Skip to content

fix(deps): update module github.com/spf13/cobra to v1.10.2#79

Open
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/github.com-spf13-cobra-1.x
Open

fix(deps): update module github.com/spf13/cobra to v1.10.2#79
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/github.com-spf13-cobra-1.x

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Sep 6, 2025

This PR contains the following updates:

Package Change Age Confidence
github.com/spf13/cobra v1.9.1v1.10.2 age confidence

Release Notes

spf13/cobra (github.com/spf13/cobra)

v1.10.2

Compare Source

🔧 Dependencies

  • chore: Migrate from gopkg.in/yaml.v3 to go.yaml.in/yaml/v3 by @​dims in #​2336 - the gopkg.in/yaml.v3 package has been deprecated for some time: this should significantly cleanup dependency/supply-chains for consumers of spf13/cobra

📈 CI/CD

🔥✍🏼 Docs

🍂 Refactors

🤗 New Contributors

Full Changelog: spf13/cobra@v1.10.1...v1.10.2

Thank you to our amazing contributors!!!!! 🐍 🚀

v1.10.1

Compare Source

🐛 Fix

v1.0.9 of pflags brought back ParseErrorsWhitelist and marked it as deprecated

Full Changelog: spf13/cobra@v1.10.0...v1.10.1

v1.10.0

Compare Source

What's Changed

🚨 Attention!

This version of pflag carried a breaking change: it renamed ParseErrorsWhitelist to ParseErrorsAllowlist which can break builds if both pflag and cobra are dependencies in your project.

  • If you use both pflag and cobra, upgrade pflagto 1.0.8 andcobrato1.10.0`
  • or use the newer, fixed version of pflag v1.0.9 which keeps the deprecated ParseErrorsWhitelist

More details can be found here: #​2303 (comment)

✨ Features
🐛 Fix
🪠 Testing
📝 Docs

New Contributors

Full Changelog: spf13/cobra@v1.9.1...v1.9.2


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@socket-security
Copy link

socket-security bot commented Sep 6, 2025

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedgithub.com/​spf13/​cobra@​v1.9.1 ⏵ v1.10.295 +1100100100100

View full report

Copy link

@ellipsis-dev ellipsis-dev bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Important

Looks good to me! 👍

Reviewed everything up to 710a3c9 in 30 seconds. Click for details.
  • Reviewed 32 lines of code in 2 files
  • Skipped 0 files when reviewing.
  • Skipped posting 2 draft comments. View those below.
  • Modify your settings and rules to customize what types of comments Ellipsis leaves. And don't forget to react with 👍 or 👎 to teach Ellipsis.
1. go.mod:10
  • Draft comment:
    Updated dependency: upgrading github.com/spf13/cobra from v1.9.1 to v1.10.1. Note that v1.10.1 now pulls in pflag v1.0.9 which reintroduces the deprecated ParseErrorsWhitelist field. Please verify that any usage relying on pflag behavior remains compatible.
  • Reason this comment was not posted:
    Confidence changes required: 0% <= threshold 50% None
2. go.sum:121
  • Draft comment:
    Checksums updated for github.com/spf13/cobra and github.com/spf13/pflag (v1.0.9). Ensure these new checksums align with the upstream changes and that no compatibility issues arise from the reintroduced deprecated field.
  • Reason this comment was not posted:
    Confidence changes required: 0% <= threshold 50% None

Workflow ID: wflow_lj6e72H1Dj4FQGvq

You can customize Ellipsis by changing your verbosity settings, reacting with 👍 or 👎, replying to comments, or adding code review rules.

@renovate renovate bot changed the title fix(deps): update module github.com/spf13/cobra to v1.10.1 fix(deps): update module github.com/spf13/cobra to v1.10.2 Dec 4, 2025
@renovate renovate bot force-pushed the renovate/github.com-spf13-cobra-1.x branch from 710a3c9 to 5e2b192 Compare December 4, 2025 04:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants