-
Notifications
You must be signed in to change notification settings - Fork 933
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore(deps): bump golang.org/x/oauth2 from 0.26.0 to 0.28.0 #4177
base: master
Are you sure you want to change the base?
chore(deps): bump golang.org/x/oauth2 from 0.26.0 to 0.28.0 #4177
Conversation
Published E2E Test Results 4 files 4 suites 3h 11m 52s ⏱️ For more details on these failures, see this check. Results for commit a607eac. ♻️ This comment has been updated with latest results. |
Published Unit Test Results2 307 tests 2 307 ✅ 2m 59s ⏱️ Results for commit a607eac. ♻️ This comment has been updated with latest results. |
@dependabot rebase |
79afb16
to
77ad47f
Compare
@dependabot rebase |
77ad47f
to
0d89b93
Compare
Bumps [golang.org/x/oauth2](https://github.com/golang/oauth2) from 0.26.0 to 0.28.0. - [Commits](golang/oauth2@v0.26.0...v0.28.0) --- updated-dependencies: - dependency-name: golang.org/x/oauth2 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
0d89b93
to
a607eac
Compare
|
@dependabot rebase |
Looks like this PR is already up-to-date with master! If you'd still like to recreate it from scratch, overwriting any edits, you can request |
This PR will fix CVE-2025-22868 I did some local testing with this PR. I was able to reproduce the golangci-lint errors with the same version of golangci-lint as used in github action workflow (1.61.0). After I upgraded golangci-lint to 1.64.8, they are fixed. So I created a PR for this golangci-lint upgrade (#4213), which hopefully should address these lint errors in this PR and also some other recent PRs. Can someone please review? |
Bumps golang.org/x/oauth2 from 0.26.0 to 0.28.0.
Commits
0042180
oauth2: Deep copy context client in NewClientce350bf
oauth2: remove unneeded TokenSource implementation in transport test44967ab
google: fix typos9c82a8c
oauth2.go: use a more straightforward return value681b4d8
jws: split token into fixed number of parts3f78298
all: upgrade go directive to at least 1.23.0 [generated]109dabf
endpoints: add links/provider for Discordac571fa
oauth2: fix docs for Config.DeviceAuth314ee5b
endpoints: add patreon endpointDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)