dependabot[bot]
8be9fc37ff
build(deps): bump github.com/coreos/go-oidc/v3 from 3.14.1 to 3.17.0
...
Bumps [github.com/coreos/go-oidc/v3](https://github.com/coreos/go-oidc ) from 3.14.1 to 3.17.0.
- [Release notes](https://github.com/coreos/go-oidc/releases )
- [Commits](https://github.com/coreos/go-oidc/compare/v3.14.1...v3.17.0 )
---
updated-dependencies:
- dependency-name: github.com/coreos/go-oidc/v3
dependency-version: 3.17.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
8ab38ebb79
Merge pull request #4426 from dexidp/dependabot/go_modules/examples/github.com/spf13/cobra-1.10.2
...
build(deps): bump github.com/spf13/cobra from 1.10.1 to 1.10.2 in /examples
3 months ago
dependabot[bot]
cfdf8d4b2a
build(deps): bump github.com/spf13/cobra in /examples
...
Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra ) from 1.10.1 to 1.10.2.
- [Release notes](https://github.com/spf13/cobra/releases )
- [Commits](https://github.com/spf13/cobra/compare/v1.10.1...v1.10.2 )
---
updated-dependencies:
- dependency-name: github.com/spf13/cobra
dependency-version: 1.10.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
31cfdd764e
Merge pull request #4416 from dexidp/dependabot/go_modules/api/v2/google.golang.org/grpc-1.77.0
...
build(deps): bump google.golang.org/grpc from 1.76.0 to 1.77.0 in /api/v2
3 months ago
Márk Sági-Kazár
8b10369fd1
Merge pull request #4417 from dexidp/dependabot/go_modules/examples/google.golang.org/grpc-1.77.0
...
build(deps): bump google.golang.org/grpc from 1.76.0 to 1.77.0 in /examples
3 months ago
dependabot[bot]
c71068f312
build(deps): bump google.golang.org/grpc in /api/v2
...
Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go ) from 1.76.0 to 1.77.0.
- [Release notes](https://github.com/grpc/grpc-go/releases )
- [Commits](https://github.com/grpc/grpc-go/compare/v1.76.0...v1.77.0 )
---
updated-dependencies:
- dependency-name: google.golang.org/grpc
dependency-version: 1.77.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
c0c440876a
build(deps): bump google.golang.org/grpc in /examples
...
Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go ) from 1.76.0 to 1.77.0.
- [Release notes](https://github.com/grpc/grpc-go/releases )
- [Commits](https://github.com/grpc/grpc-go/compare/v1.76.0...v1.77.0 )
---
updated-dependencies:
- dependency-name: google.golang.org/grpc
dependency-version: 1.77.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
7953b07a6e
Merge pull request #4431 from dexidp/dependabot/go_modules/examples/golang.org/x/oauth2-0.34.0
...
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.34.0 in /examples
3 months ago
Márk Sági-Kazár
99df0404b0
Merge pull request #4401 from dexidp/dependabot/go_modules/github.com/go-ldap/ldap/v3-3.4.12
...
build(deps): bump github.com/go-ldap/ldap/v3 from 3.4.11 to 3.4.12
3 months ago
Márk Sági-Kazár
be38c2111c
Merge pull request #4412 from dexidp/dependabot/go_modules/golang.org/x/crypto-0.44.0
...
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.44.0
3 months ago
Márk Sági-Kazár
93a3732e24
Merge pull request #4409 from dexidp/dependabot/go_modules/golang.org/x/oauth2-0.33.0
...
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.33.0
3 months ago
dependabot[bot]
9a93f64685
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.44.0
...
Bumps [golang.org/x/crypto](https://github.com/golang/crypto ) from 0.43.0 to 0.44.0.
- [Commits](https://github.com/golang/crypto/compare/v0.43.0...v0.44.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/crypto
dependency-version: 0.44.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
06c5a3dab4
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.33.0
...
Bumps [golang.org/x/oauth2](https://github.com/golang/oauth2 ) from 0.32.0 to 0.33.0.
- [Commits](https://github.com/golang/oauth2/compare/v0.32.0...v0.33.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/oauth2
dependency-version: 0.33.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
a6b3152a47
Merge pull request #4413 from dexidp/dependabot/go_modules/google.golang.org/api-0.256.0
...
build(deps): bump google.golang.org/api from 0.252.0 to 0.256.0
3 months ago
Márk Sági-Kazár
1fa99f36db
Merge pull request #4424 from dexidp/dependabot/docker/golang-1.25.5-alpine3.22
...
build(deps): bump golang from 1.25.3-alpine3.22 to 1.25.5-alpine3.22
3 months ago
Márk Sági-Kazár
f9d49f72ab
Merge pull request #4425 from dexidp/dependabot/docker/alpine-3.23.0
...
build(deps): bump alpine from 3.22.2 to 3.23.0
3 months ago
Márk Sági-Kazár
30b1d6e3ed
Merge pull request #4399 from dexidp/dependabot/github_actions/helm/kind-action-1.13.0
...
build(deps): bump helm/kind-action from 1.12.0 to 1.13.0
3 months ago
dependabot[bot]
7b3063d993
build(deps): bump google.golang.org/api from 0.252.0 to 0.256.0
...
Bumps [google.golang.org/api](https://github.com/googleapis/google-api-go-client ) from 0.252.0 to 0.256.0.
- [Release notes](https://github.com/googleapis/google-api-go-client/releases )
- [Changelog](https://github.com/googleapis/google-api-go-client/blob/main/CHANGES.md )
- [Commits](https://github.com/googleapis/google-api-go-client/compare/v0.252.0...v0.256.0 )
---
updated-dependencies:
- dependency-name: google.golang.org/api
dependency-version: 0.256.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
a1e5d5807b
Merge pull request #4402 from dexidp/dependabot/github_actions/docker/metadata-action-5.9.0
...
build(deps): bump docker/metadata-action from 5.8.0 to 5.9.0
3 months ago
Márk Sági-Kazár
1dac07dca6
Merge pull request #4405 from dexidp/dependabot/github_actions/docker/setup-qemu-action-3.7.0
...
build(deps): bump docker/setup-qemu-action from 3.6.0 to 3.7.0
3 months ago
Márk Sági-Kazár
7fd0ba9e7f
Merge pull request #4411 from dexidp/dependabot/github_actions/actions/dependency-review-action-4.8.2
...
build(deps): bump actions/dependency-review-action from 4.8.1 to 4.8.2
3 months ago
Márk Sági-Kazár
24cd8809cc
Merge pull request #4414 from dexidp/dependabot/github_actions/github/codeql-action-4.31.3
...
build(deps): bump github/codeql-action from 4.31.2 to 4.31.3
3 months ago
Márk Sági-Kazár
719e40544e
Merge pull request #4419 from dexidp/dependabot/go_modules/golang.org/x/crypto-0.45.0
...
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.45.0
3 months ago
dependabot[bot]
cfa31c46b9
build(deps): bump alpine from 3.22.2 to 3.23.0
...
Bumps alpine from 3.22.2 to 3.23.0.
---
updated-dependencies:
- dependency-name: alpine
dependency-version: 3.23.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
c301f781a2
build(deps): bump golang from 1.25.3-alpine3.22 to 1.25.5-alpine3.22
...
Bumps golang from 1.25.3-alpine3.22 to 1.25.5-alpine3.22.
---
updated-dependencies:
- dependency-name: golang
dependency-version: 1.25.5-alpine3.22
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
Márk Sági-Kazár
bf77fcffa9
Merge pull request #4427 from dexidp/dependabot/docker/distroless/static-debian12-2b7c93f
...
build(deps): bump distroless/static-debian12 from `e8a4044` to `2b7c93f`
3 months ago
Márk Sági-Kazár
356f207011
Merge pull request #4430 from dexidp/dependabot/docker/tonistiigi/xx-1.9.0
...
build(deps): bump tonistiigi/xx from 1.8.0 to 1.9.0
3 months ago
dependabot[bot]
a72ac955f4
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.34.0 in /examples
...
Bumps [golang.org/x/oauth2](https://github.com/golang/oauth2 ) from 0.32.0 to 0.34.0.
- [Commits](https://github.com/golang/oauth2/compare/v0.32.0...v0.34.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/oauth2
dependency-version: 0.34.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
3e09c4ae08
build(deps): bump tonistiigi/xx from 1.8.0 to 1.9.0
...
Bumps tonistiigi/xx from 1.8.0 to 1.9.0.
---
updated-dependencies:
- dependency-name: tonistiigi/xx
dependency-version: 1.9.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
7300d82247
build(deps): bump distroless/static-debian12 from `e8a4044` to `2b7c93f`
...
Bumps distroless/static-debian12 from `e8a4044` to `2b7c93f`.
---
updated-dependencies:
- dependency-name: distroless/static-debian12
dependency-version: nonroot
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
3 months ago
dependabot[bot]
df0b519559
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.45.0
...
Bumps [golang.org/x/crypto](https://github.com/golang/crypto ) from 0.43.0 to 0.45.0.
- [Commits](https://github.com/golang/crypto/compare/v0.43.0...v0.45.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/crypto
dependency-version: 0.45.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
ac3ccad51d
build(deps): bump github/codeql-action from 4.31.2 to 4.31.3
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 4.31.2 to 4.31.3.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](0499de31b9...014f16e7ab )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.31.3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
0705d284f2
build(deps): bump actions/dependency-review-action from 4.8.1 to 4.8.2
...
Bumps [actions/dependency-review-action](https://github.com/actions/dependency-review-action ) from 4.8.1 to 4.8.2.
- [Release notes](https://github.com/actions/dependency-review-action/releases )
- [Commits](40c09b7dc9...3c4e3dcb1a )
---
updated-dependencies:
- dependency-name: actions/dependency-review-action
dependency-version: 4.8.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
7869639830
build(deps): bump docker/setup-qemu-action from 3.6.0 to 3.7.0
...
Bumps [docker/setup-qemu-action](https://github.com/docker/setup-qemu-action ) from 3.6.0 to 3.7.0.
- [Release notes](https://github.com/docker/setup-qemu-action/releases )
- [Commits](29109295f8...c7c5346462 )
---
updated-dependencies:
- dependency-name: docker/setup-qemu-action
dependency-version: 3.7.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
5be29e99ac
build(deps): bump docker/metadata-action from 5.8.0 to 5.9.0
...
Bumps [docker/metadata-action](https://github.com/docker/metadata-action ) from 5.8.0 to 5.9.0.
- [Release notes](https://github.com/docker/metadata-action/releases )
- [Commits](c1e51972af...318604b99e )
---
updated-dependencies:
- dependency-name: docker/metadata-action
dependency-version: 5.9.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
c425652e2d
build(deps): bump github.com/go-ldap/ldap/v3 from 3.4.11 to 3.4.12
...
Bumps [github.com/go-ldap/ldap/v3](https://github.com/go-ldap/ldap ) from 3.4.11 to 3.4.12.
- [Release notes](https://github.com/go-ldap/ldap/releases )
- [Commits](https://github.com/go-ldap/ldap/compare/v3.4.11...v3.4.12 )
---
updated-dependencies:
- dependency-name: github.com/go-ldap/ldap/v3
dependency-version: 3.4.12
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
ae58fdd2f4
build(deps): bump helm/kind-action from 1.12.0 to 1.13.0
...
Bumps [helm/kind-action](https://github.com/helm/kind-action ) from 1.12.0 to 1.13.0.
- [Release notes](https://github.com/helm/kind-action/releases )
- [Commits](a1b0e39133...92086f6be0 )
---
updated-dependencies:
- dependency-name: helm/kind-action
dependency-version: 1.13.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
Márk Sági-Kazár
e35542e57a
Merge pull request #4352 from dexidp/dependabot/go_modules/api/v2/google.golang.org/protobuf-1.36.10
...
build(deps): bump google.golang.org/protobuf from 1.36.8 to 1.36.10 in /api/v2
4 months ago
Dmitry Shurupov
1d3b2b5499
Add Terrakube to Adopters ( #4316 )
...
Signed-off-by: Dmitry Shurupov <dmitry.shurupov@palark.com>
4 months ago
Márk Sági-Kazár
788bc19296
Merge pull request #4375 from dexidp/dependabot/go_modules/golang.org/x/oauth2-0.32.0
...
build(deps): bump golang.org/x/oauth2 from 0.31.0 to 0.32.0
4 months ago
Márk Sági-Kazár
e551db9a5e
Merge pull request #4300 from dexidp/dependabot/go_modules/examples/github.com/spf13/cobra-1.10.1
...
build(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.1 in /examples
4 months ago
Rene Dekker
9355759813
fix(storage/kubernetes): Only wrap IPv6 addresses in brackets ( #4388 )
...
The Kubernetes client code was wrapping all IP addresses (both IPv4 and
IPv6) in square brackets when constructing the API server URL. This was
based on an incorrect assumption that IPv4 addresses in brackets are valid
in a URL.
Recent versions of Go (1.25.2 and later) have stricter URL parsing
that conforms to RFC 3986. This causes a failure when running Dex in a
Kubernetes environment where the KUBERNETES_SERVICE_HOST is an IPv4
address, leading to the error "invalid IPv6 host".
This commit changes the logic to only wrap IPv6 addresses in square
brackets. It uses `ip.To4() == nil` to reliably detect if an IP address
is IPv6 before wrapping it. This ensures that URLs are correctly
formatted for both IPv4 and IPv6 addresses, fixing the incompatibility
with newer Go versions.
Signed-off-by: Rene Dekker <rene@tigera.io>
4 months ago
dependabot[bot]
4206407169
build(deps): bump google.golang.org/protobuf in /api/v2
...
Bumps google.golang.org/protobuf from 1.36.8 to 1.36.10.
---
updated-dependencies:
- dependency-name: google.golang.org/protobuf
dependency-version: 1.36.10
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
a4985114d2
build(deps): bump github.com/spf13/cobra in /examples
...
Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra ) from 1.9.1 to 1.10.1.
- [Release notes](https://github.com/spf13/cobra/releases )
- [Commits](https://github.com/spf13/cobra/compare/v1.9.1...v1.10.1 )
---
updated-dependencies:
- dependency-name: github.com/spf13/cobra
dependency-version: 1.10.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
dependabot[bot]
a51cceaa6d
build(deps): bump golang.org/x/oauth2 from 0.31.0 to 0.32.0
...
Bumps [golang.org/x/oauth2](https://github.com/golang/oauth2 ) from 0.31.0 to 0.32.0.
- [Commits](https://github.com/golang/oauth2/compare/v0.31.0...v0.32.0 )
---
updated-dependencies:
- dependency-name: golang.org/x/oauth2
dependency-version: 0.32.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
4 months ago
Márk Sági-Kazár
f9d257adf3
Merge pull request #4371 from dexidp/dependabot/docker/golang-aee43c3
...
build(deps): bump golang from `20ee0b6` to `aee43c3`
4 months ago
Márk Sági-Kazár
b0a321ec23
Merge pull request #4373 from dexidp/dependabot/go_modules/github.com/go-jose/go-jose/v4-4.1.3
...
build(deps): bump github.com/go-jose/go-jose/v4 from 4.1.2 to 4.1.3
4 months ago
Márk Sági-Kazár
b652b55299
Merge pull request #4374 from dexidp/dependabot/go_modules/golang.org/x/net-0.46.0
...
build(deps): bump golang.org/x/net from 0.44.0 to 0.46.0
4 months ago
Márk Sági-Kazár
9d3c17d482
Merge pull request #4380 from dexidp/dependabot/github_actions/sigstore/cosign-installer-4.0.0
...
build(deps): bump sigstore/cosign-installer from 3.10.0 to 4.0.0
4 months ago
Márk Sági-Kazár
7360083c6f
Merge pull request #4356 from dexidp/dependabot/go_modules/api/v2/google.golang.org/grpc-1.76.0
...
build(deps): bump google.golang.org/grpc from 1.75.0 to 1.76.0 in /api/v2
4 months ago