Skip to content

Conversation

@alxmk
Copy link
Member

@alxmk alxmk commented Oct 6, 2025

Resolves #256

@CLAassistant
Copy link

CLAassistant commented Oct 6, 2025

CLA assistant check
All committers have signed the CLA.

Signed-off-by: Alex Mckenzie-Kelly <[email protected]>
Signed-off-by: Alexander Mckenzie-Kelly <[email protected]>
Copy link
Member

@pyrooka pyrooka left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the PR! One minor thing to change, otherwise it looks good.

go 1.23.0

toolchain go1.23.6
go 1.24.0
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Please revert this change. We'll update the Go versions in a separate PR in the near future, where we also update the Go versions used in the pipelines.

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@pyrooka thanks for the review - unfortunately the new module versions require 1.24, if I force it to 1.23 (via go mod edit -go=1.23) then gopls complains until I go mod tidy which brings it straight back.

I guess this fix has to wait on the Go version bump in that case.

@pyrooka pyrooka changed the title Bump github.com/go-openapi/strfmt dependency fix(build): bump github.com/go-openapi/strfmt dependency Oct 6, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Nancy marking downstream dependency as vulnerable

3 participants