fix(deps): update module golang.org/x/oauth2 to v0.37.0 #37

Open
james wants to merge 1 commit from renovate/golang.org-x-oauth2-0.x into main
Owner

This PR contains the following updates:

Package Change Age Confidence
golang.org/x/oauth2 v0.36.0 → v0.37.0 age confidence

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

This PR contains the following updates: | Package | Change | [Age](https://docs.renovatebot.com/merge-confidence/) | [Confidence](https://docs.renovatebot.com/merge-confidence/) | |---|---|---|---| | [golang.org/x/oauth2](https://pkg.go.dev/golang.org/x/oauth2) | [`v0.36.0` → `v0.37.0`](https://cs.opensource.google/go/x/oauth2/+/refs/tags/v0.36.0...refs/tags/v0.37.0) | ![age](https://developer.mend.io/api/mc/badges/age/go/golang.org%2fx%2foauth2/v0.37.0?slim=true) | ![confidence](https://developer.mend.io/api/mc/badges/confidence/go/golang.org%2fx%2foauth2/v0.36.0/v0.37.0?slim=true) | --- ### Configuration 📅 **Schedule**: (UTC) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC42NS41IiwidXBkYXRlZEluVmVyIjoiNDQuNjUuNSIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==-->
fix(deps): update module golang.org/x/oauth2 to v0.37.0
Some checks failed
security-scan / security-scan (pull_request) Successful in 30s
renovate/artifacts Artifact file update failure
codecov/project 0.00% (No base report)
codecov/patch 100.00% >= target 80%
test / go (pull_request) Failing after 1m7s
test / web (pull_request) Successful in 1m12s
test / coverage-badge (pull_request) Has been skipped
088dc0252a
Author
Owner

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: go.sum
spawn go ENOENT
### ⚠️ Artifact update problem Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is. ♻ Renovate will retry this branch, including artifacts, only when one of the following happens: - any of the package files in this branch needs updating, or - the branch becomes conflicted, or - you click the rebase/retry checkbox if found above, or - you rename this PR's title to start with "rebase!" to trigger it manually The artifact failure details are included below: ##### File name: go.sum ``` spawn go ENOENT ```

🔎 ojo scan results

Severity Count
⚪ UNKNOWN 1
Details (1)
Type Severity ID/Rule Location Description
vuln ⚪ UNKNOWN GO-2026-5932 golang.org/x/[email protected] The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues
<!-- ojo-scan-summary --> ### 🔎 ojo scan results | Severity | Count | |---|---| | ⚪ UNKNOWN | 1 | <details><summary>Details (1)</summary> | Type | Severity | ID/Rule | Location | Description | |---|---|---|---|---| | vuln | ⚪ UNKNOWN | <a href="https://go.dev/issue/44226" target="_blank" rel="noopener noreferrer">GO-2026-5932</a> | golang.org/x/[email protected] | The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues | </details>

Codecov Results 📊

✅ Patch coverage is 100.00%. Project has 3214 uncovered lines.


Generated by Codecov Action

<!-- codecov-action-results --> ## Codecov Results 📊 :white_check_mark: Patch coverage is **100.00%**. Project has **3214** uncovered lines. --- *Generated by [Codecov Action](https://github.com/getsentry/codecov-action)*
Some checks failed
security-scan / security-scan (pull_request) Successful in 30s
renovate/artifacts Artifact file update failure
codecov/project 0.00% (No base report)
codecov/patch 100.00% >= target 80%
test / go (pull_request) Failing after 1m7s
test / web (pull_request) Successful in 1m12s
test / coverage-badge (pull_request) Has been skipped
This pull request doesn't have enough approvals yet. 0 of 1 approvals granted.
This branch is out-of-date with the base branch
You are not authorized to merge this pull request.
View command line instructions

Checkout

From your project repository, check out a new branch and test the changes.
git fetch -u origin renovate/golang.org-x-oauth2-0.x:renovate/golang.org-x-oauth2-0.x
git switch renovate/golang.org-x-oauth2-0.x
Sign in to join this conversation.
No reviewers
No labels
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set

Reference
ColibriSec/balam!37
No description provided.