Skip to content

chore(main): release 0.2.3#185

Merged
AlexsJones merged 1 commit into
mainfrom
release-please--branches--main
Oct 13, 2022
Merged

chore(main): release 0.2.3#185
AlexsJones merged 1 commit into
mainfrom
release-please--branches--main

Conversation

@github-actions

@github-actions github-actions Bot commented Oct 4, 2022

Copy link
Copy Markdown
Contributor

🤖 I have created a release beep boop

0.2.3 (2022-10-13)

Features

  • Eventing (#187) (3f7fcd2)
  • fixing informer issues (#191) (837b0c6)
  • only fire modify event when FeatureFlagConfiguration Generation field has changed (#167) (e2fc7ee)

This PR was generated with Release Please. See documentation.

@github-actions github-actions Bot force-pushed the release-please--branches--main branch 2 times, most recently from 5060e58 to 7dfc4f6 Compare October 13, 2022 08:42
@github-actions github-actions Bot force-pushed the release-please--branches--main branch from 7dfc4f6 to 3d8d786 Compare October 13, 2022 11:41
@AlexsJones AlexsJones merged commit ccb629e into main Oct 13, 2022
@AlexsJones AlexsJones deleted the release-please--branches--main branch October 13, 2022 11:44
@github-actions

Copy link
Copy Markdown
Contributor Author

raphael-wigoutschnigg-dt pushed a commit to open-feature-forking/flagd that referenced this pull request Mar 11, 2025
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
beeme1mr added a commit that referenced this pull request May 20, 2026
## Summary

Resolved 5 open Dependabot security alerts by bumping vulnerable
dependencies.

## Dependabot Alerts Resolved

| Alert | Package | Severity | Fix |
|-------|---------|----------|-----|
| #179 | `postcss` | **medium** | Bumped from 8.5.8 to 8.5.14 in
`playground-app/package-lock.json` (vite resolves postcss to patched
version naturally, no override needed) |
| #181 | `github.com/go-git/go-git/v5` | **high** | Bumped from 5.18.0
to 5.19.1 in `test/integration/go.mod` |
| #182 | `github.com/go-git/go-billy/v5` | **medium** | Bumped from
5.8.0 to 5.9.0 via go-git upgrade |
| #183 | `github.com/go-git/go-billy/v5` | **high** | Bumped from 5.8.0
to 5.9.0 via go-git upgrade |
| #180 | `github.com/in-toto/in-toto-golang` | **medium** | Bumped from
0.10.0 to 0.11.0 in `test/integration/go.mod` |

## Unresolvable alerts

- **Alert #184** (`github.com/docker/docker`, high) — vulnerable `<=
28.5.2`; no patched Go module version is published yet (latest is
28.5.2; fix is on `moby/moby/v2` 2.0.0-beta.14, a different module path)
- **Alert #185** (`github.com/docker/docker`, medium) — same; no patched
version available on the `docker/docker` module path
- **Alert #186** (`github.com/docker/docker`, high) — same; no patched
version available on the `docker/docker` module path
- **Alert #152** (`github.com/docker/docker`, high) — requires >= 29.3.1
but no patched Go module version is published yet
- **Alert #151** (`github.com/docker/docker`, medium) — same; requires
>= 29.3.1, no patched version available

All docker/docker alerts are transitive deps of `testcontainers-go` in
the orphaned integration-test module; will be resolved when upstream
cuts a Go module under the existing `docker/docker` path or
testcontainers-go migrates to `moby/moby/v2`.

---------

Signed-off-by: Jonathan Norris <jonathan.norris@dynatrace.com>
Co-authored-by: Michael Beemer <beeme1mr@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants