Skip to content

fix(deps): update module github.com/shipwright-io/build to v0.20.14 - #1467

Open
red-hat-konflux[bot] wants to merge 1 commit into
mainfrom
konflux/mintmaker/main/github.com-shipwright-io-build-0.x
Open

fix(deps): update module github.com/shipwright-io/build to v0.20.14#1467
red-hat-konflux[bot] wants to merge 1 commit into
mainfrom
konflux/mintmaker/main/github.com-shipwright-io-build-0.x

Conversation

@red-hat-konflux

@red-hat-konflux red-hat-konflux Bot commented Aug 20, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
github.com/shipwright-io/build v0.19.4v0.20.14 age confidence

Warning

Some dependencies could not be looked up. Check the warning logs for more information.


Release Notes

shipwright-io/build (github.com/shipwright-io/build)

v0.20.14: Shipwright Build release v0.20.14

Compare Source

Release changes since v0.20.13

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2310

Features

Fixes

API Changes

Docs

Misc

v0.20.13: Shipwright Build release v0.20.13

Compare Source

Release changes since v0.20.12

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2296

Features

Fixes

API Changes

Docs

Misc

v0.20.12: Shipwright Build release v0.20.12

Compare Source

Release changes since v0.20.11

None. This is a rebuild of all components to address vulnerabilities in the base images and in Go libraries.

To see a list of addressed vulnerabilities, please refer to #​2296

Features

Fixes

API Changes

Docs

Misc

#​2297 by @​SaschaSchwarze0: Update github.com/go-git/go-git/v5 from v5.19.1 to v5.19.2 / Update github.com/google/cel-go from v0.28.0 to v0.30.0

v0.20.11: Shipwright Build release v0.20.11

Compare Source

Release changes since v0.20.10

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2291

Features

Fixes

API Changes

Docs

Misc

v0.20.10: Shipwright Build release v0.20.10

Compare Source

Release changes since v0.20.9

None. This is a rebuild of all components to address vulnerabilities in the Go standard libraries.

To see a list of addressed vulnerabilities, please refer to #​2289

Features

Fixes

API Changes

Docs

Misc

v0.20.9: Shipwright Build release v0.20.9

Compare Source

Release changes since v0.20.8

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2287

Features

Fixes

API Changes

Docs

Misc

v0.20.8: Shipwright Build release v0.20.8

Compare Source

Release changes since v0.20.7

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2281

Features

Fixes

API Changes

Docs

Misc

v0.20.7: Shipwright Build release v0.20.7

Compare Source

Release changes since v0.20.6

None. This is a rebuild of all components to address vulnerabilities in the base images and Go dependencies.

To see a list of addressed vulnerabilities, please refer to #​2267

Features

Fixes

API Changes

Docs

Misc

#​2272 by @​SaschaSchwarze0: Update github.com/klauspost/compress from v1.18.5 to v1.18.7 to address GHSA-259r-337f-4rfw

#​2269 by @​SaschaSchwarze0: Update go.opentelemetry.io/otel from v1.43.0 to v1.44.0

v0.20.6: Shipwright Build release v0.20.6

Compare Source

Release changes since v0.20.5

None. This is a rebuild of all components to address vulnerabilities in the base images and Go dependencies.

To see a list of addressed vulnerabilities, please refer to #​2260

Features

Fixes

API Changes

Docs

Misc

#​2262 by @​SaschaSchwarze0: Update golang.org/x/net from v0.55.0 to v0.56.0 to address CVE-2026-46600 / Update golang.org/x/text from v0.37.0 to v0.39.0 to address CVE-2026-56852

v0.20.5: Shipwright Build release v0.20.5

Compare Source

Release changes since v0.20.4

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2253

Features

Fixes

API Changes

Docs

Misc

v0.20.4: Shipwright Build release v0.20.4

Compare Source

Release changes since v0.20.3

None. This is a rebuild of all components to address vulnerabilities in the Go standard libraries.

