Skip to content

chore(deps): bump github.com/docker/compose/v2 from 2.39.2 to 2.40.2#305

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/github.com/docker/compose/v2-2.40.2
Closed

chore(deps): bump github.com/docker/compose/v2 from 2.39.2 to 2.40.2#305
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/github.com/docker/compose/v2-2.40.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 25, 2026

Copy link
Copy Markdown

Bumps github.com/docker/compose/v2 from 2.39.2 to 2.40.2.

Release notes

Sourced from github.com/docker/compose/v2's releases.

v2.40.2

What's Changed

🐛 Fixes

🔧 Internal

Full Changelog: docker/compose@v2.40.1...v2.40.2

v2.40.1

What's Changed

🐛 Fixes

🔧 Internal

⚙️ Dependencies

New Contributors

Full Changelog: docker/compose@v2.40.0...v2.40.1

v2.40.0

What's Changed

... (truncated)

Commits
  • 6007d4c publish env_file references as opaque hash to prevent paths conflicts
  • 69bcb96 Enforce compose files from OCI artifact all get into the same target (cache) ...
  • 9b4fcce introduce WithPrompt to configure compose backend to use a plugable UI compon...
  • da5c57c test digest or canonical reference, not only tag, when checking if an image i...
  • e25265d remove unused code to only rely on api.Service
  • e19e127 fail build if minimal required version of buildx isn't installed
  • 585c4db Compose can't create a tar with adequate uid:gid ownership
  • be8c7e6 make CTRL+Z a no-op operation on Windows
  • 27f59d7 Detect failure to access os.TempDir
  • 2681ed1 mutualize code from injectSecrets / injectConfigs
  • Additional commits viewable in compare view

@dependabot dependabot Bot requested a review from singhmj-1 as a code owner May 25, 2026 15:21
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels May 25, 2026
@dependabot dependabot Bot requested a review from vireshnavalli as a code owner May 25, 2026 15:21
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels May 25, 2026
@dependabot dependabot Bot changed the base branch from main to fix/vuln-remediation May 27, 2026 06:51
Bumps [github.com/docker/compose/v2](https://github.com/docker/compose) from 2.39.2 to 2.40.2.
- [Release notes](https://github.com/docker/compose/releases)
- [Commits](docker/compose@v2.39.2...v2.40.2)

---
updated-dependencies:
- dependency-name: github.com/docker/compose/v2
  dependency-version: 2.40.2
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the base branch from fix/vuln-remediation to main May 27, 2026 06:54
@dependabot dependabot Bot force-pushed the dependabot/go_modules/github.com/docker/compose/v2-2.40.2 branch from 79a4d68 to 92c6fe1 Compare May 27, 2026 06:54
@dependabot @github

dependabot Bot commented on behalf of github May 27, 2026

Copy link
Copy Markdown
Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot Bot deleted the dependabot/go_modules/github.com/docker/compose/v2-2.40.2 branch May 27, 2026 18:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant