-
Notifications
You must be signed in to change notification settings - Fork 120
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build(deps): bump the prod group with 14 updates #8264
Conversation
Bumps the prod group with 14 updates: | Package | From | To | | --- | --- | --- | | [clap](https://github.com/clap-rs/clap) | `4.4.18` | `4.5.0` | | [chrono](https://github.com/chronotope/chrono) | `0.4.33` | `0.4.34` | | [indexmap](https://github.com/indexmap-rs/indexmap) | `2.2.2` | `2.2.3` | | [toml](https://github.com/toml-rs/toml) | `0.8.9` | `0.8.10` | | [thiserror](https://github.com/dtolnay/thiserror) | `1.0.56` | `1.0.57` | | [metrics](https://github.com/metrics-rs/metrics) | `0.22.0` | `0.22.1` | | [num-integer](https://github.com/rust-num/num-integer) | `0.1.45` | `0.1.46` | | [metrics-exporter-prometheus](https://github.com/metrics-rs/metrics) | `0.13.0` | `0.13.1` | | [indicatif](https://github.com/console-rs/indicatif) | `0.17.7` | `0.17.8` | | [tempfile](https://github.com/Stebalien/tempfile) | `3.9.0` | `3.10.0` | | [tonic](https://github.com/hyperium/tonic) | `0.10.2` | `0.11.0` | | [tonic-build](https://github.com/hyperium/tonic) | `0.10.2` | `0.11.0` | | [x25519-dalek](https://github.com/dalek-cryptography/curve25519-dalek) | `2.0.0` | `2.0.1` | | [serde_with](https://github.com/jonasbb/serde_with) | `3.6.0` | `3.6.1` | Updates `clap` from 4.4.18 to 4.5.0 - [Release notes](https://github.com/clap-rs/clap/releases) - [Changelog](https://github.com/clap-rs/clap/blob/master/CHANGELOG.md) - [Commits](clap-rs/clap@v4.4.18...clap_complete-v4.5.0) Updates `chrono` from 0.4.33 to 0.4.34 - [Release notes](https://github.com/chronotope/chrono/releases) - [Changelog](https://github.com/chronotope/chrono/blob/main/CHANGELOG.md) - [Commits](chronotope/chrono@v0.4.33...v0.4.34) Updates `indexmap` from 2.2.2 to 2.2.3 - [Changelog](https://github.com/indexmap-rs/indexmap/blob/master/RELEASES.md) - [Commits](indexmap-rs/indexmap@2.2.2...2.2.3) Updates `toml` from 0.8.9 to 0.8.10 - [Commits](toml-rs/toml@toml-v0.8.9...toml-v0.8.10) Updates `thiserror` from 1.0.56 to 1.0.57 - [Release notes](https://github.com/dtolnay/thiserror/releases) - [Commits](dtolnay/thiserror@1.0.56...1.0.57) Updates `metrics` from 0.22.0 to 0.22.1 - [Changelog](https://github.com/metrics-rs/metrics/blob/main/release.toml) - [Commits](metrics-rs/metrics@metrics-v0.22.0...metrics-v0.22.1) Updates `num-integer` from 0.1.45 to 0.1.46 - [Changelog](https://github.com/rust-num/num-integer/blob/master/RELEASES.md) - [Commits](rust-num/num-integer@num-integer-0.1.45...num-integer-0.1.46) Updates `metrics-exporter-prometheus` from 0.13.0 to 0.13.1 - [Changelog](https://github.com/metrics-rs/metrics/blob/main/release.toml) - [Commits](metrics-rs/metrics@metrics-exporter-prometheus-v0.13.0...metrics-v0.13.1) Updates `indicatif` from 0.17.7 to 0.17.8 - [Release notes](https://github.com/console-rs/indicatif/releases) - [Commits](https://github.com/console-rs/indicatif/commits) Updates `tempfile` from 3.9.0 to 3.10.0 - [Changelog](https://github.com/Stebalien/tempfile/blob/master/CHANGELOG.md) - [Commits](Stebalien/tempfile@v3.9.0...v3.10.0) Updates `tonic` from 0.10.2 to 0.11.0 - [Changelog](https://github.com/hyperium/tonic/blob/master/CHANGELOG.md) - [Commits](hyperium/tonic@v0.10.2...v0.11.0) Updates `tonic-build` from 0.10.2 to 0.11.0 - [Changelog](https://github.com/hyperium/tonic/blob/master/CHANGELOG.md) - [Commits](hyperium/tonic@v0.10.2...v0.11.0) Updates `x25519-dalek` from 2.0.0 to 2.0.1 - [Release notes](https://github.com/dalek-cryptography/curve25519-dalek/releases) - [Commits](dalek-cryptography/curve25519-dalek@2.0.0...x25519-2.0.1) Updates `serde_with` from 3.6.0 to 3.6.1 - [Release notes](https://github.com/jonasbb/serde_with/releases) - [Commits](jonasbb/serde_with@v3.6.0...v3.6.1) --- updated-dependencies: - dependency-name: clap dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod - dependency-name: chrono dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: indexmap dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: toml dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: thiserror dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: metrics dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: num-integer dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: metrics-exporter-prometheus dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: indicatif dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: tempfile dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod - dependency-name: tonic dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod - dependency-name: tonic-build dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod - dependency-name: x25519-dalek dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod - dependency-name: serde_with dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod ... Signed-off-by: dependabot[bot] <support@github.com>
62c183a
to
4a2b8d1
Compare
@upbqdn These commits may need a cryptographic review: But everything else in x25519-dalek that Zebra uses looks fine. The changes in dalek-cryptography/curve25519-dalek@4373695 seem to only affect code behind the |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks for the overview!
Bumps the prod group with 14 updates:
4.4.18
4.5.0
0.4.33
0.4.34
2.2.2
2.2.3
0.8.9
0.8.10
1.0.56
1.0.57
0.22.0
0.22.1
0.1.45
0.1.46
0.13.0
0.13.1
0.17.7
0.17.8
3.9.0
3.10.0
0.10.2
0.11.0
0.10.2
0.11.0
2.0.0
2.0.1
3.6.0
3.6.1
Updates
clap
from 4.4.18 to 4.5.0Changelog
Sourced from clap's changelog.
Commits
a751c5f
chore: Release9ec6c94
chore: Release0735119
docs: Update changelogc4d3959
Merge pull request #5344 from epage/encodef750e57
fix(lex): Use new-ish OsStr API1d9a554
Merge pull request #5343 from epage/msrv4b45d36
chore: Update MSRV to 1.7455b1f94
Merge pull request #5342 from epage/divanea77b98
test(complete): Make it order independentb0fea2b
test(bench): Switch to divanUpdates
chrono
from 0.4.33 to 0.4.34Release notes
Sourced from chrono's releases.
Commits
dc19606
Prepare 0.4.3458a2149
AddStrftimeItems::parse_to_owned
59eeb8c
AddStrftimeItems::parse
79de122
Add more documentation toStrftimeItems::new_with_locale
5b7cf85
Add more documentation toStrftimeItems::new
be6af79
MakeDisplay
format ofTimeDelta
conform better to ISO 8601d1cf0e9
Add test for issue 6510ef34e4
Extend test to more distant datesfc67f3e
Remove obsolete testacb693a
Windows: rewrite usingGetTimeZoneInformationForYear
Updates
indexmap
from 2.2.2 to 2.2.3Changelog
Sourced from indexmap's changelog.
Commits
406bbdb
Merge pull request #312 from cuviper/release-2.2.33b79b87
Release 2.2.38e6753c
Merge pull request #310 from cuviper/shift_inserte3ff25b
Merge pull request #311 from cuviper/test_debug2a33977
Fully mask the"test_debug"
code from normal builds8c206ef
Test shift_insert that moves5debe73
IndexSet::swap_indices is O(1) too4572493
AddIndexSet::shift_insert
based on map's method3b217ca
AddIndexMap::shift_insert
based onEntry
209e3e1
Document equivalence of move_index/swap_indicesUpdates
toml
from 0.8.9 to 0.8.10Commits
7f3e276
chore: Release07c8c2c
docs: Update changelog10392d5
chore: Release4592fe4
docs: Update changelogb7bd3a4
Merge pull request #675 from epage/dotted-key89d1416
fix(edit): Preserve previous line decor on leaf key4e89856
fix(edit): Don't include decor in Key's Display35e5326
Merge pull request #674 from epage/refactor0aca85b
refactor(encode): Remove trait abstraction16c8353
test(edit): Show dotted-key comment bugUpdates
thiserror
from 1.0.56 to 1.0.57Release notes
Sourced from thiserror's releases.
Commits
1d106b1
Release 1.0.578a5c4d1
Use write_str when args only consists of trailing commaf790bee
Phrase flag in terms of whether core::fmt machinery is requiredd43b759
Ignore needless_raw_string_hashes pedantic clippy lint in testd09c418
Touch up PR 286097251d
Merge pull request #286 from nyurik/litstrcd79876
optimize by avoiding second fmt.value() calld7e738e
Optimize simple literals for Display::fmt0717de3
Update ui test suite to nightly-2024-02-08c7c7547
Update ui test suite to nightly-2024-01-31Updates
metrics
from 0.22.0 to 0.22.1Commits
5fd46a9
(cargo-release) version 0.22.135b9d86
woopsf7e979a
fix ahash MSRV nonsense019bc0e
(cargo-release) version 0.13.1f6c3592
(cargo-release) version 0.16.29a5d9dc
fix pointless ahash MSRV bump6eef32a
(cargo-release) version 0.16.1fed20b3
update changelogsf50f914
Updateindexmap
to version2
(#439)bc29c4f
Updatehashbrown
to0.14
(#438)Updates
num-integer
from 0.1.45 to 0.1.46Changelog
Sourced from num-integer's changelog.
Commits
ede2d2c
Merge pull request #62 from cuviper/release-0.1.46c7f506e
Release 0.1.463ac8866
Merge pull request #42 from aobatact/master736ec84
Add default fallback from divides to is_multiple_of77324ee
Merge pull request #53 from MiguelX413/mastera51b3ff
Mark Integer::divides as deprecated.8682553
Add examples to dec/inc9d4d68b
Add Integer.dec() and Integer.inc()9720c90
Merge pull request #61 from cuviper/ci8bfce25
ci: Add a registry cache for git protocolUpdates
metrics-exporter-prometheus
from 0.13.0 to 0.13.1Commits
45137b4
(cargo-release) version 0.13.1f4c0555
Add conversion from stdlib Cow to our internal Cow.e46c951
Change MetricKindMask to MetricKind.a14557a
Merge pull request #163 from RAnders00/fix-prometheus-exporter-no-default-fea...68fbbf8
Fix compile errors and warnings when compiling prometheus exporter without de...a3b289e
(cargo-release) version 0.1.0bb45f68
(cargo-release) version 0.1.03615f1f
(cargo-release) version 0.1.03279b19
(cargo-release) version 0.4.1f38e9e3
non-alpha version bumpsUpdates
indicatif
from 0.17.7 to 0.17.8Commits
Updates
tempfile
from 3.9.0 to 3.10.0Changelog
Sourced from tempfile's changelog.
Commits
61531ea
chore: release v3.10.0e246c4a
chore: update deps (#275)4a05e47
feat: AddBuilder::permissions()
method. (#273)184ab8f
fix: drop redox_syscall dependency (#272)Updates
tonic
from 0.10.2 to 0.11.0Changelog
Sourced from tonic's changelog.
Commits
ea8cd3f
chore: prepare v0.11.0 release (#1626)209fcbe
chore(ci): fix udeps warning errors (#1627)4263f87
feat(tls): Implement AsMut for Certificate (#1621)23106dd
chore(tls): Update to rustls 0.22.0 (#1509)2a2809b
Update Cargo.toml (#1622)4227468
Update helloworld-tutorial.md - Fix Clippy lints (#1617)4859a73
Add connection timeout to connect_with_connector_lazy (#1619)227b169
web: fix invalid bit header error message (#1618)c30cb78
chore(reflection): Make prost-types dependency optional (#1610)f714f42
Repair rust-analyzer for tonic files (#1604)Updates
tonic-build
from 0.10.2 to 0.11.0Changelog
Sourced from tonic-build's changelog.
Commits
ea8cd3f
chore: prepare v0.11.0 release (#1626)209fcbe
chore(ci): fix udeps warning errors (#1627)4263f87
feat(tls): Implement AsMut for Certificate (#1621)23106dd
chore(tls): Update to rustls 0.22.0 (#1509)2a2809b
Update Cargo.toml (#1622)4227468
Update helloworld-tutorial.md - Fix Clippy lints (#1617)4859a73
Add connection timeout to connect_with_connector_lazy (#1619)227b169
web: fix invalid bit header error message (#1618)c30cb78
chore(reflection): Make prost-types dependency optional (#1610)f714f42
Repair rust-analyzer for tonic files (#1604)Updates
x25519-dalek
from 2.0.0 to 2.0.1Commits
4ac84dd
curve,ed,x: Bump patch version to reflect fix to nightly SIMD build (#621)ff1c309
Fix nightly build (#619)ba737a3
Update README.md (#613)0b45e00
chore: typo fix (#608)ba7a073
doc: Fix markdown PR reference (#605)a2ff6ba
{Signing,Verifying}KeyVisitor: visit_borrowed_bytes -> visit_bytes (#602)f08bbb7
ed: Prep to release v2.1.0 (#600)04f811a
ed: Add backSigningKey::to_scalar_bytes
(#599)ac51ef6
ed25519: loosensignature
crate dependency again (#598)89aabac
README.md: remove broken image (#595)Updates
serde_with
from 3.6.0 to 3.6.1Release notes
Sourced from serde_with's releases.
Commits
76cf252
Bump version to v3.6.1 (#696)6872fa8
Bump version to v3.6.16211d20
Eliminate dependency on serde's "derive" feature (#694)5e6a115
Eliminate dependency on serde's "derive" featured145a45
Update ahash to 0.8.7 to accommodate stdsimd change in nightly (#695)2b17850
Update ahash to 0.8.7 to accommodate stdsimd change in nightlycaba452
Bump the github-actions group with 1 update (#693)54a665d
Bump the github-actions group with 1 updateDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions