fix(deps): Update go dependencies#5986
Conversation
|
🔍 Dependency ReviewBelow are the dependency upgrades detected in the provided go.mod diffs. For each upgraded dependency, I’ve summarized potential impact, whether code changes are needed, and included actionable snippets where appropriate. Collapsible sections contain reference notes and upgrade evidence.
golang.org/x/sys v0.43.0 → v0.44.0 — ✅ Safe
References:
github.com/leodido/go-syslog/v4 v4.3.0 → v4.5.0 —
|
d2c749a to
71ce767
Compare
56aa6eb to
385658b
Compare
19ea163 to
d4b751f
Compare
72144f1 to
c72a655
Compare
| datasource | package | from | to | | -------------- | ---------------------------------------------------------------------------------------------- | ------------ | -------- | | go | cloud.google.com/go/pubsub/v2 | v2.4.0 | v2.6.0 | | go | connectrpc.com/connect | v1.19.1 | v1.19.2 | | go | github.com/99designs/gqlgen | v0.17.89 | v0.17.90 | | go | github.com/DataDog/datadog-agent/pkg/util/system | v0.76.0-rc.2 | v0.78.4 | | go | github.com/DataDog/go-sqllexer | v0.1.13 | v0.2.2 | | go | github.com/GoogleCloudPlatform/opentelemetry-operations-go/extension/googleclientauthextension | v0.55.0 | v0.56.0 | | go | github.com/IBM/sarama | v1.46.3 | v1.48.2 | | go | github.com/aws/aws-sdk-go-v2 | v1.41.6 | v1.41.7 | | go | github.com/aws/aws-sdk-go-v2/config | v1.32.16 | v1.32.17 | | go | github.com/aws/aws-sdk-go-v2/feature/ec2/imds | v1.18.22 | v1.18.23 | | go | github.com/aws/aws-sdk-go-v2/service/s3 | v1.100.0 | v1.101.0 | | go | github.com/aws/aws-sdk-go-v2/service/servicediscovery | v1.39.23 | v1.39.28 | | go | github.com/buger/jsonparser | v1.1.2 | v1.2.0 | | go | github.com/deneonet/benc | v1.1.7 | v1.1.8 | | go | github.com/fatih/color | v1.18.0 | v1.19.0 | | go | github.com/fsnotify/fsnotify | v1.9.0 | v1.10.1 | | go | github.com/go-sql-driver/mysql | v1.9.3 | v1.10.0 | | go | github.com/grafana/beyla/v3 | v3.9.8 | v3.14.0 | | go | github.com/grafana/loki/v3 | v3.6.5 | v3.7.2 | | go | github.com/grafana/pyroscope-go/godeltaprof | v0.1.9 | v0.1.10 | | go | github.com/hashicorp/consul/api | v1.33.2 | v1.34.2 | | go | github.com/hashicorp/go-discover | v1.1.0 | v1.2.0 | | go | github.com/influxdata/telegraf | v1.35.2 | v1.38.4 | | go | github.com/klauspost/compress | v1.18.5 | v1.18.6 | | go | github.com/leodido/go-syslog/v4 | v4.3.0 | v4.5.0 | | go | github.com/ohler55/ojg | v1.28.0 | v1.28.1 | | go | github.com/oliver006/redis_exporter | v1.81.0 | v1.83.0 | | go | github.com/openai/openai-go/v3 | v3.21.0 | v3.35.0 | | go | github.com/prometheus-community/postgres_exporter | v0.19.0 | v0.19.1 | | go | github.com/prometheus/mysqld_exporter | v0.18.0 | v0.19.0 | | go | github.com/prometheus/node_exporter | v1.10.2 | v1.11.1 | | go | github.com/prometheus/statsd_exporter | v0.28.0 | v0.29.0 | | go | github.com/samber/lo | v1.52.0 | v1.53.0 | | go | github.com/spf13/cobra | v1.10.1 | v1.10.2 | | go | github.com/vektah/gqlparser/v2 | v2.5.32 | v2.5.33 | | go | github.com/zricethezav/gitleaks/v8 | v8.30.0 | v8.30.1 | | golang-version | go | 1.26.2 | 1.26.3 | | go | go.opentelemetry.io/contrib/propagators/jaeger | v1.35.0 | v1.43.0 | | go | go.opentelemetry.io/obi | v0.8.0 | v0.9.0 | | go | go.uber.org/zap | v1.27.1 | v1.28.0 | | go | golang.org/x/crypto | v0.50.0 | v0.51.0 | | go | golang.org/x/mod | v0.33.0 | v0.36.0 | | go | golang.org/x/net | v0.53.0 | v0.54.0 | | go | golang.org/x/oauth2 | v0.35.0 | v0.36.0 | | go | golang.org/x/sys | v0.43.0 | v0.44.0 | | go | golang.org/x/text | v0.36.0 | v0.37.0 | | go | golang.org/x/tools | v0.44.0 | v0.45.0 | | go | google.golang.org/grpc | v1.80.0 | v1.81.1 | | go | k8s.io/klog/v2 | v2.130.1 | v2.140.0 | Signed-off-by: renovate-sh-app[bot] <219655108+renovate-sh-app[bot]@users.noreply.github.com>
This PR contains the following updates:
v2.4.0→v2.6.0v1.19.1→v1.19.2v0.17.89→v0.17.90v0.76.0-rc.2→v0.78.4v0.1.13→v0.2.2v0.55.0→v0.56.0v1.46.3→v1.48.2v1.41.6→v1.41.7v1.32.16→v1.32.17v1.18.22→v1.18.23v1.100.0→v1.101.0v1.39.23→v1.39.28v1.1.2→v1.2.0v1.1.7→v1.1.8v1.18.0→v1.19.0v1.9.0→v1.10.1v1.9.3→v1.10.0v3.9.8→v3.14.0v3.6.5→v3.7.2v0.1.9→v0.1.10v1.33.2→v1.34.2v1.1.0→v1.2.0v1.35.2→v1.38.4v1.18.5→v1.18.6v4.3.0→v4.5.0v4.3.0→v4.5.0v1.28.0→v1.28.1v1.81.0→v1.83.0v3.21.0→v3.35.0v3.36.0v0.19.0→v0.19.1v0.18.0→v0.19.0v1.10.2→v1.11.1v0.28.0→v0.29.0v1.52.0→v1.53.0v1.10.1→v1.10.2v2.5.32→v2.5.33v8.30.0→v8.30.11.26.2→1.26.3v1.35.0→v1.43.0v0.8.0→v0.9.0v1.27.1→v1.28.0v0.50.0→v0.51.0v0.33.0→v0.36.0v0.53.0→v0.54.0v0.35.0→v0.36.0v0.43.0→v0.44.0v0.36.0→v0.37.0v0.44.0→v0.45.0v1.80.0→v1.81.1v2.130.1→v2.140.0Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
googleapis/google-cloud-go (cloud.google.com/go/pubsub/v2)
v2.5.1v2.5.0connectrpc/connect-go (connectrpc.com/connect)
v1.19.2Compare Source
What's Changed
Governance
Bugfixes
Other changes
New Contributors
Full Changelog:
99designs/gqlgen (github.com/99designs/gqlgen)
v0.17.90Compare Source
What's Changed
follow-schemacode generation by @StevenACoffman in #4141New Contributors
Full Changelog: 99designs/gqlgen@v0.17.89...v0.17.90
DataDog/go-sqllexer (github.com/DataDog/go-sqllexer)
v0.2.2Compare Source
Bug Fixes
Obfuscate EXTRACT field keywords (#98)
The obfuscator now replaces the field argument of
EXTRACT(field FROM source)with a placeholder when it matches a known PostgreSQL field name (epoch,year,month,dow,isodow,microseconds,timezone_hour, etc.). Previously, queries captured viapg_stat_activitykeptepochas an unquoted identifier while queries frompg_stat_statementshad it normalized to$1(and then to?), splitting one logical query across two DBM signatures. Both code paths now converge onEXTRACT(? FROM source). Bareepoch/year/etc. outside anEXTRACT(...)call (e.g. as a column reference) and unrecognized field names are left untouched.Fix handling of PostgreSQL VACUUM commands (#96)
Fixes a typo and reclassifies
VACUUMfrom a generic keyword to a command so it is correctly extracted into statement metadata.Handle multiline comment after keyword (#89)
The lexer now correctly tokenizes SQL keywords when they are directly followed by a multiline comment (e.g.
select/**/*/**/from/**/events). Previously, the leading/of the comment could be absorbed into the preceding token, breaking keyword detection.Performance Improvements
isExtractFieldKeyword(#99)Replaces a
strings.ToUpper+ map lookup with an allocation-freestrings.EqualFoldscan over a small slice of EXTRACT field names.v0.2.1Compare Source
Bug Fixes
The normalizer now correctly extracts all table names from comma-separated table lists (e.g.,
SELECT * FROM t1, t2). Previously, only the first table after a table indicator keyword was collected. This also addsLATERALas a recognized keyword so it is no longer misidentified as a table name during metadata extraction.Maintenance
v0.2.0Compare Source
Breaking Changes
The
go.modminimum Go version has been raised to Go 1.25. CI now tests through Go 1.25.7.Bug Fixes
The lexer now correctly advances by the full rune length when scanning unknown tokens, double-quoted identifiers, and other multi-byte UTF-8 sequences (e.g., full-width punctuation, CJK characters). Previously, multi-byte characters could be incorrectly split into separate byte-level tokens or cause misaligned scans. This includes a fix for truncated UTF-8 sequences at the end of input.
Performance Improvements
The keyword trie's
childrenfield was changed frommap[rune]*trieNodeto a fixed-size[27]*trieNodearray (A–Z + underscore). This replaces map lookups with direct array indexing during keyword matching, reducing allocations and improving lexer throughput.Enhancements
The
cmd/sqllexerCLI was refactored for cleaner config plumbing and now exposes all normalizer options as flags:-keep-identifier-quotation-dollar-quoted-func-replace-positional-parameter-collect-procedures-uppercase-keywords-remove-space-between-parentheses-keep-trailing-semicolonGoogleCloudPlatform/opentelemetry-operations-go (github.com/GoogleCloudPlatform/opentelemetry-operations-go/extension/googleclientauthextension)
v0.56.0: v1.32.0/v0.56.0Compare Source
What's Changed
New Contributors
Full Changelog: GoogleCloudPlatform/opentelemetry-operations-go@v0.55.0...v0.56.0
IBM/sarama (github.com/IBM/sarama)
v1.48.2: Version 1.48.2 (2026-05-13)Compare Source
What's Changed
🎉 New Features / Improvements
🐛 Fixes
🔧 Maintenance
Full Changelog: IBM/sarama@v1.48.1...v1.48.2
v1.48.1: Version 1.48.1 (2026-05-10)Compare Source
What's Changed
🐛 Fixes
📦 Dependency updates
🔧 Maintenance
New Contributors
Full Changelog: IBM/sarama@v1.48.0...v1.48.1
v1.48.0: Version 1.48.0 (2026-04-24)Compare Source
What's Changed
🎉 New Features / Improvements
🐛 Fixes
📦 Dependency updates
🔧 Maintenance
📝 Documentation
➕ Other Changes
New Contributors
Full Changelog: IBM/sarama@v1.47.0...v1.48.0
v1.47.0Compare Source
aws/aws-sdk-go-v2 (github.com/aws/aws-sdk-go-v2)
v1.41.7Compare Source
Module Highlights
github.com/aws/aws-sdk-go-v2/service/ecs: v1.41.7github.zerozr99.workers.dev/aws/aws-sdk-go-v2/service/glue: v1.78.0github.zerozr99.workers.dev/aws/aws-sdk-go-v2/service/ivschat: v1.12.5github.zerozr99.workers.dev/aws/aws-sdk-go-v2/service/rolesanywhere: v1.10.0github.zerozr99.workers.dev/aws/aws-sdk-go-v2/service/securityhub: v1.47.2buger/jsonparser (github.com/buger/jsonparser)
v1.2.0Compare Source
What's Changed
Full Changelog: buger/jsonparser@v1.1.2...v1.2.0
deneonet/benc (github.com/deneonet/benc)
v1.1.8Compare Source
Additions:
Changes:
fatih/color (github.com/fatih/color)
v1.19.0Compare Source
What's Changed
Fprint,Fprintfby @qualidafial in #282Configuration
📅 Schedule: (UTC)
* 6-10 * * 1)🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
Need help?
You can ask for more help in the following Slack channel: #proj-renovate-self-hosted. In that channel you can also find ADR and FAQ docs in the Resources section.