Bump github.com/go-git/go-git/v5 from 5.16.5 to 5.19.1
Type: Pull Request
State: Open
Association: Unknown
Comments: 1
(14 days ago)
(14 days ago)
dependencies go
Bumps github.com/go-git/go-git/v5 from 5.16.5 to 5.19.1.
Release notes
Sourced from github.com/go-git/go-git/v5's releases.
v5.19.1
What's Changed
- v5: plumbing: transport/ssh, Shell-quote path by
@hiddecoin go-git/go-git#2068- v5: git: submodule, Fix relative URL resolution by
@hiddecoin go-git/go-git#2070- v5: git: submodule, canonical remote for relative URLs by
@hiddecoin go-git/go-git#2074- v5: git: submodule, error on remote without URLs by
@hiddecoin go-git/go-git#2078- v5: plumbing: format/idxfile, Validate offset64 indices by
@hiddecoin go-git/go-git#2084- v5: *: Reject malformed variable-length integers by
@hiddecoin go-git/go-git#2092- v5: plumbing: format/packfile, Tighten delta validation by
@hiddecoin go-git/go-git#2091- v5: Add
worktreeFilesystemwrapper for worktree and hardening by@hiddecoin go-git/go-git#2100- v5: config: validate submodule names by
@hiddecoin go-git/go-git#2082- build: Update module github.com/go-git/go-git/v5 to v5.19.0 [SECURITY] (releases/v5.x) by
@go-git-renovate[bot] in go-git/go-git#2111- v5: git: Allow MkdirAll on worktree-root paths by
@hiddecoin go-git/go-git#2117- v5: git: Stop validating symlink target paths by
@pjbgfin go-git/go-git#2116- v5: plumbing: format decoder input bounds and contracts by
@hiddecoin go-git/go-git#2125- plumbing: format/packfile, cap delta chain depth in parser by
@pjbgfin go-git/go-git#2137Full Changelog: https://github.com/go-git/go-git/compare/v5.19.0...v5.19.1
v5.19.0
What's Changed
- build: Update module github.com/go-git/go-git/v5 to v5.18.0 [SECURITY] (releases/v5.x) by
@go-git-renovate[bot] in go-git/go-git#2010- v5: Bump sha1cd and go-billy by
@pjbgfin go-git/go-git#2060- v5: Align object encoding with upstream by
@pjbgfin go-git/go-git#2065Full Changelog: https://github.com/go-git/go-git/compare/v5.18.0...v5.19.0
v5.18.0
What's Changed
- plumbing: transport/http, Add support for followRedirects policy by
@pjbgfin go-git/go-git#2004Full Changelog: https://github.com/go-git/go-git/compare/v5.17.2...v5.18.0
v5.17.2
What's Changed
- build: Update module github.com/go-git/go-git/v5 to v5.17.1 [SECURITY] (releases/v5.x) by
@go-git-renovate[bot] in go-git/go-git#1941- dotgit: skip writing pack files that already exist on disk by
@pjbgfin go-git/go-git#1944:warning: This release fixes a bug (go-git/go-git#1942) that blocked some users from upgrading to
v5.17.1. Thanks@pskrbasufor reporting it. :bow:Full Changelog: https://github.com/go-git/go-git/compare/v5.17.1...v5.17.2
v5.17.1
What's Changed
- build: Update module github.com/cloudflare/circl to v1.6.3 [SECURITY] (releases/v5.x) by
@go-git-renovate[bot] in go-git/go-git#1930- [v5] plumbing: format/index, Improve v4 entry name validation by
@pjbgfin go-git/go-git#1935- [v5] plumbing: format/idxfile, Fix version and fanout checks by
@pjbgfin go-git/go-git#1937
... (truncated)
Commits
3c3be60Merge pull request #2137 from go-git/validate-v53fba897plumbing: format/packfile, cap delta chain depth in parsera97d660Merge pull request #2125 from hiddeco/v5/format-input-boundsaeaa125plumbing: format/objfile, require Header before Read1f38e17plumbing: format/packfile, bound inflate sizef7545a0plumbing: format/idxfile, bound nr by file size170b881Merge pull request #2116 from pjbgf/symlink-v57b6d994Merge pull request #2117 from hiddeco/v5/worktree-fs-mkdirall-root-noopf0709b3git: Stop validating symlink target paths776d00fgit: Allow MkdirAll on worktree-root paths- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the Security Alerts page.
Package Dependencies
github.com/go-git/go-git/v5
go
5.16.5 → 5.19.1
Minor
Technical Details
| ID: | 15854705 |
| UUID: | 4478789589 |
| Node ID: | PR_kwDOPZYtxc7dIzcP |
| Host: | GitHub |
| Repository: | codeGROOVE-dev/gitMDM |