Skip to content

Commit fc54559

Browse files
ci(deps): bump the github-action-dependencies group with 3 updates
Bumps the github-action-dependencies group with 3 updates: [actions/checkout](https://github.com/actions/checkout), [actions/setup-java](https://github.com/actions/setup-java) and [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action). Updates `actions/checkout` from 4 to 5 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v5) Updates `actions/setup-java` from 4 to 5 - [Release notes](https://github.com/actions/setup-java/releases) - [Commits](actions/setup-java@v4...v5) Updates `aquasecurity/trivy-action` from 0.29.0 to 0.32.0 - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](aquasecurity/trivy-action@0.29.0...0.32.0) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-action-dependencies - dependency-name: actions/setup-java dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-action-dependencies - dependency-name: aquasecurity/trivy-action dependency-version: 0.32.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-action-dependencies ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent d43bb84 commit fc54559

File tree

1 file changed

+15
-15
lines changed

1 file changed

+15
-15
lines changed

.github/workflows/pipeline.yml

Lines changed: 15 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
conventional-commit-check:
1616
runs-on: ubuntu-latest
1717
steps:
18-
- uses: actions/checkout@v4
18+
- uses: actions/checkout@v5
1919
with:
2020
fetch-depth: 0
2121
- name: Conventional commit check
@@ -24,8 +24,8 @@ jobs:
2424
runs-on: ubuntu-latest
2525
needs: conventional-commit-check
2626
steps:
27-
- uses: actions/checkout@v4
28-
- uses: actions/setup-java@v4
27+
- uses: actions/checkout@v5
28+
- uses: actions/setup-java@v5
2929
with:
3030
distribution: adopt
3131
java-version: 21
@@ -43,8 +43,8 @@ jobs:
4343
runs-on: ubuntu-latest
4444
needs: build
4545
steps:
46-
- uses: actions/checkout@v4
47-
- uses: actions/setup-java@v4
46+
- uses: actions/checkout@v5
47+
- uses: actions/setup-java@v5
4848
with:
4949
distribution: adopt
5050
java-version: 21
@@ -64,8 +64,8 @@ jobs:
6464
runs-on: ubuntu-latest
6565
needs: build
6666
steps:
67-
- uses: actions/checkout@v4
68-
- uses: actions/setup-java@v4
67+
- uses: actions/checkout@v5
68+
- uses: actions/setup-java@v5
6969
with:
7070
distribution: adopt
7171
java-version: 21
@@ -83,8 +83,8 @@ jobs:
8383
runs-on: ubuntu-latest
8484
needs: build
8585
steps:
86-
- uses: actions/checkout@v4
87-
- uses: actions/setup-java@v4
86+
- uses: actions/checkout@v5
87+
- uses: actions/setup-java@v5
8888
with:
8989
distribution: adopt
9090
java-version: 21
@@ -106,14 +106,14 @@ jobs:
106106
runs-on: ubuntu-latest
107107
needs: build
108108
steps:
109-
- uses: actions/checkout@v4
109+
- uses: actions/checkout@v5
110110
- uses: snyk/actions/maven-3-jdk-21@master
111111
name: Run Snyk scan for dependency and license
112112
env:
113113
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
114114
with:
115115
args: --severity-threshold=high
116-
- uses: actions/setup-java@v4
116+
- uses: actions/setup-java@v5
117117
with:
118118
distribution: adopt
119119
java-version: 21
@@ -127,13 +127,13 @@ jobs:
127127
runs-on: ubuntu-latest
128128
needs: build
129129
steps:
130-
- uses: actions/checkout@v4
130+
- uses: actions/checkout@v5
131131
- uses: hadolint/[email protected]
132132
with:
133133
dockerfile: Dockerfile
134134
failure-threshold: error
135135
- name: Run Trivy vulnerability for IAC
136-
uses: aquasecurity/trivy-action@0.29.0
136+
uses: aquasecurity/trivy-action@0.32.0
137137
with:
138138
scan-type: config
139139
scan-ref: './'
@@ -171,7 +171,7 @@ jobs:
171171
outputs:
172172
is-dryrun-version-bumped: ${{ steps.bump-version.outputs.is-dryrun-version-bumped }}
173173
steps:
174-
- uses: actions/checkout@v4
174+
- uses: actions/checkout@v5
175175
with:
176176
fetch-depth: 0
177177
- name: fetch-tags
@@ -234,7 +234,7 @@ jobs:
234234
environment:
235235
name: approve-release # Manual Approval to decide if we are ready to push tags and release
236236
steps:
237-
- uses: actions/checkout@v4
237+
- uses: actions/checkout@v5
238238
with:
239239
fetch-depth: 0
240240
fetch-tags: true

0 commit comments

Comments
 (0)