Skip to content

Bump library/alpine from 3.23 to 3.24 - #305

Merged
jsf9k merged 3 commits into
developfrom
dependabot/docker/library/alpine-3.24
Aug 13, 2026
Merged

Bump library/alpine from 3.23 to 3.24#305
jsf9k merged 3 commits into
developfrom
dependabot/docker/library/alpine-3.24

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 10, 2026

Copy link
Copy Markdown
Contributor

Bumps library/alpine from 3.23 to 3.24.

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file docker Pull requests that update Docker code labels Jun 10, 2026
@dependabot
dependabot Bot requested review from dav3r, jsf9k and mcdonnnj as code owners June 10, 2026 23:02
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file docker Pull requests that update Docker code labels Jun 10, 2026
@jsf9k jsf9k self-assigned this Jun 11, 2026
@jsf9k jsf9k added the blocked This issue or pull request is awaiting the outcome of another issue or pull request label Jun 15, 2026
@jsf9k

jsf9k commented Jun 15, 2026

Copy link
Copy Markdown
Member

This PR is currently blocked because only python:3.14.6-alpine3.24 is offered on Docker Hub, but Alpine 3.24 does not yet offer Python 3.14.6.

dependabot Bot and others added 2 commits August 13, 2026 10:02
Bumps library/alpine from 3.23 to 3.24.

---
updated-dependencies:
- dependency-name: library/alpine
  dependency-version: '3.24'
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@jsf9k
jsf9k force-pushed the dependabot/docker/library/alpine-3.24 branch from a00b641 to 3c154e7 Compare August 13, 2026 14:12
@jsf9k

jsf9k commented Aug 13, 2026

Copy link
Copy Markdown
Member

This PR is currently blocked because only python:3.14.6-alpine3.24 is offered on Docker Hub, but Alpine 3.24 does not yet offer Python 3.14.6.

This is no longer the case. python:3.14.7-alpine3.24 is now offered on Docker Hub, and Alpine 3.24 now offers Python 3.7.

@jsf9k

jsf9k commented Aug 13, 2026

Copy link
Copy Markdown
Member

We can't do anything about there being a vulnerability in cryptography version 47.0.0 right now, so I am inclined to override the failing Dependency Review check and merge this PR as long as all the other checks pass.

@jsf9k jsf9k removed the blocked This issue or pull request is awaiting the outcome of another issue or pull request label Aug 13, 2026
@jsf9k
jsf9k merged commit 2475c64 into develop Aug 13, 2026
23 of 24 checks passed
@jsf9k
jsf9k deleted the dependabot/docker/library/alpine-3.24 branch August 13, 2026 17:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file docker Pull requests that update Docker code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants