deps: Update Build Tools#735
Open
renovate-bot wants to merge 1 commit intoGoogleCloudPlatform:mainfrom
Open
Conversation
3edef23 to
035abab
Compare
035abab to
cae4b69
Compare
7ed7c42 to
cb3803c
Compare
d5a09ab to
0aaf5de
Compare
e1b295f to
d8e3571
Compare
d8e3571 to
e8859ab
Compare
e8859ab to
9fe0f21
Compare
9fe0f21 to
b001730
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v1.19.2→v1.20.2v0.2.0→v0.3.0v1.14.3→v1.15.0Release Notes
cert-manager/cert-manager (cert-manager/cert-manager)
v1.20.2Compare Source
v1.20.2 fixes invalid YAML generated in the Helm chart when both
webhook.configand
webhook.volumesare defined, and bumps Go to 1.26.2 along with dependenciesto address reported vulnerabilities.
Changes by Kind
Bug or Regression
webhook.configandwebhook.volumesare defined. (#8665, @cert-manager-bot)Other (Cleanup or Flake)
v1.20.1Compare Source
v1.20.0Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.20.0 adds alpha support for the new ListenerSet resource, adds support for Azure Private DNS; parentRefs are no longer required when using ACME with Gateway API, and OtherNames was promoted to Beta.
Changes by Kind
Feature
imagePullSecretsin thestartupapicheck-jobHelm template to enable pulling images from private registries. (#8186, @mathieu-clnk)parentRefoverride annotations on the Certificate resource. (#8518, @hjoshi123)venafi.cert-manager.io/custom-fieldsannotation on Issuer/ClusterIssuer and use it as base with override/append capabilities on Certificate level. (#8301, @k0da)acme.cert-manager.io/http01-ingress-ingressclassnameto overridehttp01.ingress.ingressClassNamefield in HTTP-01 challenge solvers. (#8244, @lunarwhite)global.nodeSelectorto helm chart to perform amergeand allow for a singlenodeSelectorto be set across all services. (#8195, @StingRayZA)XListenerSetsfeature gate (#8394, @hjoshi123)Documentation
Bug or Regression
Add full detailed DNS-01 errors to the events attached to the Challenge, for easier debugging (#8221, @wallrj-cyberark)
v1.25.5to fixCVE-2025-61727andCVE-2025-61729(#8290, @octo-sts[bot])cert-manager. Previously, it was set depending on various factors (namespace cert-manager is installed in and/or Helm release name). (#8162, @LiquidPL)Other (Cleanup or Flake)
XListenerSetsfeature gate toListenerSets(#8501, @hjoshi123)v1.19.5Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
This is a simple patch release to fix some reported vulnerabilities. All users are recommended to upgrade.
Changes by Kind
Other (Cleanup or Flake)
v1.19.4Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.19.4 is a simple patch release to fix some reported vulnerabilities - notably CVE-2026-24051 and CVE-2025-68121. All users should upgrade.
Changes by Kind
Bug or Regression
v1.19.3Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
This release contains three bug fixes, including a fix for the MODERATE severity DoS issue in GHSA-gx3x-vq4p-mhhv. All users should upgrade to the latest release.
Changes by Kind
Bug or Regression
Other (Cleanup or Flake)
elastic/crd-ref-docs (github.com/elastic/crd-ref-docs)
v0.3.0Compare Source
Changelog
89d6758Support +required, +k8s:required, +optional and +k8s:optional markers (#193)c85b7b3Update to Go 1.25.6 (#196)c04b1dbValidation: Format items:Pattern as code (#139)23e5e40chore(deps): update actions/cache digest to0057852(#183)9bb5c20chore(deps): update actions/cache digest to0400d5f(#165)e819da5chore(deps): update actions/checkout digest to08eba0b(#170)da1c973chore(deps): update actions/checkout digest to34e1148(#189)fa1f30dchore(deps): update actions/setup-go action to v6 (#178)5475829chore(deps): update dependency go to v1.25.1 (#166)b476dacchore(deps): update dependency go to v1.25.4 (#185)03169f2chore(deps): update goreleaser/goreleaser-action digest toe435ccd(#172)4257f09fix(deps): update module github.com/Masterminds/sprig/v3 to v3.3.0 (#184)e9f8aa1fix(deps): update module github.com/spf13/cobra to v1.10.1 (#177)1ffa2adfix(deps): update module github.com/stretchr/testify to v1.11.1 (#175)5350263fix(deps): update module go.uber.org/zap to v1.27.1 (#190)9089e87fix(deps): update module golang.org/x/tools to v0.36.0 (#169)b7cc7bbfix(deps): update module golang.org/x/tools to v0.37.0 (#180)72320bafix(deps): update module golang.org/x/tools to v0.39.0 (#186)9f470c6fix(deps): update module k8s.io/apimachinery to v0.34.0 (#173)3193708fix(deps): update module k8s.io/apimachinery to v0.34.1 (#179)9fd22cbfix(deps): update module k8s.io/apimachinery to v0.34.2 (#187)f0fb3b4fix(deps): update module sigs.k8s.io/controller-tools to v0.19.0 (#176)1a6bb36fix: support both types of default marker (#164)hashicorp/terraform (hashicorp/terraform)
v1.15.0Compare Source
1.15.0 (April 29, 2026)
NEW FEATURES:
We now produce builds for Windows ARM64 (#32719)
