chore(deps): update all dependencies #1523
Open
+12
−12
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v1.13.0→v1.39.07976ffa→87e3579v25.2→v33.46.0.2→7.1.0Release Notes
bazel-contrib/bazel_features (bazel_features)
v1.39.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
setto globals by @AlexTereshenkov in #120New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.38.0...v1.39.0
v1.38.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.37.0...v1.38.0
v1.37.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.36.0...v1.37.0
v1.36.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.35.0...v1.36.0
v1.35.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.34.0...v1.35.0
v1.34.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
genrule_accepts_toolchain_typesby @novas0x2a in #110New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.33.0...v1.34.0
v1.33.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
has_launcher_maker_toolchainby @fmeum in #104instrumented_files_info_has_baseline_coverage_filesby @fmeum in #105cc_toolchain_has_generate_modmapby @fmeum in #109Full Changelog: bazel-contrib/bazel_features@v1.32.0...v1.33.0
v1.32.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
no_struct_field_denylistby @fmeum in #103Full Changelog: bazel-contrib/bazel_features@v1.31.0...v1.32.0
v1.31.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
aspect_propagation_contextfeature by @fmeum in #102New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.30.0...v1.31.0
v1.30.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.29.0...v1.30.0
v1.29.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
use_target_platform_constraintsby @fmeum in #97Full Changelog: bazel-contrib/bazel_features@v1.27.0...v1.29.0
v1.28.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
Full Changelog: bazel-contrib/bazel_features@v1.27.0...v1.28.0
v1.27.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.26.0...v1.27.0
v1.26.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.25.0...v1.26.0
v1.25.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.24.0...v1.25.0
v1.24.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
cc_*extension support by @fmeum in #91Full Changelog: bazel-contrib/bazel_features@v1.23.0...v1.24.0
v1.23.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.22.0...v1.23.0
v1.22.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
.gitignorelines by @fmeum in #85macroandsubruleto globals by @fmeum in #86Full Changelog: bazel-contrib/bazel_features@v1.21.0...v1.22.0
v1.21.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
rule_extension_apis_availableby @hvadehra in #80New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.20.0...v1.21.0
v1.20.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.19.0...v1.20.0
v1.19.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
CcSharedLibraryHintInfoand update version forCcSharedLibraryInfoby @fmeum in #76Full Changelog: bazel-contrib/bazel_features@v1.18.0...v1.19.0
v1.18.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.17.0...v1.18.0
v1.17.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.16.0...v1.17.0
v1.16.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
Full Changelog: bazel-contrib/bazel_features@v1.15.0...v1.16.0
v1.15.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
What's Changed
New Contributors
Full Changelog: bazel-contrib/bazel_features@v1.14.0...v1.15.0
v1.14.0Compare Source
Using Bzlmod with Bazel 6
common --enable_bzlmodin.bazelrc.MODULE.bazelfile:Using WORKSPACE
Paste this snippet into your file:
protocolbuffers/protobuf (com_google_protobuf)
v33.4: Protocol Buffers v33.4Compare Source
Announcements
Other
47b3385)//:protocfrom language runtimes (#19679) (453cfb2)v33.3: Protocol Buffers v33.3Compare Source
Announcements
Bazel
7b30360)04ca1b7)aeaede0)Compiler
command_line_interface_unittestandcode_generator_unittest. (cb0a8c5)44e090c)d167dd0)C++
44e090c)d167dd0)Java
d167dd0)94c7f73)Csharp
d167dd0)Python
d167dd0)38ca2d3. (184b5e8)UPB (Python/PHP/Ruby C-Extension)
d167dd0)cd0cb21)Other
aeedbc6)f7b18f8)d4e7a81)9027d6b)f0907f3)v33.2: Protocol Buffers v33.2Compare Source
Announcements
Compiler
9247790)pbpackage. (483173d)8a0b438)C++
50c9e62)pbpackage. (483173d)Java
pbpackage. (483173d)Csharp
9247790)9f263cd)058bffa)PHP
9247790)PHP C-Extension
e9f62c6)9247790)058bffa)Ruby
Ruby C-Extension
e9f62c6)058bffa)UPB (Python/PHP/Ruby C-Extension)
e9f62c6)72a48f9)13ee2ce)v33.1: Protocol Buffers v33.1Compare Source
Announcements
C++
Anyhasbit consistency issue in OSS. (#24400) (59db671)Java
5737cd2)v33.0: Protocol Buffers v33.0Compare Source
Announcements
Bazel
d5217fd)30d2332)d98e2ef)Compiler
ae308fc)abeb130)C++
813a7ef)RepeatedField(Arena*)constructor private in a future release. (768db14)Map(Arena*)constructor private in a future release. (543a17f)3d94d83)RepeatedPtrField(Arena*)constructor private in a future release (6422b9d)b64e490)RuntimeAssertInBoundsto remove repeated logic and makeGet/Mutableeasier to read. (2f270c4)ae308fc)e25e267)90824aa)6ea1640)a959f27)c7030f4)95b1763)Java
Restored compatibility of runtime with gencode created with protoc <3.21
With this release, compatibility of the runtime with older gencode down to 3.0.0 is restored, compared to the previous support minimum of gencode created with 3.22+. Note that it is still strongly recommended to regenerate your gencode with a newer protoc and to avoid using gencode which was created with an old protoc.
Generated code from this range is covered by CVE-2022-3171 and is potentially vulnerable to a Denial of Service risk.
JavaProto 4.x previously dropped compatibility with the potentially vulnerable generated code, having the behavior of:
Starting with this release:
-Dcom.google.protobuf.error_on_unsafe_pre22_gencode) or to entirely silence the logged messages (-Dcom.google.protobuf.use_unsafe_pre22_gencode)This change was made based on community feedback regarding the difficulty in identifying and quickly remediating stale gencode in their transitive dependencies weighed against a careful evaluation of the realistic risk exposure of DoS (with no risk of other concerns including information leak or RCE).
We strongly recommend that any users who observe the log messages to regenerate the corresponding code with a newer protoc. We recommend that any security-conscious services opt into the
error_on_unsafe_pre22_gencodebehavior to preclude any risk of a Denial of Service surface area being exposed.A future 4.x release may flip the default behavior to error by default as a measure to further help the ecosystem avoid the Denial of Service risks, while still maintaining the ability to opt into continuing to use insecure gencode for users who are parsing trusted inputs and where the difficulty of regenerating is high.
Changes
e55224c)8de4002)c4ff7a6)537ac35)eba6df2)ca4fb2f)4376591)a995803)7b0bee3)varint,fixed32, andfixed64fields inUnknownFieldSet.Field(810272f)badaf41)c518f25)8d51e34)94a2a44(ea33ae8)7bff169(f2257f5)abeb130)e05db5c)isPlaceholder()accessors to file, message, and enum descriptors (f978ec2)745e15b)b68b673)5768acd)7c51e5b)GeneratedMessage.ExtendableMessage.extensions(b25d39e)Rust
_(c3f7e8d)Send(8bff944)Python
56b2b89](https://redirect.github.com/protocolbuffers/protobuf/commit/56b2b89e37Configuration
📅 Schedule: Branch creation - Between 12:00 AM and 03:59 AM, only on Monday ( * 0-3 * * 1 ) in timezone America/Los_Angeles, Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.