Bump github.com/sirupsen/logrus from 1.9.0 to 1.9.3 #1

Merged
dependabot[bot] merged 1 commit from dependabot/go_modules/github.com/sirupsen/logrus-1.9.3 into master 2024-01-01 22:59:08 +00:00
dependabot[bot] commented 2024-01-01 22:57:21 +00:00 (Migrated from github.com)

Bumps github.com/sirupsen/logrus from 1.9.0 to 1.9.3.

Release notes

Sourced from github.com/sirupsen/logrus's releases.

v1.9.3

Full Changelog: https://github.com/sirupsen/logrus/compare/v1.9.2...v1.9.3

v1.9.2

Full Changelog: https://github.com/sirupsen/logrus/compare/v1.9.1...v1.9.2

v1.9.1

What's Changed

New Contributors

Full Changelog: https://github.com/sirupsen/logrus/compare/v1.9.0...v1.9.1

Commits
  • d40e25c fix panic in Writer
  • f9291a5 Revert "Revert "Merge pull request #1376 from ozfive/master""
  • 352781d Revert "Merge pull request #1376 from ozfive/master"
  • b30aa27 Merge pull request #1339 from xieyuschen/patch-1
  • 6acd903 Merge pull request #1376 from ozfive/master
  • 105e63f Merge pull request #1 from ashmckenzie/ashmckenzie/fix-writer-scanner
  • c052ba6 Scan text in 64KB chunks
  • e59b167 Merge pull request #1372 from tommyblue/syslog_different_loglevels
  • 766cfec This commit fixes a potential denial of service vulnerability in logrus.Write...
  • 70234da Add instructions to use different log levels for local and syslog
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Bumps [github.com/sirupsen/logrus](https://github.com/sirupsen/logrus) from 1.9.0 to 1.9.3. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/sirupsen/logrus/releases">github.com/sirupsen/logrus's releases</a>.</em></p> <blockquote> <h2>v1.9.3</h2> <ul> <li>Fix a potential denial of service vulnerability in logrus.Writer() that could be triggered by logging text longer than 64kb without newlines <a href="https://github.com/sirupsen/logrus/commit/f9291a534cac1466d26414fd9e326381cd64ecef">https://github.com/sirupsen/logrus/commit/f9291a534cac1466d26414fd9e326381cd64ecef</a> (re-apply <a href="https://redirect.github.com/sirupsen/logrus/pull/1376">sirupsen/logrus#1376</a>)</li> <li>Fix panic in Writer <a href="https://github.com/sirupsen/logrus/commit/d40e25cd45ed9c6b2b66e6b97573a0413e4c23bd">https://github.com/sirupsen/logrus/commit/d40e25cd45ed9c6b2b66e6b97573a0413e4c23bd</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/sirupsen/logrus/compare/v1.9.2...v1.9.3">https://github.com/sirupsen/logrus/compare/v1.9.2...v1.9.3</a></p> <h2>v1.9.2</h2> <ul> <li>Revert <a href="https://redirect.github.com/sirupsen/logrus/pull/1376">sirupsen/logrus#1376</a>, which introduced a regression in v1.9.1</li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/sirupsen/logrus/compare/v1.9.1...v1.9.2">https://github.com/sirupsen/logrus/compare/v1.9.1...v1.9.2</a></p> <h2>v1.9.1</h2> <h2>What's Changed</h2> <ul> <li>Fix data race in hooks.test package by <a href="https://github.com/FrancoisWagner"><code>@​FrancoisWagner</code></a> in <a href="https://redirect.github.com/sirupsen/logrus/pull/1362">sirupsen/logrus#1362</a></li> <li>Add instructions to use different log levels for local and syslog by <a href="https://github.com/tommyblue"><code>@​tommyblue</code></a> in <a href="https://redirect.github.com/sirupsen/logrus/pull/1372">sirupsen/logrus#1372</a></li> <li>This commit fixes a potential denial of service vulnerability in logrus.Writer() that could be triggered by logging text longer than 64kb without newlines. by <a href="https://github.com/ozfive"><code>@​ozfive</code></a> in <a href="https://redirect.github.com/sirupsen/logrus/pull/1376">sirupsen/logrus#1376</a></li> <li>Use text when shows the logrus output by <a href="https://github.com/xieyuschen"><code>@​xieyuschen</code></a> in <a href="https://redirect.github.com/sirupsen/logrus/pull/1339">sirupsen/logrus#1339</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/FrancoisWagner"><code>@​FrancoisWagner</code></a> made their first contribution in <a href="https://redirect.github.com/sirupsen/logrus/pull/1362">sirupsen/logrus#1362</a></li> <li><a href="https://github.com/tommyblue"><code>@​tommyblue</code></a> made their first contribution in <a href="https://redirect.github.com/sirupsen/logrus/pull/1372">sirupsen/logrus#1372</a></li> <li><a href="https://github.com/ozfive"><code>@​ozfive</code></a> made their first contribution in <a href="https://redirect.github.com/sirupsen/logrus/pull/1376">sirupsen/logrus#1376</a></li> <li><a href="https://github.com/xieyuschen"><code>@​xieyuschen</code></a> made their first contribution in <a href="https://redirect.github.com/sirupsen/logrus/pull/1339">sirupsen/logrus#1339</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/sirupsen/logrus/compare/v1.9.0...v1.9.1">https://github.com/sirupsen/logrus/compare/v1.9.0...v1.9.1</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/sirupsen/logrus/commit/d40e25cd45ed9c6b2b66e6b97573a0413e4c23bd"><code>d40e25c</code></a> fix panic in Writer</li> <li><a href="https://github.com/sirupsen/logrus/commit/f9291a534cac1466d26414fd9e326381cd64ecef"><code>f9291a5</code></a> Revert &quot;Revert &quot;Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1376">#1376</a> from ozfive/master&quot;&quot;</li> <li><a href="https://github.com/sirupsen/logrus/commit/352781de903c9dc639752a3ac08148132746e180"><code>352781d</code></a> Revert &quot;Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1376">#1376</a> from ozfive/master&quot;</li> <li><a href="https://github.com/sirupsen/logrus/commit/b30aa27cf4df89e9b96c68c063486c3162f71aef"><code>b30aa27</code></a> Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1339">#1339</a> from xieyuschen/patch-1</li> <li><a href="https://github.com/sirupsen/logrus/commit/6acd903758687c4a3db3c11701e6c414fcf1c1f7"><code>6acd903</code></a> Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1376">#1376</a> from ozfive/master</li> <li><a href="https://github.com/sirupsen/logrus/commit/105e63f86c7de9d7aab379fdd6721a3476009eaf"><code>105e63f</code></a> Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1">#1</a> from ashmckenzie/ashmckenzie/fix-writer-scanner</li> <li><a href="https://github.com/sirupsen/logrus/commit/c052ba6a076b368de89029949f68b3b8ccd8e058"><code>c052ba6</code></a> Scan text in 64KB chunks</li> <li><a href="https://github.com/sirupsen/logrus/commit/e59b167d75f32c4d0db65a2dc6d5f0c4dd548653"><code>e59b167</code></a> Merge pull request <a href="https://redirect.github.com/sirupsen/logrus/issues/1372">#1372</a> from tommyblue/syslog_different_loglevels</li> <li><a href="https://github.com/sirupsen/logrus/commit/766cfece3701d0b1737681ffb5e6e40b628b664d"><code>766cfec</code></a> This commit fixes a potential denial of service vulnerability in logrus.Write...</li> <li><a href="https://github.com/sirupsen/logrus/commit/70234da9c319016474284324265b694b2471c903"><code>70234da</code></a> Add instructions to use different log levels for local and syslog</li> <li>Additional commits viewable in <a href="https://github.com/sirupsen/logrus/compare/v1.9.0...v1.9.3">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/sirupsen/logrus&package-manager=go_modules&previous-version=1.9.0&new-version=1.9.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details>
Sign in to join this conversation.
No description provided.