You can set a
deprecatedattribute on variable and output blocks to indicate that they are deprecated. This will produce warnings when passing in a value for a deprecated variable or when referencing a deprecated output. (#38001)backend/s3: Support authentication via
aws login(#37976)validate: The validate command now checks the
backendblock. This ensures the backend type exists, that all required attributes are present, and that the backend's own validation logic passes. (#38021)convertfunction, which allows for precise inline type conversions (#38160)Terraform now supports variables and locals in module source and version attributes (#38217)
ENHANCEMENTS:
config:
outputblocks now can have an explicit type constraints (#36411)ssh-based provisioner (file + remote-exec): Re-enable support for PowerShell (#37794)
terraform init log timestamps include millisecond precision (#37818)
init: skip dependencies declared in development override. This allows you to use
terraform initwith developer overrides and install dependencies that are not declared in the override file. (#37884)Terraform Test: Allow functions within mock blocks (#34672)
improve detection of deprecated resource attributes / blocks (#38077)
Deprecation messages providers set on resources / blocks / attributes are now part of the deprecation warning (#38135)
Include which attribute paths are marked as sensitive in list_start JSON logs (#38197)
Add input variable validation for Stacks (#38240)
When comparing a container value to null, only top level marks are now considered for the result. (#38270)
As part of supporting variables in module sources, most commands now accept variable values (#38276)
BUG FIXES:
testing: File-level error diagnostics are now included in JUnit XML skipped test elements, ensuring CI/CD pipelines can detect validation failures (#37801)
A refresh-only plan could result in a non-zero exit code with no changes (#37406)
cli: Fixed crash in
terraform show -jsonwhen plan contains ephemeral resources with preconditions or postconditions (#37834)cli: Fixed
terraform init -jsonto properly format all backend configuration messages as JSON instead of plain text (#37911)state show: Thestate showcommand will now explicitly fail and return code 1 when it fails to render the named resources state (#37933)apply: Terraform will raise an explicit error if a plan file intended for one workspace is applied against another workspace (#37954)
lifecycle:
replace_triggered_bynow reports an error when given an invalid attribute reference that does not exist in the target resource (#36740)backend: Fix nil pointer dereference crash during
terraform initwhen the destination backend returns an error (#38027)stacks: send progress events if the plan fails for better UI integration (#38039)
stacks: component instances should report no-op plan/apply. This solves a UI inconsistency with convergence destroy plans (#38049)
backend/http: Return conflicting lock info from HTTP backend instead of the lock that failed to be taken (#38144)
states: fixed a bug that caused Terraform to be unable to identify when two states had different output values. This may have caused issues in specific circumstances like backend migrations. (#38181)
cloud: terraform cloud and registry discovery network requests are now more resilient, making temporary network or service related errors less common (#38064)
Enable formatting of
.tfquery.hclfiles byterraform fmt(#38398)Fix
validatenot returning JSON for some early diagnostics (#38400)Fix Terraform Stacks plugin installation error (#38406)
NOTES:
initializing_provider_plugin_message). The change should not have any end-user impact aside from theinitcommand output. (#38227)UPGRADE NOTES:
AWS_USE_FIPS_ENDPOINTandAWS_USE_DUALSTACK_ENDPOINTenvironment variables now only respecttrueorfalsevalues, aligning with the AWS SDK for Go. This replaces the previous behavior which treated any non-empty value astrue. (#37601)Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.14.9Compare Source
1.14.9 (April 20, 2026)
BUG FIXES:
v1.14.8Compare Source
1.14.8 (March 25, 2026)
BUG FIXES:
v1.14.7Compare Source
1.14.7 (March 11, 2026)
NOTES:
v1.14.6Compare Source
1.14.6 (February 25, 2026)
BUG FIXES:
v1.14.5Compare Source
1.14.5 (February 11, 2026)
BUG FIXES:
v1.14.4Compare Source
1.14.4 (January 28, 2026)
BUG FIXES:
backend: Fix nil pointer dereference crash during
terraform initwhen the destination backend returns an error (#38027)Fixes an issue where any warning diagnostics generated during terraform query execution failed to render in the cloud backend session (#38040)
actions in modules without instances failed the plan graph (#38089)
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.