Skip to content

chore(deps): bump the kubernetes group across 1 directory with 3 updates - #37

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/kubernetes-e1fb1014d9
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/kubernetes-e1fb1014d9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 16, 2026 •

Copy link
Copy Markdown

Bumps the kubernetes group with 2 updates in the / directory: k8s.io/api and k8s.io/client-go.

Updates k8s.io/api from 0.36.1 to 0.36.2

Commits

Updates k8s.io/apimachinery from 0.36.1 to 0.36.2

Commits

Updates k8s.io/client-go from 0.36.1 to 0.36.2

Commits

@dependabot @github

dependabot Bot commented on behalf of github Jun 16, 2026

Copy link
Copy Markdown
Author

Labels

The following labels could not be found: dependencies, go. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@kusari-inspector

kusari-inspector Bot commented Jun 16, 2026 •

Copy link
Copy Markdown

Kusari Inspector

Kusari Analysis Results:

Proceed with these changes

✅ No Flagged Issues Detected
All values appear to be within acceptable risk parameters.

Both dependency and code security analyses returned clean results with no issues identified. The PR updates four Kubernetes ecosystem packages (k8s.io/api, k8s.io/apimachinery, k8s.io/client-go, k8s.io/streaming) from v0.36.1 to v0.36.2 as minor patch updates. These are indirect transitive dependencies pulled in via sigs.k8s.io/controller-runtime@v0.24.1. No CVEs or security advisories exist for either the old or new versions, all licenses (Apache-2.0, BSD-3-Clause, MIT) are permissive and compatible, and the packages are already at the latest available version. The code analysis of go.mod and go.sum found zero issues across all severity levels with no exposed secrets or workflow concerns. The combined risk profile remains low, and this update is safe to merge.

Note

View full detailed analysis result for more information on the output and the checks that were run.


@kusari-inspector rerun - Trigger a re-analysis of this PR
@kusari-inspector feedback [your message] - Send feedback to our AI and team
See Kusari's documentation for setup and configuration.
Commit: af74eda, performed at: 2026-06-16T17:42:35Z

Found this helpful? Give it a 👍 or 👎 reaction!

@kusari-inspector

Copy link
Copy Markdown

Kusari PR Analysis rerun based on - af74eda performed at: 2026-06-16T17:43:14Z - link to updated analysis

Bumps the kubernetes group with 2 updates in the / directory: [k8s.io/api](https://github.com/kubernetes/api) and [k8s.io/client-go](https://github.com/kubernetes/client-go).


Updates `k8s.io/api` from 0.36.1 to 0.36.2
- [Commits](kubernetes/api@v0.36.1...v0.36.2)

Updates `k8s.io/apimachinery` from 0.36.1 to 0.36.2
- [Commits](kubernetes/apimachinery@v0.36.1...v0.36.2)

Updates `k8s.io/client-go` from 0.36.1 to 0.36.2
- [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md)
- [Commits](kubernetes/client-go@v0.36.1...v0.36.2)

---
updated-dependencies:
- dependency-name: k8s.io/api
  dependency-version: 0.36.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: kubernetes
- dependency-name: k8s.io/apimachinery
  dependency-version: 0.36.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: kubernetes
- dependency-name: k8s.io/client-go
  dependency-version: 0.36.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: kubernetes
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title chore(deps): bump the kubernetes group with 3 updates chore(deps): bump the kubernetes group across 1 directory with 3 updates Jun 30, 2026
@dependabot
dependabot Bot force-pushed the dependabot/go_modules/kubernetes-e1fb1014d9 branch from af74eda to acea0e0 Compare June 30, 2026 17:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants