Skip to content

chore(deps): bump securego/gosec from 8075fd2e520d33330afe168f26fc7a91f57f2cbc to 681347199262bc33b9b5119ae2b448dec5718240 - #70

Merged
shamaton merged 1 commit into
mainfrom
dependabot/github_actions/securego/gosec-681347199262bc33b9b5119ae2b448dec5718240
Sep 20, 2026
Merged

shamaton merged 1 commit into
mainfrom
dependabot/github_actions/securego/gosec-681347199262bc33b9b5119ae2b448dec5718240

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 20, 2026

Copy link
Copy Markdown
Contributor

Bumps securego/gosec from 8075fd2e520d33330afe168f26fc7a91f57f2cbc to 681347199262bc33b9b5119ae2b448dec5718240.

Commits
  • 6813471 fix(G403): resolve constant RSA key sizes (#1751)
  • 201d413 fix(G602): validate subslice bounds under equality guards (#1749)
  • accb424 fix(G124): resolve negated constant cookie flags (#1748)
  • 61fa1da fix(G602): report constant index equal to the length asserted by an equality ...
  • 78fbcc7 Skip taint call graphs when no sinks match (#1745)
  • 79b4fcd Fix brittle test for html writer (#1744)
  • d70cac3 fix(G404): ignore non-cryptographic Shuffle calls (#1742)
  • 9e8e5d9 fix(deps): update all dependencies (#1743)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [securego/gosec](https://github.com/securego/gosec) from 8075fd2e520d33330afe168f26fc7a91f57f2cbc to 681347199262bc33b9b5119ae2b448dec5718240.
- [Release notes](https://github.com/securego/gosec/releases)
- [Commits](securego/gosec@8075fd2...6813471)

---
updated-dependencies:
- dependency-name: securego/gosec
  dependency-version: 681347199262bc33b9b5119ae2b448dec5718240
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 20, 2026
@dependabot
dependabot Bot requested a review from shamaton as a code owner September 20, 2026 00:05
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 20, 2026
@github-actions github-actions Bot added the type: maintenance Refactoring, cleanup, dependencies, or tooling label Sep 20, 2026
@shamaton
shamaton merged commit 901a2da into main Sep 20, 2026
26 checks passed
@shamaton
shamaton deleted the dependabot/github_actions/securego/gosec-681347199262bc33b9b5119ae2b448dec5718240 branch September 20, 2026 12:38
@github-actions github-actions Bot mentioned this pull request Sep 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code type: maintenance Refactoring, cleanup, dependencies, or tooling

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant