Skip to content

fix(deps): update non-major dependencies - #29

Open
renovate-wenisch-tech[bot] wants to merge 1 commit into
mainfrom
renovate/non-major-dependencies
Open

renovate-wenisch-tech[bot] wants to merge 1 commit into
mainfrom
renovate/non-major-dependencies

Conversation

@renovate-wenisch-tech

@renovate-wenisch-tech renovate-wenisch-tech Bot commented Sep 7, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
alpinejs (source) 3.17.13.17.3 age confidence dependencies patch
ghcr.io/wenisch-tech/contextcrate (source) 0.9.50.9.6 age confidence patch
mcr.microsoft.com/playwright/java v1.62.0-noblev1.63.0-noble age confidence final minor

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

alpinejs/alpine (alpinejs)

v3.17.3

Compare Source

What's Changed

New Contributors

Full Changelog: alpinejs/alpine@v3.17.2...v3.17.3

v3.17.2

Compare Source

What's Changed

Full Changelog: alpinejs/alpine@v3.17.1...v3.17.2

wenisch-tech/ContextCrate (ghcr.io/wenisch-tech/contextcrate)

v0.9.6

Compare Source

What's Changed

Full Changelog: v0.9.5...v0.9.6


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@github-actions

github-actions Bot commented Sep 7, 2026

Copy link
Copy Markdown

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.317


Report Summary

┌────────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                               Target                               │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.317 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                        │  jar  │        0        │
└────────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/non-major-dependencies branch from ef7d7fb to aa0ddda Compare September 10, 2026 18:01
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title chore(deps): update ghcr.io/wenisch-tech/contextcrate docker tag to v0.9.6 fix(deps): update non-major dependencies Sep 10, 2026
@github-actions

Copy link
Copy Markdown

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.333


Report Summary

┌────────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                               Target                               │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.333 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                        │  jar  │        0        │
└────────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/non-major-dependencies branch from aa0ddda to 44be95b Compare September 16, 2026 03:01
@github-actions

Copy link
Copy Markdown

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.353


Report Summary

┌────────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                               Target                               │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.353 (wolfi 20230201) │ wolfi │        1        │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                        │  jar  │        0        │
└────────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


For OSS Maintainers: VEX Notice
--------------------------------
If you're an OSS maintainer and Trivy has detected vulnerabilities in your project that you believe are not actually exploitable, consider issuing a VEX (Vulnerability Exploitability eXchange) statement.
VEX allows you to communicate the actual status of vulnerabilities in your project, improving security transparency and reducing false positives for your users.
Learn more and start using VEX: https://trivy.dev/docs/v0.74/guide/supply-chain/vex/repo#publishing-vex-documents

To disable this notice, set the TRIVY_DISABLE_VEX_NOTICE environment variable.


ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.353 (wolfi 20230201)
==================================================================
Total: 1 (MEDIUM: 1, HIGH: 0, CRITICAL: 0)

┌─────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│ Library │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ zlib    │ CVE-2026-85091 │ MEDIUM   │ fixed  │ 1.3.2-r7          │ 1.3.3-r0      │ zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer │
│         │                │          │        │                   │               │ overflow vul ......                                       │
│         │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-85091                │
└─────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘

@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/non-major-dependencies branch from 44be95b to 1627412 Compare September 17, 2026 20:11
@github-actions

Copy link
Copy Markdown

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.359


Report Summary

┌────────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                               Target                               │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/contextcrate:0.9.7-pr.29.359 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                        │  jar  │        0        │
└────────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants