update deps, golangci-lint version: #426
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
What does this PR implement/change/remove?
There are 2 medium vulnerabilities in
golang.org/x/net
that necessitate the upgrade.v0.38.0
ofgolang.org/x/net
requiresgo 1.23
. Alsov1.38.0
ofgo.opentelemetry.io/otel
andgo.opentelemetry.io/otel/trace
requirego 1.23
. This will require all consumers to have >= Go 1.23. The current latest Go version is 1.25 and, Go 1.26 is expected to be released in February of 2026. Happy to discuss holding off on this or other alternatives if bumping the Go version is a concern.Checklist
The HW vendor this change applies to (if applicable)
The HW model number, product name this change applies to (if applicable)
The BMC firmware and/or BIOS versions that this change applies to (if applicable)
What version of tooling - vendor specific or opensource does this change depend on (if applicable)
Description for changelog/release notes