Skip to content

fix: nightly security dependency updates - #3

Open
github-actions[bot] wants to merge 1 commit into
mainfrom
security-nightly-updates
Open

fix: nightly security dependency updates#3
github-actions[bot] wants to merge 1 commit into
mainfrom
security-nightly-updates

Conversation

@github-actions

@github-actions github-actions Bot commented Aug 18, 2026

Copy link
Copy Markdown

Security Update

This is an automated PR triggered by the nightly OSV-Scanner security scan.

The following dependencies were updated to resolve known vulnerabilities:

Package & Version Advisory Link
go.opentelemetry.io/otel@v1.44.0 GO-2026-5158
golang.org/x/crypto@v0.55.0 GO-2026-6303
golang.org/x/crypto@v0.56.0 GO-2026-6354
golang.org/x/crypto@v0.56.0 GO-2026-6355
golang.org/x/mod@v0.40.0 GO-2026-6179
golang.org/x/mod@v0.40.0 GO-2026-6180

Verification: Updated via go get <pkg>@v<version> and go mod tidy.

Note: This PR was created with GITHUB_TOKEN, which does not trigger pull_request workflows.
CI checks will not run automatically. Push an empty commit (git commit --allow-empty -m "trigger CI")
to kick off CI before merging.

TODO: Migrate to a GitHub App token via actions/create-github-app-token to trigger CI automatically.

@github-actions
github-actions Bot force-pushed the security-nightly-updates branch from 0e30875 to 1df2823 Compare September 3, 2026 06:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant