Skip to content

Commit 33e5acc

Browse files
authored
Merge pull request #482 from fluxcd/kube-1.24
Update dependencies
2 parents 58b16d8 + 732baea commit 33e5acc

File tree

10 files changed

+243
-547
lines changed

10 files changed

+243
-547
lines changed

.github/workflows/cifuzz.yaml

+4-4
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
name: CIFuzz
1+
name: fuzz
22
on:
33
pull_request:
44
branches:
@@ -8,13 +8,13 @@ permissions:
88
contents: read # for actions/checkout to fetch code
99

1010
jobs:
11-
Fuzzing:
11+
smoketest:
1212
runs-on: ubuntu-latest
1313
steps:
1414
- name: Checkout
15-
uses: actions/checkout@v2
15+
uses: actions/checkout@v3
1616
- name: Restore Go cache
17-
uses: actions/cache@v1
17+
uses: actions/cache@v3
1818
with:
1919
path: /home/runner/work/_temp/_github_home/go/pkg/mod
2020
key: ${{ runner.os }}-go-${{ hashFiles('**/go.sum') }}

.github/workflows/e2e.yaml

+4-4
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
runs-on: ubuntu-latest
1616
steps:
1717
- name: Checkout
18-
uses: actions/checkout@v2
18+
uses: actions/checkout@v3
1919
- name: Setup QEMU
2020
uses: docker/setup-qemu-action@v1
2121
with:
@@ -26,22 +26,22 @@ jobs:
2626
with:
2727
buildkitd-flags: "--debug"
2828
- name: Restore Go cache
29-
uses: actions/cache@v1
29+
uses: actions/cache@v3
3030
with:
3131
path: ~/go/pkg/mod
3232
key: ${{ runner.os }}-go-${{ hashFiles('**/go.sum') }}
3333
restore-keys: |
3434
${{ runner.os }}-go-
3535
- name: Cache Docker layers
36-
uses: actions/cache@v2
36+
uses: actions/cache@v3
3737
id: cache
3838
with:
3939
path: /tmp/.buildx-cache
4040
key: ${{ runner.os }}-buildx-ghcache-${{ github.sha }}
4141
restore-keys: |
4242
${{ runner.os }}-buildx-ghcache-
4343
- name: Setup Go
44-
uses: actions/setup-go@v2
44+
uses: actions/setup-go@v3
4545
with:
4646
go-version: 1.17.x
4747
- name: Setup Kubernetes

.github/workflows/nightly.yaml

+3-3
Original file line numberDiff line numberDiff line change
@@ -14,18 +14,18 @@ jobs:
1414
build:
1515
runs-on: ubuntu-latest
1616
steps:
17-
- uses: actions/checkout@v2
17+
- uses: actions/checkout@v3
1818
- name: Setup QEMU
1919
uses: docker/setup-qemu-action@v1
2020
with:
2121
platforms: all
2222
- name: Setup Docker Buildx
2323
id: buildx
24-
uses: docker/setup-buildx-action@v1
24+
uses: docker/setup-buildx-action@v2
2525
with:
2626
buildkitd-flags: "--debug"
2727
- name: Build multi-arch container image
28-
uses: docker/build-push-action@v2
28+
uses: docker/build-push-action@v3
2929
with:
3030
push: false
3131
builder: ${{ steps.buildx.outputs.name }}

.github/workflows/release.yml

+8-8
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222
build-push:
2323
runs-on: ubuntu-latest
2424
steps:
25-
- uses: actions/checkout@v2
25+
- uses: actions/checkout@v3
2626
- name: Setup Kustomize
2727
uses: fluxcd/pkg/actions/kustomize@main
2828
- name: Prepare
@@ -35,32 +35,32 @@ jobs:
3535
echo ::set-output name=BUILD_DATE::$(date -u +'%Y-%m-%dT%H:%M:%SZ')
3636
echo ::set-output name=VERSION::${VERSION}
3737
- name: Setup QEMU
38-
uses: docker/setup-qemu-action@v1
38+
uses: docker/setup-qemu-action@v2
3939
- name: Setup Docker Buildx
4040
id: buildx
41-
uses: docker/setup-buildx-action@v1
41+
uses: docker/setup-buildx-action@v2
4242
- name: Login to GitHub Container Registry
43-
uses: docker/login-action@v1
43+
uses: docker/login-action@v2
4444
with:
4545
registry: ghcr.io
4646
username: fluxcdbot
4747
password: ${{ secrets.GHCR_TOKEN }}
4848
- name: Login to Docker Hub
49-
uses: docker/login-action@v1
49+
uses: docker/login-action@v2
5050
with:
5151
username: fluxcdbot
5252
password: ${{ secrets.DOCKER_FLUXCD_PASSWORD }}
5353
- name: Generate images meta
5454
id: meta
55-
uses: docker/metadata-action@v3
55+
uses: docker/metadata-action@v4
5656
with:
5757
images: |
5858
fluxcd/${{ env.CONTROLLER }}
5959
ghcr.io/fluxcd/${{ env.CONTROLLER }}
6060
tags: |
6161
type=raw,value=${{ steps.prep.outputs.VERSION }}
6262
- name: Publish images
63-
uses: docker/build-push-action@v2
63+
uses: docker/build-push-action@v3
6464
with:
6565
push: true
6666
builder: ${{ steps.buildx.outputs.name }}
@@ -92,7 +92,7 @@ jobs:
9292
- uses: anchore/sbom-action/download-syft@v0
9393
- name: Create release and SBOM
9494
if: startsWith(github.ref, 'refs/tags/v')
95-
uses: goreleaser/goreleaser-action@v2
95+
uses: goreleaser/goreleaser-action@v3
9696
with:
9797
version: latest
9898
args: release --release-notes=config/release/notes.md --rm-dist --skip-validate

.github/workflows/scan.yaml

+7-7
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
name: Scan
1+
name: scan
22
on:
33
push:
44
branches: [ main ]
@@ -16,7 +16,7 @@ jobs:
1616
name: FOSSA
1717
runs-on: ubuntu-latest
1818
steps:
19-
- uses: actions/checkout@v2
19+
- uses: actions/checkout@v3
2020
- name: Run FOSSA scan and upload build data
2121
uses: fossa-contrib/fossa-action@v1
2222
with:
@@ -29,7 +29,7 @@ jobs:
2929
runs-on: ubuntu-latest
3030
if: github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name == github.repository
3131
steps:
32-
- uses: actions/checkout@v2
32+
- uses: actions/checkout@v3
3333
- name: Run Snyk to check for vulnerabilities
3434
uses: snyk/actions/golang@master
3535
continue-on-error: true
@@ -47,12 +47,12 @@ jobs:
4747
runs-on: ubuntu-latest
4848
steps:
4949
- name: Checkout repository
50-
uses: actions/checkout@v2
50+
uses: actions/checkout@v3
5151
- name: Initialize CodeQL
52-
uses: github/codeql-action/init@v1
52+
uses: github/codeql-action/init@v2
5353
with:
5454
languages: go
5555
- name: Autobuild
56-
uses: github/codeql-action/autobuild@v1
56+
uses: github/codeql-action/autobuild@v2
5757
- name: Perform CodeQL Analysis
58-
uses: github/codeql-action/analyze@v1
58+
uses: github/codeql-action/analyze@v2

Dockerfile

+1-1
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ COPY internal/ internal/
3232
ENV CGO_ENABLED=0
3333
RUN xx-go build -a -o helm-controller main.go
3434

35-
FROM alpine:3.15
35+
FROM alpine:3.16
3636

3737
# link repo to the GitHub Container Registry image
3838
LABEL org.opencontainers.image.source="https://github.com/fluxcd/helm-controller"

api/go.mod

+11-10
Original file line numberDiff line numberDiff line change
@@ -3,29 +3,30 @@ module github.com/fluxcd/helm-controller/api
33
go 1.17
44

55
require (
6-
github.com/fluxcd/pkg/apis/kustomize v0.3.3
7-
github.com/fluxcd/pkg/apis/meta v0.13.0
8-
k8s.io/apiextensions-apiserver v0.23.6
9-
k8s.io/apimachinery v0.23.6
6+
github.com/fluxcd/pkg/apis/kustomize v0.4.1
7+
github.com/fluxcd/pkg/apis/meta v0.14.1
8+
k8s.io/apiextensions-apiserver v0.24.0
9+
k8s.io/apimachinery v0.24.0
1010
sigs.k8s.io/controller-runtime v0.11.2
1111
)
1212

13+
// Fix CVE-2022-28948
14+
replace gopkg.in/yaml.v3 => gopkg.in/yaml.v3 v3.0.0
15+
1316
require (
1417
github.com/go-logr/logr v1.2.2 // indirect
1518
github.com/gogo/protobuf v1.3.2 // indirect
16-
github.com/google/go-cmp v0.5.6 // indirect
1719
github.com/google/gofuzz v1.2.0 // indirect
1820
github.com/json-iterator/go v1.1.12 // indirect
1921
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
2022
github.com/modern-go/reflect2 v1.0.2 // indirect
21-
golang.org/x/net v0.0.0-20211215060638-4ddde0e984e9 // indirect
22-
golang.org/x/sys v0.0.0-20211110154304-99a53858aa08 // indirect
23+
golang.org/x/net v0.0.0-20220127200216-cd36cc0744dd // indirect
2324
golang.org/x/text v0.3.7 // indirect
2425
gopkg.in/check.v1 v1.0.0-20201130134442-10cb98267c6c // indirect
2526
gopkg.in/inf.v0 v0.9.1 // indirect
2627
gopkg.in/yaml.v2 v2.4.0 // indirect
27-
k8s.io/klog/v2 v2.30.0 // indirect
28-
k8s.io/utils v0.0.0-20211208161948-7d6a63dca704 // indirect
29-
sigs.k8s.io/json v0.0.0-20211020170558-c049b76a60c6 // indirect
28+
k8s.io/klog/v2 v2.60.1 // indirect
29+
k8s.io/utils v0.0.0-20220210201930-3a6ce19ff2f9 // indirect
30+
sigs.k8s.io/json v0.0.0-20211208200746-9f7c6b3444d2 // indirect
3031
sigs.k8s.io/structured-merge-diff/v4 v4.2.1 // indirect
3132
)

0 commit comments

Comments
 (0)