Upgrade: Bump github.com/google/cel-go from 0.21.0 to 0.22.1#231
Conversation
Bumps [github.com/google/cel-go](https://github.com/google/cel-go) from 0.21.0 to 0.22.1. - [Release notes](https://github.com/google/cel-go/releases) - [Commits](cel-expr/cel-go@v0.21.0...v0.22.1) --- updated-dependencies: - dependency-name: github.com/google/cel-go dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
DryRun Security SummaryThe pull request primarily focuses on updating the project's dependencies, including the Expand for full summarySummary: The changes in this pull request primarily focus on updating the project's dependencies. The From an application security perspective, these changes are relatively straightforward. Updating dependencies to their latest versions is a common practice to ensure that security vulnerabilities and bug fixes are addressed. However, it's important to review the release notes or change logs of the updated dependencies to understand what has changed and whether there are any security-related updates or fixes included. In this case, the changes appear to be routine dependency updates, and there is nothing that stands out as a potential security concern based on the information provided. As an application security engineer, I would recommend regularly reviewing the project's dependencies and updating them to the latest versions as part of a comprehensive security review process. Files Changed:
Code AnalysisWe ran
Riskiness🟢 Risk threshold not exceeded. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps github.com/google/cel-go from 0.21.0 to 0.22.1.
Release notes
Sourced from github.com/google/cel-go's releases.
... (truncated)
Commits
933f926Fix nil-type when two-var comprehension has a dyn range (#1077)ff1302fFix optional test to be functional (#1076)4b73ba3Add two-variable comprehension support to cel-policy (#1074)ba74bf6Additional nil-safety checks with corresponding test updates (#1073)72e0977Rename conformance proto import for ease of syncing (#1071)24ec244Fix format string issue (#1072)7184cb0Update docs on IO methods (#1070)da44524Expose public methods to convert function and variable decl to v1 Decl (#1069)f8ecaa2Harden legacy macros, add support for existsOne macro (#1064)8ad600bEnsure variables in comprehensions don't collide (#1062)You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)