Bump the actions group across 1 directory with 10 updates #517
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the actions group with 10 updates in the / directory:
4.1.74.2.23.6.13.9.03.2.03.3.04.3.64.6.14.3.44.5.05.0.25.3.06.1.16.5.02.4.02.4.13.26.123.28.100.24.00.29.0Updates
actions/checkoutfrom 4.1.7 to 4.2.2Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
11bd719Prepare 4.2.2 Release (#1953)e3d2460Expand unit test coverage (#1946)163217durl-helper.tsnow leverages well-known environment variables. (#1941)eef6144Prepare 4.2.1 release (#1925)6b42224Add workflow file for publishing releases to immutable action package (#1919)de5a000Check out other refs/* by commit if provided, fall back to ref (#1924)d632683Prepare 4.2.0 release (#1878)6d193bfBump braces from 3.0.2 to 3.0.3 (#1777)db0cee9Bump the minor-npm-dependencies group across 1 directory with 4 updates (#1872)b684943Add Ref and Commit outputs (#1180)Updates
docker/setup-buildx-actionfrom 3.6.1 to 3.9.0Release notes
Sourced from docker/setup-buildx-action's releases.
Commits
f7ce87cMerge pull request #404 from docker/dependabot/npm_and_yarn/docker/actions-to...aa1e2a0chore: update generated content673e008build(deps): bump@docker/actions-toolkitfrom 0.53.0 to 0.54.0ba31df4Merge pull request #402 from docker/dependabot/npm_and_yarn/docker/actions-to...5475af1chore: update generated contentacacad9build(deps): bump@docker/actions-toolkitfrom 0.48.0 to 0.53.06a25f98Merge pull request #396 from crazy-max/bake-v6ca1af17update bake-action to v66524bf6Merge pull request #390 from crazy-max/buildx-cloud-latest8d5e074chore: update generated contentUpdates
docker/login-actionfrom 3.2.0 to 3.3.0Release notes
Sourced from docker/login-action's releases.
Commits
9780b0cMerge pull request #741 from docker/dependabot/npm_and_yarn/proxy-agent-depen...2fa130cchore: update generated content5e87b2abuild(deps): bump https-proxy-agente039495Merge pull request #754 from docker/dependabot/npm_and_yarn/docker/actions-to...9af18aachore: update generated content668190aswitch to Docker execbe5150dbuild(deps): bump@docker/actions-toolkitfrom 0.24.0 to 0.35.0e80ebcaMerge pull request #730 from docker/dependabot/npm_and_yarn/braces-3.0.375ee3eaMerge pull request #733 from docker/dependabot/github_actions/docker/bake-act...793c19cbuild(deps): bump docker/bake-action from 4 to 5Updates
actions/upload-artifactfrom 4.3.6 to 4.6.1Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
4cec3d8Merge pull request #673 from actions/yacaovsnc/artifact_2.2.2e9fad96license cache update for artifactb26fd06Update to use artifact 2.2.2 package65c4c4aMerge pull request #662 from actions/yacaovsnc/add_variable_for_concurrency_a...0207619move files back to satisfy licensed ci1ecca81licensed cache updates9742269Expose env vars to controll concurrency and timeout6f51ac0Merge pull request #656 from bdehamer/bdehamer/artifact-digestc40c16dadd new artifact-digest output735efb4bump@actions/artifactfrom 2.1.11 to 2.2.0Updates
actions/dependency-review-actionfrom 4.3.4 to 4.5.0Release notes
Sourced from actions/dependency-review-action's releases.
Commits
3b139cfMerge pull request #851 from actions/ahmed3lmallah/prepare-for-4.5.0-released6807b6updating generated codec89b41faddressing lint issueseee97d8incrementing project version9d10182Merge pull request #827 from ebickle/fix/comment-warn-only9192be9Merge pull request #850 from actions/ahmed3lmallah/adressing-CVE-2024-215382fc8e23Using cross-spawn safe versionfb86db2fix: resolve race conditions in async core.group calls0a198abfix: replace integer failureCount with booleanfc499fcMerge branch 'main' into fix/comment-warn-onlyUpdates
actions/setup-gofrom 5.0.2 to 5.3.0Release notes
Sourced from actions/setup-go's releases.
Commits
f111f33Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 (#534)3d10edbAdd new permission section (#533)43e1389Configure Dependabot settings (#530)f81f022Use the new cache service: upgrade@actions/cacheto^4.0.0(#531)3041bf5feat: fallback to "raw" endpoint for manifest when rate limit is reached (#496)41dfa10Enhance workflows and Upgrade micromatch Dependency (#510)9419772ReviseisGheslogic (#511)d60b41aMerge pull request #502 from actions/Jcambass-patch-1e09f57fUpgrade IA Publishdf1a117Merge pull request #500 from actions/Jcambass-patch-1Updates
golangci/golangci-lint-actionfrom 6.1.1 to 6.5.0Release notes
Sourced from golangci/golangci-lint-action's releases.
... (truncated)
Commits
2226d7c6.5.08d744d5feat: verify with the JSONSchema by default (#1171)0e58f8ebuild(deps): bump@octokit/endpointfrom 9.0.5 to 9.0.6 (#1170)6a3fb76build(deps): bump@octokit/request-errorfrom 5.1.0 to 5.1.1 (#1169)696fa5cchore: clean workflows80284edchore: use ubuntu-22.04-arm818ec4d6.4.11c50240fix: use config arg for verify (#1168)0adbc476.4.0f7463c5feat: add an option to verify with the JSONSchema (#1167)Updates
ossf/scorecard-actionfrom 2.4.0 to 2.4.1Release notes
Sourced from ossf/scorecard-action's releases.
Commits
f49aabebump docker to ghcr v2.4.1 (#1478)30a595b🌱 Bump github.com/sigstore/cosign/v2 from 2.4.2 to 2.4.3 (#1515)69ae593omit vcs info from build (#1514)6a62a1cadd input for specifying--file-mode(#1509)2722664🌱 Bump the github-actions group with 2 updates (#1510)ae0ef31🌱 Bump github.com/spf13/cobra from 1.8.1 to 1.9.1 (#1512)3676bbc🌱 Bump golang from 1.23.6 to 1.24.0 in the docker-images group (#1513)ae7548aLimit codeQL push trigger to main branch (#1507)9165624upgrade scorecard to v5.1.0 (#1508)620fd28🌱 Bump the github-actions group with 2 updates (#1505)Updates
github/codeql-actionfrom 3.26.12 to 3.28.10Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
b56ba49Merge pull request #2778 from github/update-v3.28.10-9856c48b160c9c77Update changelog for v3.28.109856c48Merge pull request #2773 from github/redsun82/rust9572e09Rust: fix log string1a52936Rust: special case default setupcf7e909Merge pull request #2772 from github/update-bundle/codeql-bundle-v2.20.5b7006aaMerge branch 'main' into update-bundle/codeql-bundle-v2.20.5cfedae7Rust: throw configuration errors if requested and not correctly enabled3971ed2Merge branch 'main' into redsun82/rustd38c6e6Merge pull request #2775 from github/angelapwen/bump-octokitUpdates
aquasecurity/trivy-actionfrom 0.24.0 to 0.29.0Release notes
Sourced from aquasecurity/trivy-action's releases.