Skip to content

Bump OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.2 to 1.15.3 - #30

Merged
jeff1121 merged 2 commits into
mainfrom
dependabot/nuget/src/VMTO.Infrastructure/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.15.3
Jul 28, 2026
Merged

Bump OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.2 to 1.15.3#30
jeff1121 merged 2 commits into
mainfrom
dependabot/nuget/src/VMTO.Infrastructure/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.15.3

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 23, 2026

Copy link
Copy Markdown
Contributor

Updated OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.2 to 1.15.3.

Release notes

Sourced from OpenTelemetry.Exporter.OpenTelemetryProtocol's releases.

1.15.3

For highlights and announcements pertaining to this release see: Release Notes > 1.15.3.

The following changes are from the previous release 1.15.2.

  • NuGet: OpenTelemetry v1.15.3

    • Fix resource leak in batch and periodic exporting task workers for Blazor/WASM.
      (#​7069)

    • Fixed LogRecord.LogLevel to preserve LogLevel.None and handle
      unspecified or out-of-range severities without returning invalid enum values.
      (#​7092)

    • Fixed OTEL_TRACES_SAMPLER_ARG handling to treat out-of-range, NaN, and
      infinite values as invalid and fall back to the default ratio when using
      traceidratio and parentbased_traceidratio samplers.
      (#​7103)

    See CHANGELOG for details.

  • NuGet: OpenTelemetry.Api v1.15.3

    • Fix baggage and trace headers not respecting the maximum length in some cases
      to resolve GHSA-g94r-2vxg-569j.
      (#​7061)

    • Improve efficiency of parsing of baggage and B3 propagation headers
      to resolve GHSA-g94r-2vxg-569j.
      (#​7061)

    • Breaking change: Fixed tracestate parsing to reject keys that do not
      begin with a lowercase letter, including keys beginning with digits, to
      align with the W3C Trace Context specification.
      (#​7065)

    • Fixed BaggagePropagator to trim optional whitespace (OWS) around =
      separators when parsing the baggage header, as required by the
      W3C Baggage specification.
      (#​7009)

    • Fixed BaggagePropagator to strip baggage properties (e.g. ;metadata)
      from values when parsing the baggage header.
      (#​7009)

    See CHANGELOG for details.

  • NuGet: OpenTelemetry.Api.ProviderBuilderExtensions v1.15.3

    No notable changes.

... (truncated)

1.15.3-beta.1

The following changes are from the previous release 1.15.2-beta.1.

Commits viewable in compare view.

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

---
updated-dependencies:
- dependency-name: OpenTelemetry.Exporter.OpenTelemetryProtocol
  dependency-version: 1.15.3
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Jul 23, 2026
📌 原始 Commit: a1b524f
👤 作者: dependabot[bot]
🌿 分支: dependabot/nuget/src/VMTO.Infrastructure/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.15.3
⏰ 掃描時間: 2026-07-23 08:43 UTC
⚠️ 發現警報: 11 個

本報告由 GitHub Actions CodeQL 安全掃描 Workflow 自動產生。
掃描涵蓋 C#(src/)與 TypeScript/Vue3(frontend/src/)。

詳細報告請見: .github/security-reports/security-scan-a1b524f.md
Security Alerts: https://github.com/jeff1121/VM-Transfer-Orchestrator/security/code-scanning
@github-actions

Copy link
Copy Markdown
Contributor

✅ 程式碼審查報告

檢查項目 狀態
🔨 編譯 ✅ 通過
🧪 測試 ✅ 通過
📐 格式 ✅ 通過
🖥️ 前端型別檢查 ✅ 通過
📊 變更行數 13 行

由 GitHub Actions 自動產生 · 🔍 Copilot Code Review

@github-actions

Copy link
Copy Markdown
Contributor

🛡️ CodeQL 安全掃描報告

嚴重程度 數量
🔴 錯誤 (Error) 0
🟡 警告 (Warning) 1
🔵 提示 (Note) 0
合計 1

🟡 警告(建議修復)

  • js/unused-local-variable — Unused function login.
    📄 frontend/e2e/dashboard.spec.ts:4

📋 完整 SARIF 報告請至 SecurityCode scanning alerts 頁面查看
由 GitHub Actions 自動產生 · 🛡️ CodeQL 安全掃描

@github-actions

Copy link
Copy Markdown
Contributor

✅ CI 整合摘要報告

項目 內容
Commit a1b524f
分支 dependabot/nuget/src/VMTO.Infrastructure/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.15.3
時間 2026-07-23 08:58:02 UTC

各項檢查結果

檢查項目 狀態
🔨 程式碼審查(建置/測試/格式) ✅ 通過
🛡️ CodeQL 安全掃描(C#) ✅ 通過
🛡️ CodeQL 安全掃描(TypeScript/Vue) ✅ 通過

📋 完整 CodeQL 報告請至 SecurityCode scanning alerts 查看
由 GitHub Actions 自動產生 · 📋 CI 整合摘要

@jeff1121
jeff1121 merged commit 76251eb into main Jul 28, 2026
4 checks passed
@dependabot
dependabot Bot deleted the dependabot/nuget/src/VMTO.Infrastructure/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.15.3 branch July 28, 2026 07:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant