Skip to content

build(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2#11627

Merged
willdavsmith merged 1 commit intomainfrom
dependabot/go_modules/helm.sh/helm/v3-3.20.2
Apr 10, 2026
Merged

build(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2#11627
willdavsmith merged 1 commit intomainfrom
dependabot/go_modules/helm.sh/helm/v3-3.20.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 10, 2026

Bumps helm.sh/helm/v3 from 3.20.1 to 3.20.2.

Release notes

Sourced from helm.sh/helm/v3's releases.

Helm v3.20.2

v3.20.2

Helm v3.20.2 is a security patch release. Users are encouraged to upgrade for the best experience.

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Security fixes

  • GHSA-hr2v-4r36-88hr Helm Chart extraction output directory collapse via Chart.yaml name dot-segment

Installation and Upgrading

Download Helm v3.20.2. The common platform binaries are here:

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 4.1.5 and 3.20.3 are the next patch (bug fix) releases and will be on April 8, 2026
  • 4.2.0 and 3.21.0 are the next minor (feature) releases and will be on May 13, 2026

Changelog

  • fix: Chart dot-name path bug 8fb76d6ab555577e98e23b7500009537a471feee (George Jenkins)
  • fix: pin codeql-action/upload-sarif to commit SHA in scorecards workflow 3a8927e275c50cecde273872dad2a5576bd46375 (Terry Howe)
Commits
  • 8fb76d6 fix: Chart dot-name path bug
  • 3a8927e fix: pin codeql-action/upload-sarif to commit SHA in scorecards workflow
  • See full diff in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Apr 10, 2026
Copilot AI review requested due to automatic review settings April 10, 2026 18:00
@dependabot dependabot Bot requested review from a team as code owners April 10, 2026 18:00
@dependabot dependabot Bot review requested due to automatic review settings April 10, 2026 18:00
@github-actions
Copy link
Copy Markdown

github-actions Bot commented Apr 10, 2026

Unit Tests

    2 files  ±0    415 suites  ±0   6m 42s ⏱️ ±0s
4 872 tests ±0  4 870 ✅ ±0  2 💤 ±0  0 ❌ ±0 
5 774 runs  ±0  5 772 ✅ ±0  2 💤 ±0  0 ❌ ±0 

Results for commit 1e73eba. ± Comparison against base commit a08fe8d.

♻️ This comment has been updated with latest results.

@willdavsmith
Copy link
Copy Markdown
Contributor

@dependabot rebase

Bumps [helm.sh/helm/v3](https://github.com/helm/helm) from 3.20.1 to 3.20.2.
- [Release notes](https://github.com/helm/helm/releases)
- [Commits](helm/helm@v3.20.1...v3.20.2)

---
updated-dependencies:
- dependency-name: helm.sh/helm/v3
  dependency-version: 3.20.2
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Copilot AI review requested due to automatic review settings April 10, 2026 20:27
@dependabot dependabot Bot force-pushed the dependabot/go_modules/helm.sh/helm/v3-3.20.2 branch from 84f2d35 to 1e73eba Compare April 10, 2026 20:27
@dependabot dependabot Bot review requested due to automatic review settings April 10, 2026 20:27
@radius-functional-tests
Copy link
Copy Markdown

radius-functional-tests Bot commented Apr 10, 2026

Radius functional test overview

🔍 Go to test action run

Click here to see the test run details
Name Value
Repository radius-project/radius
Commit ref 1e73eba
Unique ID func15784d5755
Image tag pr-func15784d5755
  • gotestsum 1.13.0
  • KinD: v0.29.0
  • Dapr: 1.14.4
  • Azure KeyVault CSI driver: 1.4.2
  • Azure Workload identity webhook: 1.3.0
  • Bicep recipe location ghcr.io/radius-project/dev/test/testrecipes/test-bicep-recipes/<name>:pr-func15784d5755
  • Terraform recipe location http://tf-module-server.radius-test-tf-module-server.svc.cluster.local/<name>.zip (in cluster)
  • applications-rp test image location: ghcr.io/radius-project/dev/applications-rp:pr-func15784d5755
  • dynamic-rp test image location: ghcr.io/radius-project/dev/dynamic-rp:pr-func15784d5755
  • controller test image location: ghcr.io/radius-project/dev/controller:pr-func15784d5755
  • ucp test image location: ghcr.io/radius-project/dev/ucpd:pr-func15784d5755
  • deployment-engine test image location: ghcr.io/radius-project/deployment-engine:latest

Test Status

⌛ Building Radius and pushing container images for functional tests...
✅ Container images build succeeded
⌛ Publishing Bicep Recipes for functional tests...
✅ Recipe publishing succeeded
⌛ Starting corerp-cloud functional tests...
⌛ Starting ucp-cloud functional tests...
✅ ucp-cloud functional tests succeeded
✅ corerp-cloud functional tests succeeded

@willdavsmith willdavsmith merged commit 2a09996 into main Apr 10, 2026
56 checks passed
@willdavsmith willdavsmith deleted the dependabot/go_modules/helm.sh/helm/v3-3.20.2 branch April 10, 2026 21:26
sk593 pushed a commit that referenced this pull request Apr 14, 2026
Bumps [helm.sh/helm/v3](https://github.com/helm/helm) from 3.20.1 to
3.20.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/helm/helm/releases">helm.sh/helm/v3's
releases</a>.</em></p>
<blockquote>
<h2>Helm v3.20.2</h2>
<h2>v3.20.2</h2>
<p>Helm v3.20.2 is a security patch release. Users are encouraged to
upgrade for the best experience.</p>
<p>The community keeps growing, and we'd love to see you there!</p>
<ul>
<li>Join the discussion in <a
href="https://kubernetes.slack.com">Kubernetes Slack</a>:
<ul>
<li>for questions and just to hang out</li>
<li>for discussing PRs, code, and bugs</li>
</ul>
</li>
<li>Hang out at the Public Developer Call: Thursday, 9:30 Pacific via <a
href="https://zoom.us/j/696660622">Zoom</a></li>
<li>Test, debug, and contribute charts: <a
href="https://artifacthub.io/packages/search?kind=0">ArtifactHub/packages</a></li>
</ul>
<h2>Security fixes</h2>
<ul>
<li><a
href="https://github.com/helm/helm/security/advisories/GHSA-hr2v-4r36-88hr">GHSA-hr2v-4r36-88hr</a>
Helm Chart extraction output directory collapse via
<code>Chart.yaml</code> name dot-segment</li>
</ul>
<h2>Installation and Upgrading</h2>
<p>Download Helm v3.20.2. The common platform binaries are here:</p>
<ul>
<li><a href="https://get.helm.sh/helm-v3.20.2-darwin-amd64.tar.gz">MacOS
amd64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-darwin-amd64.tar.gz.sha256sum">checksum</a>
/ 7de04301f28b902a74f6286ed941cadc86ee5e6a9086a18f2ccf1f548e99d618)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-darwin-arm64.tar.gz">MacOS
arm64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-darwin-arm64.tar.gz.sha256sum">checksum</a>
/ 139c794c22f16b579d08ddd3008c8038b9bb2814f35b5bcca91f50a1f458978d)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-linux-amd64.tar.gz">Linux
amd64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-amd64.tar.gz.sha256sum">checksum</a>
/ 258e830a9e613c8a7a302d6059b4bb3b9758f2f3e1bb8ea0d707ce10a9a72fea)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-linux-arm.tar.gz">Linux
arm</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-arm.tar.gz.sha256sum">checksum</a>
/ a8a614c740399ff1ef32bcea6be6e4523f17e3376f9cf55c192cc48c8f2d1f19)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-linux-arm64.tar.gz">Linux
arm64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-arm64.tar.gz.sha256sum">checksum</a>
/ 5ea2d6bc2cda3f8edf985e028809f5a9278f404fb8ab24044de9b7cb9b79a691)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-linux-386.tar.gz">Linux
i386</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-386.tar.gz.sha256sum">checksum</a>
/ 88e4c1834307cdbc9f3b80920e1a383e4ba50bb488fb0be1b1fbd4918bb6ae73)</li>
<li><a
href="https://get.helm.sh/helm-v3.20.2-linux-ppc64le.tar.gz">Linux
ppc64le</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-ppc64le.tar.gz.sha256sum">checksum</a>
/ 98bb26a2f3c0b0c1a50db3181dff192554e0c204a07427d98d6b01e259f23cbe)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-linux-s390x.tar.gz">Linux
s390x</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-s390x.tar.gz.sha256sum">checksum</a>
/ 584dd77ef8096d6ef939a1822f72840e749fc8311b2b13ae94df5f786862a56b)</li>
<li><a
href="https://get.helm.sh/helm-v3.20.2-linux-riscv64.tar.gz">Linux
riscv64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-linux-riscv64.tar.gz.sha256sum">checksum</a>
/ 957391d0710d72678acd09959b5dc77888cd007a78a4b99944d3b2fc7e1895ca)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-windows-amd64.zip">Windows
amd64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-windows-amd64.zip.sha256sum">checksum</a>
/ 24e8e5b71bab4ee17e6f989931ecf4fb144f9916cbe9990c0b6b2ec7b925c454)</li>
<li><a href="https://get.helm.sh/helm-v3.20.2-windows-arm64.zip">Windows
arm64</a> (<a
href="https://get.helm.sh/helm-v3.20.2-windows-arm64.zip.sha256sum">checksum</a>
/ 7c940a73a6882f50b69aec3282549da4a49917669db18fc503db930fb74b9789)</li>
</ul>
<p>The <a href="https://helm.sh/docs/intro/quickstart/">Quickstart
Guide</a> will get you going from there. For <strong>upgrade
instructions</strong> or detailed installation notes, check the <a
href="https://helm.sh/docs/intro/install/">install guide</a>. You can
also use a <a
href="https://raw.githubusercontent.com/helm/helm/main/scripts/get-helm-3">script
to install</a> on any system with <code>bash</code>.</p>
<h2>What's Next</h2>
<ul>
<li>4.1.5 and 3.20.3 are the next patch (bug fix) releases and will be
on April 8, 2026</li>
<li>4.2.0 and 3.21.0 are the next minor (feature) releases and will be
on May 13, 2026</li>
</ul>
<h2>Changelog</h2>
<ul>
<li>fix: Chart dot-name path bug
8fb76d6ab555577e98e23b7500009537a471feee (George Jenkins)</li>
<li>fix: pin codeql-action/upload-sarif to commit SHA in scorecards
workflow 3a8927e275c50cecde273872dad2a5576bd46375 (Terry Howe)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/helm/helm/commit/8fb76d6ab555577e98e23b7500009537a471feee"><code>8fb76d6</code></a>
fix: Chart dot-name path bug</li>
<li><a
href="https://github.com/helm/helm/commit/3a8927e275c50cecde273872dad2a5576bd46375"><code>3a8927e</code></a>
fix: pin codeql-action/upload-sarif to commit SHA in scorecards
workflow</li>
<li>See full diff in <a
href="https://github.com/helm/helm/compare/v3.20.1...v3.20.2">compare
view</a></li>
</ul>
</details>
<br />

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant