Bump github.com/vmware-tanzu/carvel-imgpkg from 0.36.0 to 0.36.1 in /hack/imgpkg by dependabot[bot] · Pull Request #258 · servicebinding/runtime
Bumps github.com/vmware-tanzu/carvel-imgpkg from 0.36.0 to 0.36.1.
Release notes
Sourced from github.com/vmware-tanzu/carvel-imgpkg's releases.
v0.36.1
✨ What's new
- Bump different libraries to remove CVEs
📂 Files Checksum
13f0032423fddd88fe21767cb16e672148022c810647fa778289a5aa53133c79 ./imgpkg-darwin-arm64 194655166ca74d898c1225b42c9257cd0cb71128da271f233b8f12ceda7c15cc ./imgpkg-linux-amd64 84b86ad410ee00018bf5482728f82fa95b10a1431107096d9cbbc0aafed3b624 ./imgpkg-windows-amd64.exe 8f79a9fff70ff11086ae345681b5646b7fba02341542df4f78c9bb0383e843d5 ./imgpkg-darwin-amd64 9422215c35ab7ee7e6f53196679b6cd3c1c0873456082b00c72efdb7e263bc27 ./imgpkg-linux-arm64
Commits
e0db80aAddvto the release check step837130dAddvto the version since latest versions of goreleaser remove it94d52e4Bump go releaser7d0721bMerge pull request #492 from carvel-dev/dependabot/go_modules/github.com/stre...40ecb41Merge pull request #493 from carvel-dev/bump-go-version-1.208a89458In go 1.20 we no longer need to seed randome0b7bcdBump go version to 1.20.11096d77build(deps): Bump github.com/stretchr/testify from 1.8.1 to 1.8.23fb0162Merge pull request #487 from carvel-dev/dependabot/go_modules/golang.org/x/ne...0338d20Merge pull request #486 from carvel-dev/dependabot/go_modules/golang.org/x/sy...- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)