Bump github.com/kubescape/storage from 0.0.166 to 0.2.0#2719
Bump github.com/kubescape/storage from 0.0.166 to 0.2.0#2719dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Kusari Analysis Results:
While the dependency analysis initially flagged CVE-2025-52881 (HIGH severity) in github.com/opencontainers/selinux@v1.12.0, the subsequent code analysis confirms this vulnerability is no longer present in the current PR state. The govulncheck scan found zero vulnerabilities across all severity levels, indicating the dependency chain has been updated to remediate the container escape risk. All security metrics are clean with no vulnerabilities, code issues, secrets, or workflow issues detected. The PR is safe to merge in its current state. Note View full detailed analysis result for more information on the output and the checks that were run.
Found this helpful? Give it a 👍 or 👎 reaction! |
|
This pull request has been automatically marked as stale because it has not had recent activity (60 days of inactivity). |
|
@dependabot rebase |
32eb074 to
1b297bf
Compare
|
Kusari PR Analysis rerun based on - 1b297bf performed at: 2025-09-06T16:55:27Z - link to updated analysis |
|
@dependabot rebase |
1b297bf to
6c672d3
Compare
|
Kusari PR Analysis rerun based on - 6c672d3 performed at: 2025-09-17T16:15:34Z - link to updated analysis |
|
@dependabot rebase |
6c672d3 to
0878402
Compare
|
Kusari PR Analysis rerun based on - 0878402 performed at: 2025-09-17T23:43:50Z - link to updated analysis |
|
@dependabot rebase |
0878402 to
1ffc2d4
Compare
|
@dependabot rebase |
1ffc2d4 to
134ced5
Compare
|
@dependabot recreate |
134ced5 to
c7ac47d
Compare
|
@dependabot rebase |
c7ac47d to
88fb746
Compare
|
@dependabot recreate |
88fb746 to
228a6f0
Compare
|
@dependabot recreate |
228a6f0 to
4b1868f
Compare
|
@dependabot rebase |
4b1868f to
29dbc49
Compare
|
@dependabot recreate |
29dbc49 to
00218b2
Compare
|
@dependabot recreate |
00218b2 to
6296b42
Compare
|
Kusari PR Analysis rerun based on - 6296b42 performed at: 2026-02-27T15:21:08Z - link to updated analysis |
|
@dependabot recreate |
6296b42 to
47c156a
Compare
|
Kusari PR Analysis rerun based on - 47c156a performed at: 2026-02-27T15:29:51Z - link to updated analysis |
|
@dependabot recreate |
Bumps [github.com/kubescape/storage](https://github.com/kubescape/storage) from 0.0.166 to 0.2.0. - [Release notes](https://github.com/kubescape/storage/releases) - [Commits](https://github.com/kubescape/storage/commits) --- updated-dependencies: - dependency-name: github.com/kubescape/storage dependency-version: 0.2.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
47c156a to
3bc6b0c
Compare
Bumps github.com/kubescape/storage from 0.0.166 to 0.2.0.
Release notes
Sourced from github.com/kubescape/storage's releases.
... (truncated)
Commits
You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)