Skip to content

deps: bump github.com/spf13/cobra from 1.9.1 to 1.10.1#1860

Merged
nddq merged 1 commit into
mainfrom
dependabot/go_modules/github.com/spf13/cobra-1.10.1
Sep 4, 2025
Merged

deps: bump github.com/spf13/cobra from 1.9.1 to 1.10.1#1860
nddq merged 1 commit into
mainfrom
dependabot/go_modules/github.com/spf13/cobra-1.10.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 3, 2025

Copy link
Copy Markdown
Contributor

Bumps github.com/spf13/cobra from 1.9.1 to 1.10.1.

Release notes

Sourced from github.com/spf13/cobra's releases.

v1.10.1

🐛 Fix

v1.0.9 of pflags brought back ParseErrorsWhitelist and marked it as deprecated

Full Changelog: spf13/cobra@v1.10.0...v1.10.1

v1.10.0

What's Changed

🚨 Attention!

This version of pflag carried a breaking change: it renamed ParseErrorsWhitelist to ParseErrorsAllowlist which can break builds if both pflag and cobra are dependencies in your project.

  • If you use both pflag and cobra, upgrade pflagto 1.0.8 andcobrato1.10.0`
  • or use the newer, fixed version of pflag v1.0.9 which keeps the deprecated ParseErrorsWhitelist

More details can be found here: spf13/cobra#2303

✨ Features

🐛 Fix

🪠 Testing

📝 Docs

New Contributors

... (truncated)

Commits
  • 7da941c chore: Bump pflag to v1.0.9 (#2305)
  • 51d6751 Bump pflag to 1.0.8 (#2303)
  • 3f3b818 Update README.md with new logo
  • dcaf42e Add Periscope to the list of projects using Cobra (#2299)
  • 6dec1ae The default ShellCompDirective can be customized for a command and its subcom...
  • c8289c1 chore(golangci-lint): add some exclusion presets
  • 4af7b64 refactor: apply golangci-lint autofixes, work around false positives
  • 75790e4 chore(golangci-lint): upgrade to v2
  • db3ddb5 Adding sponsorship to README.md
  • 67171d6 putting sponsorship below header
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra) from 1.9.1 to 1.10.1.
- [Release notes](https://github.com/spf13/cobra/releases)
- [Commits](spf13/cobra@v1.9.1...v1.10.1)

---
updated-dependencies:
- dependency-name: github.com/spf13/cobra
  dependency-version: 1.10.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added area/dependencies Pull requests that update a dependency file lang/go The Go Programming Language labels Sep 3, 2025
@dependabot dependabot Bot requested a review from a team as a code owner September 3, 2025 12:20
@dependabot dependabot Bot added area/dependencies Pull requests that update a dependency file lang/go The Go Programming Language labels Sep 3, 2025
@dependabot dependabot Bot requested review from SRodi and apontejaj September 3, 2025 12:20
@nddq nddq added this pull request to the merge queue Sep 4, 2025
@github-merge-queue github-merge-queue Bot removed this pull request from the merge queue due to failed status checks Sep 4, 2025
@nddq nddq added this pull request to the merge queue Sep 4, 2025
Merged via the queue into main with commit a7c641d Sep 4, 2025
31 checks passed
@nddq nddq deleted the dependabot/go_modules/github.com/spf13/cobra-1.10.1 branch September 4, 2025 15:37
mereta pushed a commit that referenced this pull request Dec 2, 2025
Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra) from
1.9.1 to 1.10.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/spf13/cobra/releases">github.com/spf13/cobra's
releases</a>.</em></p>
<blockquote>
<h2>v1.10.1</h2>
<h3>🐛 Fix</h3>
<ul>
<li>chore: upgrade pflags v1.0.9 by <a
href="https://github.com/jpmcb"><code>@​jpmcb</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2305">spf13/cobra#2305</a></li>
</ul>
<p>v1.0.9 of pflags brought back <code>ParseErrorsWhitelist</code> and
marked it as deprecated</p>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/spf13/cobra/compare/v1.10.0...v1.10.1">https://github.com/spf13/cobra/compare/v1.10.0...v1.10.1</a></p>
<h2>v1.10.0</h2>
<h2>What's Changed</h2>
<h3>🚨 Attention!</h3>
<ul>
<li>Bump pflag to 1.0.8 by <a
href="https://github.com/tomasaschan"><code>@​tomasaschan</code></a> in
<a
href="https://redirect.github.com/spf13/cobra/pull/2303">spf13/cobra#2303</a></li>
</ul>
<p>This version of <code>pflag</code> carried a breaking change: it
renamed <code>ParseErrorsWhitelist</code> to
<code>ParseErrorsAllowlist</code> which can break builds if both
<code>pflag</code> and <code>cobra</code> are dependencies in your
project.</p>
<ul>
<li>If you use both <code>pflag and </code>cobra<code>, upgrade
</code>pflag<code>to 1.0.8 and</code>cobra<code>to</code>1.10.0`</li>
<li><strong><em>or</em></strong> use the newer, fixed version of
<code>pflag</code> v1.0.9 which keeps the deprecated
<code>ParseErrorsWhitelist</code></li>
</ul>
<p>More details can be found here: <a
href="https://redirect.github.com/spf13/cobra/pull/2303#issuecomment-3242333515">spf13/cobra#2303</a></p>
<h3>✨ Features</h3>
<ul>
<li>Flow context to command in SetHelpFunc by <a
href="https://github.com/Frassle"><code>@​Frassle</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2241">spf13/cobra#2241</a></li>
<li>The default ShellCompDirective can be customized for a command and
its subcommands by <a
href="https://github.com/albers"><code>@​albers</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2238">spf13/cobra#2238</a></li>
</ul>
<h3>🐛 Fix</h3>
<ul>
<li>Upgrade golangci-lint to v2, address findings by <a
href="https://github.com/scop"><code>@​scop</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2279">spf13/cobra#2279</a></li>
</ul>
<h3>🪠 Testing</h3>
<ul>
<li>Test with Go 1.24 by <a
href="https://github.com/harryzcy"><code>@​harryzcy</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2236">spf13/cobra#2236</a></li>
<li>chore: Rm GitHub Action PR size labeler by <a
href="https://github.com/jpmcb"><code>@​jpmcb</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2256">spf13/cobra#2256</a></li>
</ul>
<h3>📝 Docs</h3>
<ul>
<li>Remove traling curlybrace by <a
href="https://github.com/yedayak"><code>@​yedayak</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2237">spf13/cobra#2237</a></li>
<li>Update command.go by <a
href="https://github.com/styee"><code>@​styee</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2248">spf13/cobra#2248</a></li>
<li>feat: Add security policy by <a
href="https://github.com/jpmcb"><code>@​jpmcb</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2253">spf13/cobra#2253</a></li>
<li>Update Readme (Warp) by <a
href="https://github.com/ericdachen"><code>@​ericdachen</code></a> in <a
href="https://redirect.github.com/spf13/cobra/pull/2267">spf13/cobra#2267</a></li>
<li>Add Periscope to the list of projects using Cobra by <a
href="https://github.com/anishathalye"><code>@​anishathalye</code></a>
in <a
href="https://redirect.github.com/spf13/cobra/pull/2299">spf13/cobra#2299</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/harryzcy"><code>@​harryzcy</code></a>
made their first contribution in <a
href="https://redirect.github.com/spf13/cobra/pull/2236">spf13/cobra#2236</a></li>
<li><a href="https://github.com/yedayak"><code>@​yedayak</code></a> made
their first contribution in <a
href="https://redirect.github.com/spf13/cobra/pull/2237">spf13/cobra#2237</a></li>
<li><a href="https://github.com/Frassle"><code>@​Frassle</code></a> made
their first contribution in <a
href="https://redirect.github.com/spf13/cobra/pull/2241">spf13/cobra#2241</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/spf13/cobra/commit/7da941c3547e93b8c9f70bbd3befca79c6335388"><code>7da941c</code></a>
chore: Bump pflag to v1.0.9 (<a
href="https://redirect.github.com/spf13/cobra/issues/2305">#2305</a>)</li>
<li><a
href="https://github.com/spf13/cobra/commit/51d675196729be769ce235b710ab7058b3aad03a"><code>51d6751</code></a>
Bump pflag to 1.0.8 (<a
href="https://redirect.github.com/spf13/cobra/issues/2303">#2303</a>)</li>
<li><a
href="https://github.com/spf13/cobra/commit/3f3b81882534a51628f3286e93c6842d9b2e29ea"><code>3f3b818</code></a>
Update README.md with new logo</li>
<li><a
href="https://github.com/spf13/cobra/commit/dcaf42e2633496bf97d5476d7419071e5c48f40a"><code>dcaf42e</code></a>
Add Periscope to the list of projects using Cobra (<a
href="https://redirect.github.com/spf13/cobra/issues/2299">#2299</a>)</li>
<li><a
href="https://github.com/spf13/cobra/commit/6dec1ae26659a130bdb4c985768d1853b0e1bc06"><code>6dec1ae</code></a>
The default ShellCompDirective can be customized for a command and its
subcom...</li>
<li><a
href="https://github.com/spf13/cobra/commit/c8289c10302063b9a2e26357e7e0f0bb599f29ce"><code>c8289c1</code></a>
chore(golangci-lint): add some exclusion presets</li>
<li><a
href="https://github.com/spf13/cobra/commit/4af7b64d31989e78e86d65304f693a6d9c77c932"><code>4af7b64</code></a>
refactor: apply golangci-lint autofixes, work around false
positives</li>
<li><a
href="https://github.com/spf13/cobra/commit/75790e48fb73c8ba027e0163157a86ce8604ca3e"><code>75790e4</code></a>
chore(golangci-lint): upgrade to v2</li>
<li><a
href="https://github.com/spf13/cobra/commit/db3ddb5cf4968b320ea21f6ee5c2d2202a2e7b22"><code>db3ddb5</code></a>
Adding sponsorship to README.md</li>
<li><a
href="https://github.com/spf13/cobra/commit/67171d6909986ee86fb946f808b87aba88ee417a"><code>67171d6</code></a>
putting sponsorship below header</li>
<li>Additional commits viewable in <a
href="https://github.com/spf13/cobra/compare/v1.9.1...v1.10.1">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/spf13/cobra&package-manager=go_modules&previous-version=1.9.1&new-version=1.10.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area/dependencies Pull requests that update a dependency file lang/go The Go Programming Language

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant