diff --git a/.github/workflows/scorecard.yaml b/.github/workflows/scorecard.yaml index f8d4321752..46bd358db6 100644 --- a/.github/workflows/scorecard.yaml +++ b/.github/workflows/scorecard.yaml @@ -45,6 +45,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 + uses: github/codeql-action/upload-sarif@d186a2a36cc67bfa1b860e6170d37fb9634742c7 # v2.2.11 with: sarif_file: results.sarif diff --git a/go.mod b/go.mod index c35f748357..973716ae02 100644 --- a/go.mod +++ b/go.mod @@ -28,7 +28,7 @@ require ( github.com/mholt/archiver/v3 v3.5.1 github.com/moby/moby v23.0.3+incompatible github.com/opencontainers/image-spec v1.1.0-rc2 - github.com/otiai10/copy v1.9.0 + github.com/otiai10/copy v1.10.0 github.com/pkg/errors v0.9.1 github.com/pterm/pterm v0.12.58 github.com/sigstore/cosign v1.13.1 @@ -44,7 +44,7 @@ require ( k8s.io/klog/v2 v2.90.1 k8s.io/kubectl v0.26.3 oras.land/oras-go/v2 v2.0.2 - sigs.k8s.io/kustomize/api v0.12.1 + sigs.k8s.io/kustomize/api v0.13.2 sigs.k8s.io/kustomize/kyaml v0.13.9 sigs.k8s.io/yaml v1.3.0 ) diff --git a/package-lock.json b/package-lock.json index 56b233adb2..791c1c649b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -24,7 +24,7 @@ "devDependencies": { "@playwright/test": "1.32.2", "@sveltejs/adapter-static": "2.0.1", - "@sveltejs/kit": "1.15.1", + "@sveltejs/kit": "1.15.2", "@sveltejs/package": "2.0.2", "@testing-library/svelte": "3.2.2", "@tsconfig/svelte": "4.0.1", @@ -1308,9 +1308,9 @@ } }, "node_modules/@sveltejs/kit": { - "version": "1.15.1", - "resolved": "https://registry.npmjs.org/@sveltejs/kit/-/kit-1.15.1.tgz", - "integrity": "sha512-Wexy3N+COoClTuRawVJRbLoH5HFxNrXG3uoHt/Yd5IGx8WAcJM9Nj/CcBLw/tjCR9uDDYMnx27HxuPy3YIYQUA==", + "version": "1.15.2", + "resolved": "https://registry.npmjs.org/@sveltejs/kit/-/kit-1.15.2.tgz", + "integrity": "sha512-rLNxZrjbrlPf8AWW8GAU4L/Vvu17e9v8EYl7pUip7x72lTft7RcxeP3z7tsrHpMSBBxC9o4XdKzFvz1vMZyXZw==", "dev": true, "hasInstallScript": true, "dependencies": { @@ -6550,9 +6550,9 @@ "requires": {} }, "@sveltejs/kit": { - "version": "1.15.1", - "resolved": "https://registry.npmjs.org/@sveltejs/kit/-/kit-1.15.1.tgz", - "integrity": "sha512-Wexy3N+COoClTuRawVJRbLoH5HFxNrXG3uoHt/Yd5IGx8WAcJM9Nj/CcBLw/tjCR9uDDYMnx27HxuPy3YIYQUA==", + "version": "1.15.2", + "resolved": "https://registry.npmjs.org/@sveltejs/kit/-/kit-1.15.2.tgz", + "integrity": "sha512-rLNxZrjbrlPf8AWW8GAU4L/Vvu17e9v8EYl7pUip7x72lTft7RcxeP3z7tsrHpMSBBxC9o4XdKzFvz1vMZyXZw==", "dev": true, "requires": { "@sveltejs/vite-plugin-svelte": "^2.0.0", diff --git a/package.json b/package.json index 446c915a7e..123406a066 100644 --- a/package.json +++ b/package.json @@ -40,7 +40,7 @@ "devDependencies": { "@playwright/test": "1.32.2", "@sveltejs/adapter-static": "2.0.1", - "@sveltejs/kit": "1.15.1", + "@sveltejs/kit": "1.15.2", "@sveltejs/package": "2.0.2", "@testing-library/svelte": "3.2.2", "@tsconfig/svelte": "4.0.1",