build(deps): bump github.com/getkin/kin-openapi from 0.118.0 to 0.131.0 in /dev-tools#4920
Conversation
Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
🎉 Snyk checks have passed. No issues have been found so far.✅ security/snyk check is complete. No issues have been found. (View Details) ✅ license/snyk check is complete. No issues have been found. (View Details) |
|
This pull request does not have a backport label. Could you fix it @dependabot[bot]? 🙏
|
…oapi-codegen and upgrade
|
|
@Mergifyio backport 7.17 8.17 8.18 8.19 9.0 |
✅ Backports have been createdDetails
|
….0 in /dev-tools (#4920) * build(deps): bump github.com/getkin/kin-openapi in /dev-tools Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com> * Replace github.com/deepmap/oapi-codegen with github.com/oapi-codegen/oapi-codegen and upgrade --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Shaunak Kashyap <ycombinator@gmail.com> (cherry picked from commit fc7115f) # Conflicts: # .golangci.yml # dev-tools/go.mod # dev-tools/go.sum # internal/pkg/api/openapi.gen.go # main.go # pkg/api/client.gen.go # pkg/api/types.gen.go
….0 in /dev-tools (#4920) * build(deps): bump github.com/getkin/kin-openapi in /dev-tools Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com> * Replace github.com/deepmap/oapi-codegen with github.com/oapi-codegen/oapi-codegen and upgrade --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Shaunak Kashyap <ycombinator@gmail.com> (cherry picked from commit fc7115f) # Conflicts: # .golangci.yml # dev-tools/go.mod # dev-tools/go.sum # internal/pkg/api/openapi.gen.go # main.go # pkg/api/types.gen.go
….0 in /dev-tools (#4920) * build(deps): bump github.com/getkin/kin-openapi in /dev-tools Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com> * Replace github.com/deepmap/oapi-codegen with github.com/oapi-codegen/oapi-codegen and upgrade --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Shaunak Kashyap <ycombinator@gmail.com> (cherry picked from commit fc7115f) # Conflicts: # .golangci.yml # dev-tools/go.mod # dev-tools/go.sum # internal/pkg/api/openapi.gen.go # main.go # pkg/api/types.gen.go
….0 in /dev-tools (#4920) * build(deps): bump github.com/getkin/kin-openapi in /dev-tools Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com> * Replace github.com/deepmap/oapi-codegen with github.com/oapi-codegen/oapi-codegen and upgrade --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Shaunak Kashyap <ycombinator@gmail.com> (cherry picked from commit fc7115f) # Conflicts: # .golangci.yml # dev-tools/go.mod # dev-tools/go.sum # internal/pkg/api/openapi.gen.go # main.go # pkg/api/types.gen.go
….0 in /dev-tools (#4920) * build(deps): bump github.com/getkin/kin-openapi in /dev-tools Bumps [github.com/getkin/kin-openapi](https://github.com/getkin/kin-openapi) from 0.118.0 to 0.131.0. - [Release notes](https://github.com/getkin/kin-openapi/releases) - [Commits](getkin/kin-openapi@v0.118.0...v0.131.0) --- updated-dependencies: - dependency-name: github.com/getkin/kin-openapi dependency-version: 0.131.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com> * Replace github.com/deepmap/oapi-codegen with github.com/oapi-codegen/oapi-codegen and upgrade --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Shaunak Kashyap <ycombinator@gmail.com> (cherry picked from commit fc7115f) # Conflicts: # .golangci.yml # dev-tools/go.mod # dev-tools/go.sum # main.go
@ycombinator do we need these backports? This go.mod only exists on main due to #4694, in every other branch we just hardcode tools in GHA jobs. If we want to update this in those branches, backporting isn't the right path here imo. |
Yeah, I agree these backports are problematic because #4694 hasn't been backported. Unfortunately, I do think we should continue to backport dependency bumps until we've fixed our automation to do dependency bumps directly on active branches other than
|





Bumps github.com/getkin/kin-openapi from 0.118.0 to 0.131.0.
Release notes
Sourced from github.com/getkin/kin-openapi's releases.
... (truncated)
Commits
67f0b23openapi3filter: de-register ZipFileBodyDecoder and make a few decoders public...6da871eopenapi3filter: apply default values of an array in a query param with explod...a34baf0openapi3: delete origin keys only when IncludeOrigin=true (#1055)2d3e67ause origin to minimize collisions (#1057)e3d68dcRemove redundant ExcludeResponseBody check in ValidateResponse (#1056)050a930openapi3gen: Fix issue with separate component generated for time.Time (#1052)72fb819feat(openapi3gen): Customize json.RawMessage (#1050)cea0a13openapi2conv: convert references in nested additionalProperties schemas (#1047)f476f7bopenapi3filter: validation ofx-www-form-urlencodedwith arbitrary nested a...325ceccopenapi3filter: simplify ValidateRequest implementation (#1041)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.