Skip to content

ROX-34052: Bump pgx dependency to v5.9.1#19898

Open
rhybrillou wants to merge 1 commit intorelease-4.9from
yann/release-4.9/bump-pgx-v5.9.1
Open

ROX-34052: Bump pgx dependency to v5.9.1#19898
rhybrillou wants to merge 1 commit intorelease-4.9from
yann/release-4.9/bump-pgx-v5.9.1

Conversation

@rhybrillou
Copy link
Copy Markdown
Contributor

@rhybrillou rhybrillou commented Apr 8, 2026

Description

Dependency bump to fix two CVEs
CVE-2026-33815
CVE-2026-33816

User-facing documentation

Testing and quality

  • the change is production ready: the change is GA, or otherwise the functionality is gated by a feature flag
  • CI results are inspected

Automated testing

How I validated my change

CI run

@rhybrillou rhybrillou requested a review from a team as a code owner April 8, 2026 15:15
@github-actions github-actions bot added the backport PR to backport changes from master to release branch label Apr 8, 2026
@rhybrillou rhybrillou requested review from janisz and ovalenti April 8, 2026 15:21
@rhacs-bot
Copy link
Copy Markdown
Contributor

Images are ready for the commit at 45cf8d4.

To use with deploy scripts, first export MAIN_IMAGE_TAG=4.9.5-1-g45cf8d4da3.

@codecov
Copy link
Copy Markdown

codecov bot commented Apr 8, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 48.88%. Comparing base (b4d5dda) to head (45cf8d4).
⚠️ Report is 1 commits behind head on release-4.9.

Additional details and impacted files
@@             Coverage Diff              @@
##           release-4.9   #19898   +/-   ##
============================================
  Coverage        48.87%   48.88%           
============================================
  Files             2719     2719           
  Lines           202912   202912           
============================================
+ Hits             99175    99191   +16     
+ Misses           95967    95956   -11     
+ Partials          7770     7765    -5     
Flag Coverage Δ
go-unit-tests 48.88% <ø> (+<0.01%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 8, 2026

/konflux-retest main-on-push

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 8, 2026

/konflux-retest operator-bundle-on-push

2 similar comments
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 8, 2026

/konflux-retest operator-bundle-on-push

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 8, 2026

/konflux-retest operator-bundle-on-push

@rhybrillou
Copy link
Copy Markdown
Contributor Author

/test gke-nongroovy-e2e-tests

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport PR to backport changes from master to release branch

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants