Skip to content

Conversation

@BrewTestBot
Copy link
Contributor

Created by brew bump


Created with brew bump-formula-pr.

Details

release notes

## [Unreleased]

v4.9.0 - 2025-12-10

All

Amqp

Build(Deps)

  • e4feca46: bump golang.org/x/time from 0.7.0 to 0.8.0
  • f54011b5: bump golang.org/x/sync from 0.8.0 to 0.9.0
  • ee5524b8: bump go.opentelemetry.io/otel/sdk from 1.31.0 to 1.32.0
  • 757b649c: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  • 20c0040f: bump github.com/go-stomp/stomp/v3 from 3.1.2 to 3.1.3
  • 1607766c: bump github.com/prometheus/client_golang
  • 0a3a4611: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • 12ea7bf9: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  • 146d4a67: bump github.com/urfave/cli/v2 from 2.27.3 to 2.27.5
  • 50003694: bump github.com/klauspost/compress from 1.17.10 to 1.17.11
  • 6069bb24: bump go.opentelemetry.io/otel/exporters/stdout/stdouttrace

Chore

  • a50727a3: add DVO ignore annotations
  • 8d991938: update claircore to v1.5.45
  • ff2059cf: update claircore to v1.5.44
  • db51ed82: update claircore to v1.5.42
  • c2dc1766: update claircore to v1.5.41
  • 8aa9e1e2: update claircore to v1.5.40
  • eca299b7: update go references to go1.24
  • 1660b66b: upgrade from pgx v4 to v5
  • 68d03bae: remove reviews from dependabot config
  • 0c5292e7: upgrade config module to v1.4.2
  • e5d4c19c: update minimum go version to 1.23
  • e45fbf0e: update claircore to v1.5.35
  • 708bf2f5: update local-dev tracing configs to fix errors
  • 216ca2f1: update claircore to v1.5.34
  • dde57fc1: update openAPI spec to remove SourcePackage
  • e5149fd3: group some dependencies to avoid excessive PRs
  • 60ebea73: update claircore to v1.5.33

Chore(Deps)

  • e169a50a: bump google.golang.org/grpc from 1.76.0 to 1.77.0
  • 3e778f2c: bump golang.org/x/net in the golang-x group
  • 4563ccbd: bump github.com/go-stomp/stomp/v3 from 3.1.3 to 3.1.5
  • 195cdb06: bump golang.org/x/sync in the golang-x group
  • b50044f4: bump actions/download-artifact from 5 to 6
  • 1b429595: bump github.com/klauspost/compress from 1.18.0 to 1.18.1
  • e439e4df: bump the golang-x group with 2 updates
  • fe37c68b: bump google.golang.org/grpc from 1.75.1 to 1.76.0
  • ee6ea1c8: bump github.com/quay/claircore from 1.5.42 to 1.5.43
  • afcfd7f0: bump google.golang.org/grpc from 1.75.0 to 1.75.1
  • 6a4937e4: bump the golang-x group across 1 directory with 3 updates
  • 53cf68e9: bump github.com/jackc/pgx/v5 from 5.7.5 to 5.7.6
  • e9850949: bump github.com/prometheus/client_golang
  • 290969cd: bump actions/stale from 9 to 10
  • 5b5519b5: bump actions/github-script from 7 to 8
  • b78c76b1: bump actions/setup-go from 5 to 6
  • b1f4716b: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • 93174450: bump github.com/grafana/pyroscope-go/godeltaprof
  • 0f1fde39: bump the otel group with 11 updates
  • 8dbb0f48: bump golang.org/x/net in the golang-x group
  • a35a1281: bump github.com/ulikunitz/xz from 0.5.11 to 0.5.14
  • 1fa9a753: bump actions/checkout from 4 to 5
  • f0b0949c: bump actions/download-artifact from 4 to 5
  • 890f4a1b: bump github.com/prometheus/client_golang
  • 80add42b: bump google.golang.org/grpc from 1.73.0 to 1.75.0
  • e4746794: bump github.com/jackc/pgx/v5 from 5.7.4 to 5.7.5
  • ba6fe31c: bump go.opentelemetry.io/otel/exporters/prometheus
  • 40b0402e: bump the golang-x group with 2 updates
  • f9635886: bump github.com/quay/zlog from 1.1.8 to 1.1.9
  • 4415106e: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • b7325ada: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  • 78b92595: bump the otel group with 11 updates
  • 62956271: bump github.com/urfave/cli/v2 from 2.27.6 to 2.27.7
  • 440eee8e: bump github.com/google/go-containerregistry
  • e75e2e2b: bump the golang-x group with 3 updates
  • cf20adbd: bump google.golang.org/grpc from 1.72.2 to 1.73.0
  • d9c211b4: bump github.com/quay/claircore from 1.5.37 to 1.5.38
  • 6338de8b: bump github.com/ugorji/go/codec from 1.2.12 to 1.2.14
  • 566271a1: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • 3e3a2d33: bump github.com/google/go-containerregistry
  • 81b725ba: bump google.golang.org/grpc from 1.72.1 to 1.72.2
  • faad36e2: bump the otel group with 11 updates
  • 7979e036: bump google.golang.org/grpc from 1.72.0 to 1.72.1
  • 99ab2c1a: bump the golang-x group with 2 updates
  • a166f610: bump github.com/quay/claircore from 1.5.36 to 1.5.37
  • d8e9dcf4: bump google.golang.org/grpc from 1.71.1 to 1.72.0
  • bfa8f11d: bump github.com/quay/claircore from 1.5.35 to 1.5.36
  • f8a41628: bump github.com/prometheus/client_golang
  • 7ce22abe: bump google.golang.org/grpc from 1.71.0 to 1.71.1
  • c53cf2ba: bump the golang-x group with 2 updates
  • a5833a44: bump golang.org/x/net in the golang-x group
  • cc6fb14a: bump github.com/rs/zerolog from 1.33.0 to 1.34.0
  • 851e4a36: bump github.com/urfave/cli/v2 from 2.27.5 to 2.27.6
  • e9997624: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • a73e832b: bump github.com/prometheus/client_golang
  • 35110e9e: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  • 0a9866e3: bump the golang-x group with 3 updates
  • 1ce14606: bump the otel group with 11 updates
  • 919d5287: bump github.com/google/go-cmp in /config
  • 2673e4f4: bump github.com/rogpeppe/go-internal from 1.13.1 to 1.14.1
  • cf7af98a: bump github.com/go-jose/go-jose/v3 from 3.0.3 to 3.0.4
  • 6c9fae1e: bump github.com/google/go-cmp from 0.6.0 to 0.7.0
  • 707d8049: bump github.com/prometheus/client_golang
  • 136a618f: bump github.com/klauspost/compress from 1.17.11 to 1.18.0
  • 3e7c6e74: bump the golang-x group with 3 updates
  • 73db520d: bump github.com/evanphx/json-patch/v5 from 5.9.10 to 5.9.11
  • a3a60f10: bump google.golang.org/grpc from 1.69.4 to 1.70.0
  • cc29705c: bump github.com/evanphx/json-patch/v5 from 5.9.0 to 5.9.10
  • d05b4049: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • 8b99d320: bump the otel group with 11 updates
  • b2c66991: bump google.golang.org/grpc from 1.69.2 to 1.69.4
  • ef4a1f11: bump the golang-x group with 2 updates
  • 38b77499: bump golang.org/x/net in the golang-x group
  • 80c0381a: bump the otel group across 1 directory with 2 updates
  • 3eff1ef1: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • 5bf85313: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  • 9ebb61d9: bump golang.org/x/crypto from 0.30.0 to 0.31.0
  • 0881e079: bump the golang-x group with 2 updates
  • f556ef16: bump go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
  • bf8737a1: bump golang.org/x/net in the golang-x group
  • f1d9aae4: bump go.opentelemetry.io/otel/exporters/stdout/stdouttrace

Chore(Manifests)

Ci

  • a0a35fd7: Allow go test to access un-vendored dependencies

Cicd

  • ab791a2e: run multiarch tests without a full container
  • 935a61f3: vendor modules into nightly source

Clairctl

Dev

  • 503215f5: rename dashboard.json file to clair.json
  • 65cd4244: add a grafana dashboard for postgres stats

Docker

  • 10485679: remove version line from docker-compose.yaml

Docker-Compose

Enrichments

  • 6527a9ec: disable enrichers if config option is set

Fix

Go.Mod

  • 6db583f7: Update Go version to 1.24.9 for CVE-2025-47907

Health

Introspection

  • 797c2f45: implement OTLP support for metrics and traces

Misc

  • 5891f64b: remove API doc make target, CI check

Notifier

  • a9a68e18: increase default durations to be more reasonable

Openapi

Signer

Types/V1

  • 50d0164b: add JSON API v1 types and schemas

Reverts

  • cicd: exclude darwin/arm64

View the full release notes at https://github.com/quay/clair/releases/tag/v4.9.0.


@github-actions github-actions bot added go Go use is a significant feature of the PR or issue bump-formula-pr PR was created using `brew bump-formula-pr` labels Dec 10, 2025
@chenrui333 chenrui333 added the CI-no-fail-fast Continue CI tests despite failing GitHub Actions matrix builds. label Dec 11, 2025
@daeho-ro daeho-ro added the test failure CI fails while running the test-do block label Dec 11, 2025
@daeho-ro
Copy link
Member

Command not failed but takes long time to timeout. We need to change the test..

@github-actions
Copy link
Contributor

This pull request has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. To keep this pull request open, add a help wanted or in progress label.

@github-actions github-actions bot added the stale No recent activity label Dec 13, 2025
@github-actions github-actions bot closed this Dec 15, 2025
@github-actions github-actions bot deleted the bump-clair-4.9.0 branch December 15, 2025 00:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bump-formula-pr PR was created using `brew bump-formula-pr` CI-no-fail-fast Continue CI tests despite failing GitHub Actions matrix builds. go Go use is a significant feature of the PR or issue stale No recent activity test failure CI fails while running the test-do block

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants