Skip to content

Bump github.com/securego/gosec/v2 from 2.25.0 to 2.26.1#22

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/github.com/securego/gosec/v2-2.26.1
Closed

Bump github.com/securego/gosec/v2 from 2.25.0 to 2.26.1#22
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/github.com/securego/gosec/v2-2.26.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 4, 2026

Copy link
Copy Markdown
Contributor

Bumps github.com/securego/gosec/v2 from 2.25.0 to 2.26.1.

Release notes

Sourced from github.com/securego/gosec/v2's releases.

v2.26.1

Changelog

  • 4a3bd8af174872c778439083ded7adbf3747e770 Update cosign to v3.0.6 (#1659)
Commits
  • 4a3bd8a Update cosign to v3.0.6 (#1659)
  • 553d8a5 Sync taint rule docs and add missing CWE mappings for G113/G307 (#1658)
  • bf0ccd3 Update all dependencies (#1657)
  • 4ead098 Add G710 rule for open redirect via taint analysis (#1654)
  • 8ff985f Fix formatting
  • a1aad0c Update the default models use by autofix and phase out the older models
  • 74bdf7f Format and clean-up the README
  • 74dc989 Add HTTP file-serving function to the skins of pathtraversal analyzer (#1647)
  • 7020111 Skip flaging the TLS min version for go 1.18+ (#1646)
  • d5869fc chore(deps): bump go.opentelemetry.io/otel from 1.39.0 to 1.41.0 (#1645)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Dependabot update go Pull requests that update go code minor Minor-level Semver Bump labels May 4, 2026
Bumps [github.com/securego/gosec/v2](https://github.com/securego/gosec) from 2.25.0 to 2.26.1.
- [Release notes](https://github.com/securego/gosec/releases)
- [Commits](securego/gosec@v2.25.0...v2.26.1)

---
updated-dependencies:
- dependency-name: github.com/securego/gosec/v2
  dependency-version: 2.26.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/go_modules/github.com/securego/gosec/v2-2.26.1 branch from e65b18e to b27753d Compare May 4, 2026 13:46
@dependabot @github

dependabot Bot commented on behalf of github May 4, 2026

Copy link
Copy Markdown
Contributor Author

Superseded by #24.

@dependabot dependabot Bot closed this May 4, 2026
@dependabot dependabot Bot deleted the dependabot/go_modules/github.com/securego/gosec/v2-2.26.1 branch May 4, 2026 13:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Dependabot update go Pull requests that update go code minor Minor-level Semver Bump

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants