Skip to content

Comments

EOL DEPENDENCY UPGRADE: unstable: k8s.io/api, k8s.io/apimachinery · patch: github.com/stretchr/testify #32

Open
campaigner-prod[bot] wants to merge 1 commit intomainfrom
engraver-auto-version-upgrade/major/go/2-1770986581
Open

EOL DEPENDENCY UPGRADE: unstable: k8s.io/api, k8s.io/apimachinery · patch: github.com/stretchr/testify #32
campaigner-prod[bot] wants to merge 1 commit intomainfrom
engraver-auto-version-upgrade/major/go/2-1770986581

Conversation

@campaigner-prod
Copy link

Summary: Security update — 3 packages upgraded (MAJOR changes included)

Manifests changed:

  • . (go)

Updates

Package From To Type Vulnerabilities Fixed
k8s.io/api v0.26.2 v0.35.0 major -
k8s.io/apimachinery v0.26.2 v0.35.1 major -
github.com/stretchr/testify v1.8.0 v1.8.4 patch -

Packages marked with "-" are updated due to dependency constraints.


⚠️ Constraint Violations Detected

The following version constraints in your dependency declarations will be violated by this update. This may cause build failures or require manual constraint updates:

Package Current Constraint Updated To
github.com/stretchr/testify v1.11.1 v1.8.4

Action Required: Update your dependency constraints before merging this PR to avoid build failures.

Warning

Major Version Upgrade

This update includes major version changes that may contain breaking changes. Please:

  • Review the changelog/release notes for breaking changes
  • Test thoroughly in a staging environment
  • Update any code that depends on changed APIs
  • Ensure all tests pass before merging

Security Details

⚠️ Dependencies that have Reached EOL (1)
Dependency Unsafe Version EOL Date New Version Path
github.com/stretchr/testify v1.8.0 - v1.8.4 go.mod
📅 Dependencies Nearing EOL (2)
Dependency Unsafe Version EOL Date New Version Path
k8s.io/api v0.26.2 Mar 1, 2026 v0.35.0 go.mod
k8s.io/apimachinery v0.26.2 Feb 15, 2026 v0.35.1 go.mod

Review Checklist

Extra review is recommended for this update:

  • Review changes for compatibility with your code
  • Check release notes for breaking changes
  • Run integration tests to verify service behavior
  • Test in staging environment before production
  • Update dependency constraints in your manifest files
  • Monitor key metrics after deployment

Update Mode: EOL Remediation

🤖 Generated by DataDog Automated Dependency Management System

@dd-prapprover
Copy link

dd-prapprover bot commented Feb 13, 2026

PRApprover will approve and merge this PR, FAQ, #dx-source-code-management

🛠️ PRApproval Status

🔗 Workflow Link

  • ✅ PR is eligible for auto-approval by rule dependency-management-version-updater - 2026-02-13T12:45:00Z
  • ⬜ CI tests passed
  • ⬜ Approved
  • ⬜ Merge Started
  • ⬜ Merged

➡️ Current phase: CI tests failed, please fix and re-trigger

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants