From 689af967062c3a4fcc8ccac12e782136374677ab Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Wed, 3 Apr 2024 20:14:23 +0000 Subject: [PATCH] Update all dependencies --- .github/workflows/build-push-chart.yml | 10 +++++----- .github/workflows/codeql.yml | 4 ++-- .github/workflows/scorecard.yml | 2 +- Dockerfile | 4 ++-- go.mod | 4 ++-- go.sum | 4 ++++ 6 files changed, 16 insertions(+), 12 deletions(-) diff --git a/.github/workflows/build-push-chart.yml b/.github/workflows/build-push-chart.yml index af6edf7..396d176 100644 --- a/.github/workflows/build-push-chart.yml +++ b/.github/workflows/build-push-chart.yml @@ -17,7 +17,7 @@ permissions: read-all jobs: setenv: - uses: ortelius/workflow-toolkit/.github/workflows/env-config-workflow.yml@a3e5ee9fed858b51eb6a3b5e78856b5a32c70163 + uses: ortelius/workflow-toolkit/.github/workflows/env-config-workflow.yml@2f7ded9762f8a8d99c9c39df2f29a8e84a3c5b35 with: gh_head_ref: ${{ github.head_ref }} gh_ref_name: ${{ github.ref_name }} @@ -27,7 +27,7 @@ jobs: gh_run_number: ${{ github.run_number }} release: - uses: ortelius/workflow-toolkit/.github/workflows/container-release-workflow.yml@a3e5ee9fed858b51eb6a3b5e78856b5a32c70163 + uses: ortelius/workflow-toolkit/.github/workflows/container-release-workflow.yml@2f7ded9762f8a8d99c9c39df2f29a8e84a3c5b35 needs: setenv with: gh_repository_owner: ${{ github.repository_owner }} @@ -43,7 +43,7 @@ jobs: permissions: security-events: write statuses: write - uses: ortelius/workflow-toolkit/.github/workflows/trivy-scan-workflow.yml@a3e5ee9fed858b51eb6a3b5e78856b5a32c70163 + uses: ortelius/workflow-toolkit/.github/workflows/trivy-scan-workflow.yml@2f7ded9762f8a8d99c9c39df2f29a8e84a3c5b35 needs: [setenv, release] with: gh_repository_owner: ${{ github.repository_owner }} @@ -54,7 +54,7 @@ jobs: helm: permissions: contents: write - uses: ortelius/workflow-toolkit/.github/workflows/helm-release-workflow.yml@a3e5ee9fed858b51eb6a3b5e78856b5a32c70163 + uses: ortelius/workflow-toolkit/.github/workflows/helm-release-workflow.yml@2f7ded9762f8a8d99c9c39df2f29a8e84a3c5b35 needs: [setenv, release] with: gh_repository_owner: ${{ github.repository_owner }} @@ -73,7 +73,7 @@ jobs: gh_token: ${{ secrets.HELM_INDEXER_TOKEN }} sbom: - uses: ortelius/workflow-toolkit/.github/workflows/sbom-generation-workflow.yml@a3e5ee9fed858b51eb6a3b5e78856b5a32c70163 + uses: ortelius/workflow-toolkit/.github/workflows/sbom-generation-workflow.yml@2f7ded9762f8a8d99c9c39df2f29a8e84a3c5b35 needs: [setenv, release] with: gh_repository_owner: ${{ github.repository_owner }} diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index cebde45..cbb0f15 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -29,11 +29,11 @@ jobs: uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Initialize CodeQL - uses: github/codeql-action/init@05963f47d870e2cb19a537396c1f668a348c7d8f # v3.24.8 + uses: github/codeql-action/init@1b1aada464948af03b950897e5eb522f92603cc2 # v3.24.9 with: languages: "go" - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@05963f47d870e2cb19a537396c1f668a348c7d8f # v3.24.8 + uses: github/codeql-action/analyze@1b1aada464948af03b950897e5eb522f92603cc2 # v3.24.9 with: category: "/language:go" diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 70f7392..f4814e3 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -44,6 +44,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@05963f47d870e2cb19a537396c1f668a348c7d8f # v3.24.8 + uses: github/codeql-action/upload-sarif@1b1aada464948af03b950897e5eb522f92603cc2 # v3.24.9 with: sarif_file: results.sarif diff --git a/Dockerfile b/Dockerfile index 67543e5..6b3cae1 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,4 +1,4 @@ -FROM cgr.dev/chainguard/go@sha256:7db365e06f91f903cfc7f22f62316525e5a4666708ed0fd9a70fc96c9b442af8 AS builder +FROM cgr.dev/chainguard/go@sha256:8a6f881262e5aeeb2a93597dde5aca70cb42e32f474704838191761c96301951 AS builder WORKDIR /app COPY . /app @@ -8,7 +8,7 @@ RUN go install github.com/swaggo/swag/cmd/swag@latest; \ go mod tidy; \ go build -o main . -FROM cgr.dev/chainguard/glibc-dynamic@sha256:f1c84f0a86e8e9aa581a2853cee5513197dd98ea9b7a34054f491e102a238878 +FROM cgr.dev/chainguard/glibc-dynamic@sha256:e1f6ffa9629cc74d31d3d28007d846264f7a6cc2447bfa4275e9e7238a6619c3 WORKDIR /app diff --git a/go.mod b/go.mod index 3d5d3f0..6400625 100644 --- a/go.mod +++ b/go.mod @@ -3,8 +3,8 @@ module cli go 1.20 require ( - github.com/arangodb/go-driver/v2 v2.0.3 - github.com/gofiber/fiber/v2 v2.52.2 + github.com/arangodb/go-driver/v2 v2.1.0 + github.com/gofiber/fiber/v2 v2.52.4 github.com/ortelius/scec-commons v0.1.30 github.com/swaggo/swag v1.16.3 ) diff --git a/go.sum b/go.sum index 48508b5..f580202 100644 --- a/go.sum +++ b/go.sum @@ -8,6 +8,8 @@ github.com/andybalholm/brotli v1.0.6 h1:Yf9fFpf49Zrxb9NlQaluyE92/+X7UVHlhMNJN2sx github.com/andybalholm/brotli v1.0.6/go.mod h1:fO7iG3H7G2nSZ7m0zPUDn85XEX2GTukHGRSepvi9Eig= github.com/arangodb/go-driver/v2 v2.0.3 h1:B/tKSgf4KSiLN0biqcH8Tm/Dj8nZdP5Lia2/xdy8KD0= github.com/arangodb/go-driver/v2 v2.0.3/go.mod h1:iibpBwIQbE4uejDFCvLqwCVfgE72F51ZEehPme+BAug= +github.com/arangodb/go-driver/v2 v2.1.0 h1:zoKhWQ1zL7+rCft7389IPBZbkAXh5QfcwYzD+D1pdrg= +github.com/arangodb/go-driver/v2 v2.1.0/go.mod h1:UwB6Razwk00jOSkJiSRSHlnyXcFPKcH2s3lYrumfXhM= github.com/arangodb/go-velocypack v0.0.0-20200318135517-5af53c29c67e h1:Xg+hGrY2LcQBbxd0ZFdbGSyRKTYMZCfBbw/pMJFOk1g= github.com/arangodb/go-velocypack v0.0.0-20200318135517-5af53c29c67e/go.mod h1:mq7Shfa/CaixoDxiyAAc5jZ6CVBAyPaNQCGS7mkj4Ho= github.com/cenkalti/backoff v2.2.1+incompatible h1:tNowT99t7UNflLxfYYSlKYsBpXdEet03Pg2g16Swow4= @@ -50,6 +52,8 @@ github.com/gofiber/fiber/v2 v2.52.1 h1:1RoU2NS+b98o1L77sdl5mboGPiW+0Ypsi5oLmcYlg github.com/gofiber/fiber/v2 v2.52.1/go.mod h1:KEOE+cXMhXG0zHc9d8+E38hoX+ZN7bhOtgeF2oT6jrQ= github.com/gofiber/fiber/v2 v2.52.2 h1:b0rYH6b06Df+4NyrbdptQL8ifuxw/Tf2DgfkZkDaxEo= github.com/gofiber/fiber/v2 v2.52.2/go.mod h1:KEOE+cXMhXG0zHc9d8+E38hoX+ZN7bhOtgeF2oT6jrQ= +github.com/gofiber/fiber/v2 v2.52.4 h1:P+T+4iK7VaqUsq2PALYEfBBo6bJZ4q3FP8cZ84EggTM= +github.com/gofiber/fiber/v2 v2.52.4/go.mod h1:KEOE+cXMhXG0zHc9d8+E38hoX+ZN7bhOtgeF2oT6jrQ= github.com/gofiber/swagger v0.1.14 h1:o524wh4QaS4eKhUCpj7M0Qhn8hvtzcyxDsfZLXuQcRI= github.com/gofiber/swagger v0.1.14/go.mod h1:DCk1fUPsj+P07CKaZttBbV1WzTZSQcSxfub8y9/BFr8= github.com/gofiber/swagger v1.0.0 h1:BzUzDS9ZT6fDUa692kxmfOjc1DZiloLiPK/W5z1H1tc=