Skip to content

build(deps): bump chainguard.dev/apko from 1.2.9 to 1.2.13 in /tw#386

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/tw/chainguard.dev/apko-1.2.13
Open

build(deps): bump chainguard.dev/apko from 1.2.9 to 1.2.13 in /tw#386
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/tw/chainguard.dev/apko-1.2.13

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 22, 2026

Bumps chainguard.dev/apko from 1.2.9 to 1.2.13.

Release notes

Sourced from chainguard.dev/apko's releases.

Release v1.2.13

Changelog

  • 22c16a5fb2b63b359f45a94c17c4112f68f106a7 build(deps): bump github.com/go-git/go-git/v5 from 5.18.0 to 5.19.0 in the go_modules group across 1 directory (#2222)
  • 7effda40c20b09ae48504570795194c03b542084 build(deps): bump github/codeql-action from 4.35.3 to 4.35.4 (#2225)
  • de34d75657937b12c7e68f582b0cd0eede1753bd build(deps): bump go.step.sm/crypto from 0.77.9 to 0.78.0 (#2224)
  • f6032be57bb86dbec007f44c421f756429bf1591 build(deps): bump golang.org/x/sys from 0.43.0 to 0.44.0 (#2221)
  • f85efc5fb8349355e3894a6742d17e0c5a4d4d3f build(deps): bump google.golang.org/api from 0.277.0 to 0.278.0 (#2223)
  • 2483b202dc8c8106dda974a07e3ae6e2013ba37c build(deps): bump gopkg.in/ini.v1 from 1.67.1 to 1.67.2 (#2218)
  • f693e828812fbe8b55c36f44111fff67a982a478 build(deps): bump sigstore/cosign-installer from 4.1.1 to 4.1.2 (#2226)
  • 3e9c1ec21e073b836036fcfd78507a4a7bee2b81 cpio: add FromLayers for multi-layer CPIO archives (#2216)

Release v1.2.12

Changelog

  • b7931baa8cd8aa1718dcea63208eacebb27148d9 build(deps): bump chainguard-dev/actions from 1.6.17 to 1.6.19 (#2219)
  • 34a75306b40ee67508c6ce6ee34e447dd1454fec fix(ci): harden against template injection and credential exposure (#2217)

Release v1.2.11

Changelog

  • bfd6776788292e020d8cbee9928f441781af72c0 Tweak solver's same-origin heuristic (#2208)
  • 1564c07a4aa6a714b54c196e25a5c0f55d3a8f9b build(deps): bump chainguard-dev/actions from 1.6.15 to 1.6.17 (#2215)
  • 4700edf9b270a3941512c3e116ea0377aa33fa69 build(deps): bump github.com/klauspost/compress from 1.18.5 to 1.18.6 (#2211)
  • b593d2c4d2940e227713c026acdb43e6abf93cbd build(deps): bump github/codeql-action from 4.35.2 to 4.35.3 (#2213)
  • 9157b1ab4335afea3c85e62ae5b5a3b02705e83c build(deps): bump google.golang.org/api from 0.276.0 to 0.277.0 (#2212)
  • 0e4728d2007a54b94a0eb415a92018127c69d66f build(deps): bump k8s.io/apimachinery from 0.35.4 to 0.36.0 (#2189)
  • d81a5d4a622db7c1101b991e3ae596cc5ad5944b build(deps): bump step-security/harden-runner from 2.19.0 to 2.19.1 (#2214)
  • 5644a414d21af5d077c96405f749b878699a3405 retry package fetch+expand on transient errors (#2210)

Release v1.2.10

Changelog

  • 0670f2240b7ef2904739fb8ad12580961cf970fd build(deps): bump go.step.sm/crypto from 0.77.2 to 0.77.9 (#2209)
  • eebbe627f86c584c3ff9df826411a2b33dca5ca6 build(deps): bump goreleaser/goreleaser-action from 7.1.0 to 7.2.1 (#2207)
Commits
  • 3e9c1ec cpio: add FromLayers for multi-layer CPIO archives (#2216)
  • de34d75 build(deps): bump go.step.sm/crypto from 0.77.9 to 0.78.0 (#2224)
  • 2483b20 build(deps): bump gopkg.in/ini.v1 from 1.67.1 to 1.67.2 (#2218)
  • f85efc5 build(deps): bump google.golang.org/api from 0.277.0 to 0.278.0 (#2223)
  • 7effda4 build(deps): bump github/codeql-action from 4.35.3 to 4.35.4 (#2225)
  • f693e82 build(deps): bump sigstore/cosign-installer from 4.1.1 to 4.1.2 (#2226)
  • 22c16a5 build(deps): bump github.com/go-git/go-git/v5 from 5.18.0 to 5.19.0 in the go...
  • f6032be build(deps): bump golang.org/x/sys from 0.43.0 to 0.44.0 (#2221)
  • b7931ba build(deps): bump chainguard-dev/actions from 1.6.17 to 1.6.19 (#2219)
  • 34a7530 fix(ci): harden against template injection and credential exposure (#2217)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels May 22, 2026
Bumps [chainguard.dev/apko](https://github.com/chainguard-dev/apko) from 1.2.9 to 1.2.13.
- [Release notes](https://github.com/chainguard-dev/apko/releases)
- [Changelog](https://github.com/chainguard-dev/apko/blob/main/NEWS.md)
- [Commits](chainguard-dev/apko@v1.2.9...v1.2.13)

---
updated-dependencies:
- dependency-name: chainguard.dev/apko
  dependency-version: 1.2.13
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/go_modules/tw/chainguard.dev/apko-1.2.13 branch from 744ad41 to 18c2280 Compare May 22, 2026 14:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants