Skip to content

Bump hashicorp/random from 3.7.2 to 3.9.1 in /tests/integration-tests/setup - #224

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/terraform/tests/integration-tests/setup/hashicorp/random-3.9.1
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/terraform/tests/integration-tests/setup/hashicorp/random-3.9.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 14, 2026

Copy link
Copy Markdown
Contributor

Bumps hashicorp/random from 3.7.2 to 3.9.1.

Release notes

Sourced from hashicorp/random's releases.

v3.9.1

3.9.1 (September 11, 2026)

NOTES:

  • Upgrade the Go toolchain to 1.26.8. (#812)
  • Update golang.org/x/mod to v0.40.0 and google.golang.org/protobuf to v1.36.12. (#814)

v3.9.0

3.9.0 (May 12, 2026)

FEATURES:

  • resource/random_bytes: add ephemeral random_bytes resource (#711)

ENHANCEMENTS:

  • Added linux/s390x build target for IBM Z platform support (#784)

BUG FIXES:

  • resource/random_password, resource/random_string: Fix UTF-8 character handling to correctly count characters instead of bytes when using multi-byte UTF-8 characters in override_special (#741)

v3.8.1

3.8.1 (January 27, 2026)

NOTES:

  • This release introduces no functional changes but has been signed with a valid certificate for the windows binary. (#749)

v3.8.0

3.8.0 (January 12, 2026)

ENHANCEMENTS:

  • Add uuid4 and uuid7 resources to generate valid random uuids of the appropriate version (#402)
Changelog

Sourced from hashicorp/random's changelog.

3.9.1 (September 11, 2026)

NOTES:

  • Upgrade the Go toolchain to 1.26.8. (#812)
  • Update golang.org/x/mod to v0.40.0 and google.golang.org/protobuf to v1.36.12. (#814)

3.9.0 (May 12, 2026)

FEATURES:

  • resource/random_bytes: add ephemeral random_bytes resource (#711)

ENHANCEMENTS:

  • Added linux/s390x build target for IBM Z platform support (#784)

BUG FIXES:

  • resource/random_password, resource/random_string: Fix UTF-8 character handling to correctly count characters instead of bytes when using multi-byte UTF-8 characters in override_special (#741)

3.8.1 (January 27, 2026)

NOTES:

  • This release introduces no functional changes but has been signed with a valid certificate for the windows binary. (#749)

3.8.0 (January 12, 2026)

ENHANCEMENTS:

  • Add uuid4 and uuid7 resources to generate valid random uuids of the appropriate version (#402)
Commits
  • b59b179 chore: prepare release v3.9.1 (#815)
  • c0e9393 update security dependencies (#814)
  • 92cfaa6 build(deps): Bump github/issue-labeler (#809)
  • bd86728 suppress unused openpgp vulnerability (#813)
  • c3e8475 update Go version to 1.26.8 (#812)
  • 1cd0254 build(deps): Bump google.golang.org/grpc from 1.83.1 to 1.83.2 (#811)
  • 98adb9d build(deps): Bump golang.org/x/crypto from 0.55.0 to 0.56.0 (#810)
  • cfc1bea [documentation] replace references to strings with "password" where appropria...
  • 3612216 build(deps): Bump google.golang.org/grpc from 1.82.1 to 1.83.1 (#808)
  • e1092b0 build(deps): Bump github.com/stretchr/testify from 1.12.0 to 1.12.1 (#807)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [hashicorp/random](https://github.com/hashicorp/terraform-provider-random) from 3.7.2 to 3.9.1.
- [Release notes](https://github.com/hashicorp/terraform-provider-random/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-random/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-random@v3.7.2...v3.9.1)

---
updated-dependencies:
- dependency-name: hashicorp/random
  dependency-version: 3.9.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file terraform Pull requests that update terraform code labels Sep 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file terraform Pull requests that update terraform code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants