore/fulcio v1.8.5 -> v1.8.7
github.com/sigstore/protobuf-specs v0.5.0 -> v0.5.1
github.com/sigstore/sigstore v1.10.6 -> v1.10.8
github.com/smallstep/pkcs7 v0.1.1 -> v0.2.1
github.com/sylabs/sif/v2 v2.24.0 -> v2.24.1
github.com/ulikunitz/xz v0.5.15 -> v0.5.16
github.com/vbauerster/mpb/v8 v8.12.0 -> v8.14.0
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.68.0 -> v0.69.0
go.opentelemetry.io/otel v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/metric v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/trace v1.43.0 -> v1.44.0
go.podman.io/common v0.68.0 -> v0.69.0
go.podman.io/image/v5 v5.40.0 -> v5.41.0
go.podman.io/storage v1.63.0 -> v1.64.0
go.yaml.in/yaml/v2 v2.4.3 -> v2.4.4
golang.org/x/crypto v0.52.0 -> v0.54.0
golang.org/x/mod v0.35.0 -> v0.37.0
golang.org/x/net v0.54.0 -> v0.56.0
golang.org/x/sync v0.20.0 -> v0.22.0
golang.org/x/sys v0.45.0 -> v0.47.0
golang.org/x/term v0.43.0 -> v0.45.0
golang.org/x/text v0.37.0 -> v0.40.0
google.golang.org/genproto/googleapis/api v0.0.0-20260406210006-6f92a3bedf2d -> v0.0.0-20260526163538-3dc84a4a5aaa
google.golang.org/genproto/googleapis/rpc v0.0.0-20260406210006-6f92a3bedf2d -> v0.0.0-20260526163538-3dc84a4a5aaa
google.golang.org/grpc v1.81.1 -> v1.82.1
File name: deps/go-tools/conftest/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 59 additional dependencies were updated

Details:

Package Change
cuelang.org/go v0.16.0 -> v0.17.1
github.com/CycloneDX/cyclonedx-go v0.10.0 -> v0.11.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.30.0 -> v1.32.0
github.com/aws/aws-sdk-go-v2 v1.41.4 -> v1.41.7
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.7 -> v1.7.8
github.com/aws/aws-sdk-go-v2/config v1.32.12 -> v1.32.17
github.com/aws/aws-sdk-go-v2/credentials v1.19.12 -> v1.19.16
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.20 -> v1.18.23
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.20 -> v1.4.23
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.20 -> v2.7.23
github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.21 -> v1.4.24
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.7 -> v1.13.9
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.20 -> v1.13.23
github.com/aws/aws-sdk-go-v2/service/signin v1.0.8 -> v1.0.11
github.com/aws/aws-sdk-go-v2/service/sso v1.30.13 -> v1.30.17
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.35.17 -> v1.35.21
github.com/aws/aws-sdk-go-v2/service/sts v1.41.9 -> v1.42.1
github.com/aws/smithy-go v1.24.2 -> v1.25.1
github.com/decred/dcrd/dcrec/secp256k1/v4 v4.4.0 -> v4.4.1
github.com/envoyproxy/go-control-plane/envoy v1.36.0 -> v1.37.0
github.com/envoyproxy/protoc-gen-validate v1.3.0 -> v1.3.3
github.com/fsnotify/fsnotify v1.9.0 -> v1.10.1
github.com/go-jose/go-jose/v4 v4.1.3 -> v4.1.4
github.com/go-logr/logr v1.4.3 -> v1.4.4
github.com/goccy/go-json v0.10.5 -> v0.10.6
github.com/klauspost/compress v1.18.5 -> v1.19.0
github.com/lestrrat-go/dsig v1.0.0 -> v1.2.1
github.com/lestrrat-go/httprc/v3 v3.0.2 -> v3.0.5
github.com/lestrrat-go/jwx/v3 v3.0.13 -> v3.1.1
github.com/mattn/go-runewidth v0.0.16 -> v0.0.19
github.com/moby/buildkit v0.29.0 -> v0.30.0
github.com/olekukonko/errors v1.1.0 -> v1.2.0
github.com/olekukonko/ll v0.0.9 -> v0.1.6
github.com/olekukonko/tablewriter v1.1.0 -> v1.1.4
github.com/open-policy-agent/opa v1.15.2 -> v1.19.0
github.com/pelletier/go-toml/v2 v2.2.4 -> v2.3.1
github.com/protocolbuffers/txtpbfmt v0.0.0-20260217160748-a481f6a22f94 -> v0.0.0-20260420112717-c39628bde8b5
github.com/valyala/fastjson v1.6.7 -> v1.6.10
github.com/vektah/gqlparser/v2 v2.5.32 -> v2.5.36
go.opentelemetry.io/contrib/detectors/gcp v1.39.0 -> v1.43.0
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.63.0 -> v0.68.0
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.65.0 -> v0.69.0
go.opentelemetry.io/otel v1.42.0 -> v1.44.0
go.opentelemetry.io/otel/metric v1.42.0 -> v1.44.0
go.opentelemetry.io/otel/sdk v1.42.0 -> v1.44.0
go.opentelemetry.io/otel/sdk/metric v1.42.0 -> v1.44.0
go.opentelemetry.io/otel/trace v1.42.0 -> v1.44.0
go.yaml.in/yaml/v2 v2.4.3 -> v2.4.4
golang.org/x/crypto v0.49.0 -> v0.53.0
golang.org/x/mod v0.33.0 -> v0.37.0
golang.org/x/net v0.52.0 -> v0.56.0
golang.org/x/sync v0.20.0 -> v0.22.0
golang.org/x/sys v0.42.0 -> v0.47.0
golang.org/x/text v0.35.0 -> v0.40.0
golang.org/x/tools v0.42.0 -> v0.47.0
google.golang.org/genproto/googleapis/api v0.0.0-20260203192932-546029d2fa20 -> v0.0.0-20260526163538-3dc84a4a5aaa
google.golang.org/genproto/googleapis/rpc v0.0.0-20260226221140-a57be14db171 -> v0.0.0-20260526163538-3dc84a4a5aaa
google.golang.org/grpc v1.79.3 -> v1.82.1
oras.land/oras-go/v2 v2.6.0 -> v2.6.2
File name: deps/go-tools/cosign/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 50 additional dependencies were updated

Details:

Package Change
github.com/Azure/azure-sdk-for-go/sdk/azcore v1.21.1 -> v1.22.0
github.com/Azure/azure-sdk-for-go/sdk/azidentity v1.13.1 -> v1.14.0
github.com/aws/aws-sdk-go-v2 v1.41.7 -> v1.42.0
github.com/aws/aws-sdk-go-v2/config v1.32.18 -> v1.32.25
github.com/aws/aws-sdk-go-v2/credentials v1.19.17 -> v1.19.24
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.23 -> v1.18.29
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.23 -> v1.4.29
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.23 -> v2.7.29
github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.24 -> v1.4.30
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.9 -> v1.13.12
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.23 -> v1.13.29
github.com/aws/aws-sdk-go-v2/service/kms v1.52.0 -> v1.53.4
github.com/aws/aws-sdk-go-v2/service/signin v1.0.11 -> v1.2.0
github.com/aws/aws-sdk-go-v2/service/sso v1.30.17 -> v1.31.3
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.36.0 -> v1.36.6
github.com/aws/aws-sdk-go-v2/service/sts v1.42.1 -> v1.43.3
github.com/aws/smithy-go v1.25.1 -> v1.27.2
github.com/buildkite/agent/v3 v3.127.2 -> v3.130.0
github.com/docker/cli v29.4.3+incompatible -> v29.5.3+incompatible
github.com/go-openapi/errors v0.22.7 -> v0.22.8
github.com/go-openapi/loads v0.23.3 -> v0.24.0
github.com/go-openapi/runtime v0.32.3 -> v0.32.4
github.com/go-openapi/spec v0.22.5 -> v0.22.6
github.com/go-openapi/strfmt v0.26.3 -> v0.26.4
github.com/go-openapi/swag v0.26.0 -> v0.26.1
github.com/go-openapi/swag/cmdutils v0.26.0 -> v0.26.1
github.com/go-openapi/swag/conv v0.26.1 -> v0.27.0
github.com/go-openapi/swag/fileutils v0.26.0 -> v0.26.1
github.com/go-openapi/swag/jsonname v0.26.0 -> v0.26.1
github.com/go-openapi/swag/jsonutils v0.26.0 -> v0.26.1
github.com/go-openapi/swag/loading v0.26.0 -> v0.26.1
github.com/go-openapi/swag/mangling v0.26.0 -> v0.26.1
github.com/go-openapi/swag/netutils v0.26.0 -> v0.26.1
github.com/go-openapi/swag/stringutils v0.26.0 -> v0.26.1
github.com/go-openapi/swag/typeutils v0.26.1 -> v0.27.0
github.com/go-openapi/swag/yamlutils v0.26.0 -> v0.26.1
github.com/go-openapi/validate v0.25.3 -> v0.26.0
github.com/google/go-containerregistry v0.21.6 -> v0.21.7
github.com/sigstore/rekor v1.5.2 -> v1.5.3
github.com/sigstore/rekor-tiles/v2 v2.2.2-0.20260601073857-5d098a2b6443 -> v2.3.0
github.com/sigstore/sigstore-go v1.2.0 -> v1.2.2
golang.org/x/mod v0.36.0 -> v0.37.0
golang.org/x/net v0.55.0 -> v0.56.0
google.golang.org/api v0.283.0 -> v0.284.0
google.golang.org/genproto/googleapis/rpc v0.0.0-20260523011958-0a33c5d7ca68 -> v0.0.0-20260526163538-3dc84a4a5aaa
google.golang.org/grpc v1.81.1 -> v1.82.0
gopkg.in/ini.v1 v1.67.2 -> v1.67.3
k8s.io/api v0.36.1 -> v0.36.2
k8s.io/apimachinery v0.36.1 -> v0.36.2
k8s.io/client-go v0.36.1 -> v0.36.2
File name: deps/go-tools/oras/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 1 additional dependency was updated

Details:

Package Change
github.com/sirupsen/logrus v1.9.4 -> v1.10.1
File name: deps/go-tools/syft/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 78 additional dependencies were updated

Details:

Package Change
cel.dev/expr v0.25.1 -> v0.25.2
cloud.google.com/go/auth v0.18.2 -> v0.22.0
cloud.google.com/go/iam v1.5.3 -> v1.11.0
cloud.google.com/go/monitoring v1.24.3 -> v1.29.0
cloud.google.com/go/storage v1.61.3 -> v1.64.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.31.0 -> v1.33.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric v0.55.0 -> v0.57.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping v0.55.0 -> v0.57.0
github.com/anchore/go-rpmdb v0.1.0 -> v0.2.0
github.com/anchore/stereoscope v0.2.2 -> v0.3.1
github.com/aws/aws-sdk-go-v2 v1.41.5 -> v1.43.4
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.8 -> v1.7.16
github.com/aws/aws-sdk-go-v2/config v1.32.12 -> v1.32.35
github.com/aws/aws-sdk-go-v2/credentials v1.19.12 -> v1.19.34
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.20 -> v1.18.35
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.21 -> v1.4.35
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.21 -> v2.7.35
github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.22 -> v1.4.36
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.7 -> v1.13.15
github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.13 -> v1.9.28
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.21 -> v1.13.35
github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.21 -> v1.19.36
github.com/aws/aws-sdk-go-v2/service/s3 v1.97.3 -> v1.106.5
github.com/aws/aws-sdk-go-v2/service/signin v1.0.8 -> v1.5.4
github.com/aws/aws-sdk-go-v2/service/sso v1.30.13 -> v1.33.4
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.35.17 -> v1.38.4
github.com/aws/aws-sdk-go-v2/service/sts v1.41.9 -> v1.45.4
github.com/aws/smithy-go v1.24.2 -> v1.27.6
github.com/cncf/xds/go v0.0.0-20251210132809-ee656c7534f5 -> v0.0.0-20260202195803-dba9d589def2
github.com/containerd/containerd/v2 v2.3.2 -> v2.3.4
github.com/containerd/platforms v1.0.0-rc.4 -> v1.0.0-rc.5
github.com/diskfs/go-diskfs v1.9.3 -> v1.9.4
github.com/docker/cli v29.5.3+incompatible -> v29.7.2+incompatible
github.com/docker/go-connections v0.7.0 -> v0.8.1
github.com/envoyproxy/go-control-plane/envoy v1.36.0 -> v1.37.0
github.com/envoyproxy/protoc-gen-validate v1.3.0 -> v1.3.3
github.com/fatih/color v1.18.0 -> v1.19.0
github.com/gabriel-vasile/mimetype v1.4.13 -> v1.4.15
github.com/go-git/go-billy/v5 v5.9.0 -> v5.9.1
github.com/go-git/go-git/v5 v5.19.1 -> v5.19.2
github.com/google/go-containerregistry v0.21.7 -> v0.21.9
github.com/google/pprof v0.0.0-20250317173921-a4b03ec1a45e -> v0.0.0-20260802141513-ef3492d7dac3
github.com/googleapis/enterprise-certificate-proxy v0.3.14 -> v0.3.19
github.com/googleapis/gax-go/v2 v2.17.0 -> v2.23.0
github.com/gpustack/gguf-parser-go v0.24.1 -> v0.25.0
github.com/hashicorp/aws-sdk-go-base/v2 v2.0.0-beta.72 -> v2.0.0-beta.74
github.com/hashicorp/go-getter v1.8.6 -> v1.8.8
github.com/hashicorp/go-version v1.8.0 -> v1.9.0
github.com/jedib0t/go-pretty/v6 v6.8.1 -> v6.8.3
github.com/klauspost/compress v1.18.6 -> v1.19.2
github.com/mattn/go-isatty v0.0.20 -> v0.0.24
github.com/moby/moby/api v1.54.2 -> v1.55.0
github.com/moby/moby/client v0.4.1 -> v0.5.1
github.com/pelletier/go-toml/v2 v2.3.1 -> v2.4.3
github.com/spiffe/go-spiffe/v2 v2.6.0 -> v2.7.0
github.com/ulikunitz/xz v0.5.15 -> v0.5.16
go.opentelemetry.io/contrib/detectors/gcp v1.39.0 -> v1.44.0
go.opentelemetry.io/otel v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/metric v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/sdk v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/sdk/metric v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/trace v1.43.0 -> v1.44.0
go.yaml.in/yaml/v3 v3.0.4 -> v3.0.5
golang.org/x/crypto v0.53.0 -> v0.55.0
golang.org/x/mod v0.37.0 -> v0.40.0
golang.org/x/net v0.56.0 -> v0.58.0
golang.org/x/sync v0.21.0 -> v0.22.0
golang.org/x/sys v0.46.0 -> v0.47.0
golang.org/x/term v0.44.0 -> v0.45.0
golang.org/x/text v0.38.0 -> v0.41.0
golang.org/x/tools v0.46.0 -> v0.49.0
google.golang.org/api v0.271.0 -> v0.292.0
google.golang.org/genproto v0.0.0-20260128011058-8636f8732409 -> v0.0.0-20260519071638-aa98bba5eb94
google.golang.org/genproto/googleapis/api v0.0.0-20260401024825-9d38bb4040a9 -> v0.0.0-20260630182238-925bb5da69e7
google.golang.org/genproto/googleapis/rpc v0.0.0-20260406210006-6f92a3bedf2d -> v0.0.0-20260803160001-6ac0973c030d
google.golang.org/grpc v1.80.0 -> v1.83.0
modernc.org/libc v1.72.3 -> v1.74.4
modernc.org/sqlite v1.51.0 -> v1.56.0
File name: deps/go-tools/tkn/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 50 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.11 -> 1.26.5
github.com/docker/docker-credential-helpers v0.9.3 -> v0.9.5
github.com/fatih/color v1.18.0 -> v1.19.0
github.com/fsnotify/fsnotify v1.9.0 -> v1.10.1
github.com/fxamacker/cbor/v2 v2.9.0 -> v2.9.1
github.com/go-chi/chi/v5 v5.2.4 -> v5.3.0
github.com/go-openapi/jsonpointer v0.22.4 -> v0.23.1
github.com/go-openapi/jsonreference v0.21.4 -> v0.21.5
github.com/go-openapi/swag v0.25.4 -> v0.26.0
github.com/go-openapi/swag/cmdutils v0.25.4 -> v0.26.0
github.com/go-openapi/swag/conv v0.25.4 -> v0.26.0
github.com/go-openapi/swag/fileutils v0.25.4 -> v0.26.0
github.com/go-openapi/swag/jsonname v0.25.4 -> v0.26.0
github.com/go-openapi/swag/jsonutils v0.25.4 -> v0.26.0
github.com/go-openapi/swag/loading v0.25.4 -> v0.26.0
github.com/google/cel-go v0.27.0 -> v0.29.0
github.com/google/go-containerregistry v0.21.0 -> v0.21.8
github.com/klauspost/compress v1.18.4 -> v1.19.1
github.com/lucasb-eyer/go-colorful v1.3.0 -> v1.4.0
github.com/mattn/go-isatty v0.0.20 -> v0.0.21
github.com/mattn/go-runewidth v0.0.19 -> v0.0.22
github.com/pelletier/go-toml/v2 v2.2.4 -> v2.3.0
github.com/prometheus/common v0.67.5 -> v0.69.0
github.com/prometheus/procfs v0.17.0 -> v0.20.1
github.com/sagikazarmark/locafero v0.11.0 -> v0.12.0
github.com/tektoncd/pipeline v1.9.3 -> v1.14.1
go.opentelemetry.io/auto/sdk v1.2.1 -> v1.2.1
go.opentelemetry.io/otel v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/metric v1.43.0 -> v1.44.0
go.opentelemetry.io/otel/trace v1.43.0 -> v1.44.0
go.uber.org/zap v1.27.1 -> v1.28.0
go.yaml.in/yaml/v2 v2.4.3 -> v2.4.4
goa.design/goa/v3 v3.23.4 -> v3.28.0
golang.org/x/crypto v0.52.0 -> v0.54.0
golang.org/x/exp v0.0.0-20250620022241-b7579e27df2b -> v0.0.0-20260312153236-7ab1446f8b90
golang.org/x/net v0.55.0 -> v0.56.0
golang.org/x/oauth2 v0.35.0 -> v0.36.0
golang.org/x/sync v0.20.0 -> v0.22.0
google.golang.org/genproto/googleapis/api v0.0.0-20260120221211-b8f7ae30c516 -> v0.0.0-20260727163830-6c54dddc4772
google.golang.org/genproto/googleapis/rpc v0.0.0-20260120221211-b8f7ae30c516 -> v0.0.0-20260720155508-bb71a54f79dc
google.golang.org/grpc v1.80.0 -> v1.82.1
k8s.io/api v0.34.4 -> v0.36.3
k8s.io/apiextensions-apiserver v0.32.11 -> v0.35.6
k8s.io/apimachinery v0.34.4 -> v0.36.3
k8s.io/client-go v0.34.4 -> v0.36.3
k8s.io/klog/v2 v2.130.1 -> v2.140.0
k8s.io/kube-openapi v0.0.0-20250710124328-f3f2b991d03b -> v0.0.0-20260330154417-16be699c7b31
k8s.io/utils v0.0.0-20250820121507-0af2bda4dd1d -> v0.0.0-20260319190234-28399d86e0b5
knative.dev/pkg v0.0.0-20250415155312-ed3e2158b883 -> v0.0.0-20260531000007-52dbd5ece63f
sigs.k8s.io/json v0.0.0-20241014173422-cfa47c3a1cc8 -> v0.0.0-20250730193827-2d320260d730
sigs.k8s.io/structured-merge-diff/v6 v6.3.0 -> v6.3.3
File name: deps/go-tools/yq/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 10 additional dependencies were updated

Details:

Package Change
github.com/magiconair/properties v1.8.10 -> v1.18.11
github.com/pelletier/go-toml/v2 v2.3.1 -> v2.4.3
github.com/zclconf/go-cty v1.18.1 -> v1.19.0
go.yaml.in/yaml/v4 v4.0.0-rc.4 -> v4.0.0-rc.6
golang.org/x/mod v0.36.0 -> v0.40.0
golang.org/x/net v0.55.0 -> v0.58.0
golang.org/x/sync v0.20.0 -> v0.22.0
golang.org/x/sys v0.45.0 -> v0.47.0
golang.org/x/text v0.37.0 -> v0.41.0
golang.org/x/tools v0.44.0 -> v0.49.0

@red-hat-konflux
red-hat-konflux Bot force-pushed the konflux/mintmaker/main/non-rpm-dependencies branch 5 times, most recently from 3b861fc to c839c7b Compare August 1, 2026 21:55
@red-hat-konflux
red-hat-konflux Bot force-pushed the konflux/mintmaker/main/non-rpm-dependencies branch 2 times, most recently from 2c374c3 to d04a9b2 Compare August 15, 2026 06:51
@red-hat-konflux
red-hat-konflux Bot force-pushed the konflux/mintmaker/main/non-rpm-dependencies branch 2 times, most recently from 0d71024 to 40108ec Compare September 1, 2026 12:15
@slimreaper35

Copy link
Copy Markdown
Member

/retest

red-hat-konflux Bot and others added 2 commits September 7, 2026 18:14
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
@slimreaper35
slimreaper35 force-pushed the konflux/mintmaker/main/non-rpm-dependencies branch from 2cd957b to b344921 Compare September 7, 2026 16:22
@slimreaper35
slimreaper35 merged commit 03fa7c0 into main Sep 8, 2026
6 checks passed
@slimreaper35
slimreaper35 deleted the konflux/mintmaker/main/non-rpm-dependencies branch September 8, 2026 07:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant