Bump the github-actions group across 1 directory with 15 updates#2107
Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
Closed
Bump the github-actions group across 1 directory with 15 updates#2107dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
Bumps the github-actions group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `4.1.7` | `4.2.2` | | [actions/setup-python](https://github.com/actions/setup-python) | `5.1.0` | `5.3.0` | | [actions/setup-node](https://github.com/actions/setup-node) | `4.0.2` | `4.1.0` | | [rhysd/github-action-benchmark](https://github.com/rhysd/github-action-benchmark) | `1.20.3` | `1.20.4` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.3.3` | `4.5.0` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `4.1.7` | `4.1.8` | | [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) | `3.3.0` | `3.8.0` | | [docker/login-action](https://github.com/docker/login-action) | `3.2.0` | `3.3.0` | | [docker/build-push-action](https://github.com/docker/build-push-action) | `6.2.0` | `6.10.0` | | [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) | `1.9.0` | `1.12.3` | | [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) | `6.1.0` | `7.0.5` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.0.6` | `2.2.0` | | [reviewdog/action-suggester](https://github.com/reviewdog/action-suggester) | `1.15.0` | `1.18.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.3.3` | `2.4.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.25.11` | `3.27.9` | Updates `actions/checkout` from 4.1.7 to 4.2.2 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...11bd719) Updates `actions/setup-python` from 5.1.0 to 5.3.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@82c7e63...0b93645) Updates `actions/setup-node` from 4.0.2 to 4.1.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@60edb5d...39370e3) Updates `rhysd/github-action-benchmark` from 1.20.3 to 1.20.4 - [Release notes](https://github.com/rhysd/github-action-benchmark/releases) - [Changelog](https://github.com/benchmark-action/github-action-benchmark/blob/master/CHANGELOG.md) - [Commits](benchmark-action/github-action-benchmark@4de1bed...d48d326) Updates `actions/upload-artifact` from 4.3.3 to 4.5.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@6546280...6f51ac0) Updates `actions/download-artifact` from 4.1.7 to 4.1.8 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@65a9edc...fa0a91b) Updates `docker/setup-buildx-action` from 3.3.0 to 3.8.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@d70bba7...6524bf6) Updates `docker/login-action` from 3.2.0 to 3.3.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@0d4c9c5...9780b0c) Updates `docker/build-push-action` from 6.2.0 to 6.10.0 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](docker/build-push-action@1556069...48aba3b) Updates `pypa/gh-action-pypi-publish` from 1.9.0 to 1.12.3 - [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases) - [Commits](pypa/gh-action-pypi-publish@ec4db0b...67339c7) Updates `peter-evans/create-pull-request` from 6.1.0 to 7.0.5 - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@c5a7806...5e91468) Updates `softprops/action-gh-release` from 2.0.6 to 2.2.0 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@a74c6b7...7b4da11) Updates `reviewdog/action-suggester` from 1.15.0 to 1.18.0 - [Release notes](https://github.com/reviewdog/action-suggester/releases) - [Commits](reviewdog/action-suggester@a1d57ff...db4abb1) Updates `ossf/scorecard-action` from 2.3.3 to 2.4.0 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@dc50aa9...62b2cac) Updates `github/codeql-action` from 3.25.11 to 3.27.9 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@b611370...df409f7) --- updated-dependencies: - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-python dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-node dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: rhysd/github-action-benchmark dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/download-artifact dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: docker/setup-buildx-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: docker/login-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: docker/build-push-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: pypa/gh-action-pypi-publish dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: softprops/action-gh-release dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-suggester dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: ossf/scorecard-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com>
mihaimaruseac
approved these changes
Dec 18, 2024
Contributor
Author
|
Superseded by #2108. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 15 updates in the / directory:
4.1.74.2.25.1.05.3.04.0.24.1.01.20.31.20.44.3.34.5.04.1.74.1.83.3.03.8.03.2.03.3.06.2.06.10.01.9.01.12.36.1.07.0.52.0.62.2.01.15.01.18.02.3.32.4.03.25.113.27.9Updates
actions/checkoutfrom 4.1.7 to 4.2.2Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
11bd719Prepare 4.2.2 Release (#1953)e3d2460Expand unit test coverage (#1946)163217durl-helper.tsnow leverages well-known environment variables. (#1941)eef6144Prepare 4.2.1 release (#1925)6b42224Add workflow file for publishing releases to immutable action package (#1919)de5a000Check out other refs/* by commit if provided, fall back to ref (#1924)d632683Prepare 4.2.0 release (#1878)6d193bfBump braces from 3.0.2 to 3.0.3 (#1777)db0cee9Bump the minor-npm-dependencies group across 1 directory with 4 updates (#1872)b684943Add Ref and Commit outputs (#1180)Updates
actions/setup-pythonfrom 5.1.0 to 5.3.0Release notes
Sourced from actions/setup-python's releases.
... (truncated)
Commits
0b93645Enhance workflows: Add macOS 13 support, upgrade publish-action, and update d...9c76e71Bump pillow from 7.2 to 10.2.0 in /tests/data (#956)f4c5a11ReviseisGheslogic (#963)19dfb7bBump default versions to latest (#905)e9675ccMerge pull request #943 from actions/Jcambass-patch-13226af6Upgrade IA publish70dcb22Merge pull request #941 from actions/Jcambass-patch-165b48c7Create publish-immutable-actions.yml29a37beinitial commit (#938)f677139Bump pyinstaller from 3.6 to 5.13.1 in /tests/data (#923)Updates
actions/setup-nodefrom 4.0.2 to 4.1.0Release notes
Sourced from actions/setup-node's releases.
... (truncated)
Commits
39370e3fix: add arch to cached path (#843)abb238bReviseisGheslogic (#1148)aca7b64Merge pull request #1134 from actions/Jcambass-patch-188de2a3Resolve High Security Alerts by upgrading Dependencies (#1132)0a44ba7Correct version string (#1124)d6ebc7bUpgrade IA Publish97ca147Merge pull request #1125 from actions/add-is-release-workflowaa363deCreate publish-immutable-action.yml1c7b2dbFix: windows arm64 setup (#1126)26961cfDocumentation update in the README file (#1106)Updates
rhysd/github-action-benchmarkfrom 1.20.3 to 1.20.4Release notes
Sourced from rhysd/github-action-benchmark's releases.
Changelog
Sourced from rhysd/github-action-benchmark's changelog.
... (truncated)
Commits
d48d326release v1.20.4Updates
actions/upload-artifactfrom 4.3.3 to 4.5.0Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
6f51ac0Merge pull request #656 from bdehamer/bdehamer/artifact-digestc40c16dadd new artifact-digest output735efb4bump@actions/artifactfrom 2.1.11 to 2.2.0184d73bMerge pull request #578 from hamirmahal/fix/deprecated-nodejs-usage-in-actionb4a0a98Merge branch 'main' into fix/deprecated-nodejs-usage-in-actionb4b15b8Merge pull request #632 from actions/joshmgross/undo-dependency-changes92b01ebUndo indirect dependency updates from #6278448086Merge pull request #627 from actions/robherley/v4.4.2b1d4642add explicit relative and absolute symlinks to workflowd50e660bump versionUpdates
actions/download-artifactfrom 4.1.7 to 4.1.8Release notes
Sourced from actions/download-artifact's releases.
Commits
fa0a91bMerge pull request #341 from actions/robherley/bump-pkgsb54d088Update@actions/artifactversion, bump dependenciesUpdates
docker/setup-buildx-actionfrom 3.3.0 to 3.8.0Release notes
Sourced from docker/setup-buildx-action's releases.
Commits
6524bf6Merge pull request #390 from crazy-max/buildx-cloud-latest8d5e074chore: update generated content7199e57make cloud prefix optional to download buildx if driver is clouddb63ceeMerge pull request #381 from docker/dependabot/github_actions/codecov/codecov...043ebe1Merge pull request #389 from docker/dependabot/npm_and_yarn/docker/actions-to...686da90chore: update generated contenta3d7487Merge pull request #382 from docker/dependabot/npm_and_yarn/cross-spawn-7.0.64dcdbcebuild(deps): bump@docker/actions-toolkitfrom 0.39.0 to 0.48.01a8ac74ci: fix deprecated input for codecov-actione827ebebuild(deps): bump cross-spawn from 7.0.3 to 7.0.6Updates
docker/login-actionfrom 3.2.0 to 3.3.0Release notes
Sourced from docker/login-action's releases.
Commits
9780b0cMerge pull request #741 from docker/dependabot/npm_and_yarn/proxy-agent-depen...2fa130cchore: update generated content5e87b2abuild(deps): bump https-proxy-agente039495Merge pull request #754 from docker/dependabot/npm_and_yarn/docker/actions-to...9af18aachore: update generated content668190aswitch to Docker execbe5150dbuild(deps): bump@docker/actions-toolkitfrom 0.24.0 to 0.35.0e80ebcaMerge pull request #730 from docker/dependabot/npm_and_yarn/braces-3.0.375ee3eaMerge pull request #733 from docker/dependabot/github_actions/docker/bake-act...793c19cbuild(deps): bump docker/bake-action from 4 to 5Updates
docker/build-push-actionfrom 6.2.0 to 6.10.0Release notes
Sourced from docker/build-push-action's releases.
... (truncated)
Commits
48aba3bMerge pull request #1268 from docker/dependabot/npm_and_yarn/docker/actions-t...678328cchore: update generated contentcdf0a37chore(deps): Bump@docker/actions-toolkitfrom 0.39.0 to 0.46.0d719b79Merge pull request #1238 from docker/dependabot/npm_and_yarn/actions/core-1.11.1c333dfdchore: update generated content6b56a4cchore(deps): Bump@actions/corefrom 1.10.1 to 1.11.192fb0d7Merge pull request #1259 from docker/dependabot/github_actions/codecov/codeco...40532c5ci: fix deprecated input for codecov-action70dd953Merge pull request #1267 from crazy-max/fix-allow