To see a list of addressed vulnerabilities, please refer to #​2251

Features

Fixes

API Changes

Docs

Misc

v0.20.3: Shipwright Build release v0.20.3

Compare Source

Release changes since v0.20.2

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2247

Features

Fixes

API Changes

Docs

Misc

v0.20.2: Shipwright Build release v0.20.2

Compare Source

Release changes since v0.20.1

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2240

Features

Fixes

API Changes

Docs

Misc

v0.20.1: Shipwright Build release v0.20.1

Compare Source

Release changes since v0.20.0

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2240

Features

Fixes

API Changes

Docs

Misc

v0.20.0: Shipwright Build release v0.20.0

Compare Source

Release changes since v0.19.0

Features

#​2159 by @​sgaist: The buildpacks sample build strategies now allow the configuration of insecure registries in a fashion similar to buildah and source-to-image.

#​2150 by @​officialasishkumar: Improved experience of kubectl patch for build strategies and cluster build strategies by using step name as identifier

Fixes

API Changes

Docs

#​2175 by @​kaizakin: You are not anymore required to use the build.shipwright.io/referenced.secret=true annotation on Secrets to cause related Builds to be reconciled on Secret changes

Misc

#​2223 by @​psrvere: The minimum supported Tekton version is now v1.3. The minimum supported Kubernetes version is now v1.34.

#​2213 by @​SaschaSchwarze0: Update golang.org/x/crypto and golang.org/x/net to address CVE-2026-25680, CVE-2026-25681, CVE-2026-27136, CVE-2026-39821, CVE-2026-39827, CVE-2026-39828, CVE-2026-39829, CVE-2026-39830, CVE-2026-39831, CVE-2026-39832, CVE-2026-39833, CVE-2026-39834, CVE-2026-39835, CVE-2026-42502, CVE-2026-42506, CVE-2026-42508, CVE-2026-46595, CVE-2026-46597, CVE-2026-46598

#​2183 by @​SaschaSchwarze0: Update to the new latest Tekton LTS release v1.12.0

#​2167 by @​shipwright-ci-bot: Update to the new latest Tekton LTS release v1.9.3

#​2149 by @​officialasishkumar: Increase ko build strategy requests and limits to meet most real world use cases

#​2137 by @​shipwright-ci-bot: Update to the new latest Tekton LTS release v1.9.2

#​2131 by @​kaizakin: Added gingkgo labels support to differentiate PipelineRun and TaskRun tests

#​2127 by @​anchi205: Added spec.output.platforms field to Build and BuildRun APIs, allowing users to define target OS/architecture combinations for multi-arch image builds.

v0.19.8: Shipwright Build release v0.19.8

Compare Source

Release changes since v0.19.7

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2225

Features

Fixes

API Changes

Docs

Misc

v0.19.7: Shipwright Build release v0.19.7

Compare Source

Release changes since v0.19.6

None. This is a rebuild of all components to address vulnerabilities in the base images and in Golang.

To see a list of addressed vulnerabilities, please refer to #​2217

Features

Fixes

API Changes

Docs

Misc

v0.19.6: Shipwright Build release v0.19.6

Compare Source

Release changes since v0.19.5

To see a list of addressed vulnerabilities, please refer to #​2212

Features

Fixes

API Changes

Docs

Misc

#​2214 by @​SaschaSchwarze0: Update golang.org/x/crypto and golang.org/x/net to address CVE-2026-25680, CVE-2026-25681, CVE-2026-27136, CVE-2026-39821, CVE-2026-39827, CVE-2026-39828, CVE-2026-39829, CVE-2026-39830, CVE-2026-39831, CVE-2026-39832, CVE-2026-39833, CVE-2026-39834, CVE-2026-39835, CVE-2026-42502, CVE-2026-42506, CVE-2026-42508, CVE-2026-46595, CVE-2026-46597, CVE-2026-46598

v0.19.5: Shipwright Build release v0.19.5

Compare Source

Release changes since v0.19.4

None. This is a rebuild of all components to address vulnerabilities in the base images.

To see a list of addressed vulnerabilities, please refer to #​2196

Features

Fixes

API Changes

Docs

Misc


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

To execute skipped test pipelines write comment /ok-to-test.


Documentation

Find out how to configure dependency updates in MintMaker documentation or see all available configuration options in Renovate documentation.

@red-hat-konflux

red-hat-konflux Bot commented Aug 20, 2026

Copy link
Copy Markdown
Contributor Author

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: go.sum
Command failed: go mod tidy
go: downloading github.com/klauspost/compress v1.18.7
go: downloading k8s.io/code-generator v0.36.1
go: downloading github.com/google/cel-go v0.30.0
go: downloading github.com/sirupsen/logrus v1.9.4
go: downloading go.opentelemetry.io/otel/metric/x v0.66.0
go: downloading github.com/allegro/bigcache/v3 v3.1.0
go: downloading github.com/google/go-containerregistry v0.21.5
go: downloading golang.org/x/exp v0.0.0-20260410095643-746e56fc9e2f
go: finding module for package knative.dev/pkg/tracing/config
go: finding module for package knative.dev/pkg/metrics
go: github.com/redhat-openshift-builds/operator/internal/controller imports
	github.com/tektoncd/operator/pkg/client/clientset/versioned/typed/operator/v1alpha1 imports
	github.com/tektoncd/operator/pkg/apis/operator/v1alpha1 imports
	github.com/tektoncd/triggers/pkg/apis/config tested by
	github.com/tektoncd/triggers/pkg/apis/config.test imports
	github.com/tektoncd/triggers/test imports
	github.com/tektoncd/triggers/pkg/reconciler/eventlistener/resources imports
	knative.dev/eventing/pkg/reconciler/source imports
	knative.dev/pkg/metrics: module knative.dev/pkg@latest found (v0.0.0-20260825072334-d2a153acc00c), but does not contain package knative.dev/pkg/metrics
go: github.com/redhat-openshift-builds/operator/internal/controller imports
	github.com/tektoncd/operator/pkg/client/clientset/versioned/typed/operator/v1alpha1 imports
	github.com/tektoncd/operator/pkg/apis/operator/v1alpha1 imports
	github.com/tektoncd/triggers/pkg/apis/config tested by
	github.com/tektoncd/triggers/pkg/apis/config.test imports
	github.com/tektoncd/triggers/test imports
	github.com/tektoncd/triggers/pkg/reconciler/eventlistener/resources imports
	knative.dev/eventing/pkg/reconciler/source imports
	knative.dev/pkg/tracing/config: module knative.dev/pkg@latest found (v0.0.0-20260825072334-d2a153acc00c), but does not contain package knative.dev/pkg/tracing/config

@red-hat-konflux
red-hat-konflux Bot force-pushed the konflux/mintmaker/main/github.com-shipwright-io-build-0.x branch from 191d3f8 to 4538818 Compare August 23, 2026 02:19
@red-hat-konflux red-hat-konflux Bot changed the title fix(deps): update module github.com/shipwright-io/build to v0.20.11 fix(deps): update module github.com/shipwright-io/build to v0.20.13 Aug 23, 2026
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
@red-hat-konflux
red-hat-konflux Bot force-pushed the konflux/mintmaker/main/github.com-shipwright-io-build-0.x branch from 4538818 to bff6636 Compare August 29, 2026 01:56
@red-hat-konflux red-hat-konflux Bot changed the title fix(deps): update module github.com/shipwright-io/build to v0.20.13 fix(deps): update module github.com/shipwright-io/build to v0.20.14 Aug 29, 2026
@avinal

avinal commented Sep 3, 2026

Copy link
Copy Markdown
Member

/retest

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant