Skip to content

Commit ad23070

Browse files
chore(deps): bump the dependencies group across 1 directory with 12 updates (#357)
Bumps the dependencies group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [azure/setup-helm](https://github.com/azure/setup-helm) | `4.2.0` | `4.3.0` | | [actions/setup-python](https://github.com/actions/setup-python) | `5.4.0` | `5.5.0` | | [actions/setup-dotnet](https://github.com/actions/setup-dotnet) | `4.3.0` | `4.3.1` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.28.9` | `3.28.13` | | [docker/login-action](https://github.com/docker/login-action) | `3.3.0` | `3.4.0` | | [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) | `3.9.0` | `3.10.0` | | [docker/metadata-action](https://github.com/docker/metadata-action) | `5.6.1` | `5.7.0` | | [peter-evans/dockerhub-description](https://github.com/peter-evans/dockerhub-description) | `4.0.0` | `4.0.1` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.6.0` | `4.6.2` | | [checkmarx/kics-github-action](https://github.com/checkmarx/kics-github-action) | `2.1.5` | `2.1.6` | | [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) | `0.29.0` | `0.30.0` | | [trufflesecurity/trufflehog](https://github.com/trufflesecurity/trufflehog) | `3.88.5` | `3.88.20` | Updates `azure/setup-helm` from 4.2.0 to 4.3.0 - [Release notes](https://github.com/azure/setup-helm/releases) - [Changelog](https://github.com/Azure/setup-helm/blob/main/CHANGELOG.md) - [Commits](Azure/setup-helm@fe7b79c...b9e5190) Updates `actions/setup-python` from 5.4.0 to 5.5.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@4237552...8d9ed9a) Updates `actions/setup-dotnet` from 4.3.0 to 4.3.1 - [Release notes](https://github.com/actions/setup-dotnet/releases) - [Commits](actions/setup-dotnet@3951f0d...67a3573) Updates `github/codeql-action` from 3.28.9 to 3.28.13 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@9e8d078...1b549b9) Updates `docker/login-action` from 3.3.0 to 3.4.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@9780b0c...74a5d14) Updates `docker/setup-buildx-action` from 3.9.0 to 3.10.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@f7ce87c...b5ca514) Updates `docker/metadata-action` from 5.6.1 to 5.7.0 - [Release notes](https://github.com/docker/metadata-action/releases) - [Commits](docker/metadata-action@369eb59...902fa8e) Updates `peter-evans/dockerhub-description` from 4.0.0 to 4.0.1 - [Release notes](https://github.com/peter-evans/dockerhub-description/releases) - [Commits](peter-evans/dockerhub-description@e98e4d1...0505d8b) Updates `actions/upload-artifact` from 4.6.0 to 4.6.2 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@65c4c4a...ea165f8) Updates `checkmarx/kics-github-action` from 2.1.5 to 2.1.6 - [Release notes](https://github.com/checkmarx/kics-github-action/releases) - [Commits](Checkmarx/kics-github-action@3246fb4...09100f0) Updates `aquasecurity/trivy-action` from 0.29.0 to 0.30.0 - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](aquasecurity/trivy-action@18f2510...6c175e9) Updates `trufflesecurity/trufflehog` from 3.88.5 to 3.88.20 - [Release notes](https://github.com/trufflesecurity/trufflehog/releases) - [Changelog](https://github.com/trufflesecurity/trufflehog/blob/main/.goreleaser.yml) - [Commits](trufflesecurity/trufflehog@f19d6e5...793c09d) --- updated-dependencies: - dependency-name: azure/setup-helm dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: actions/setup-python dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: actions/setup-dotnet dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: docker/login-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: docker/setup-buildx-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: docker/metadata-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: peter-evans/dockerhub-description dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: checkmarx/kics-github-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: aquasecurity/trivy-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: trufflesecurity/trufflehog dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent ee373ba commit ad23070

16 files changed

+60
-60
lines changed

.github/workflows/chart-test.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -97,11 +97,11 @@ jobs:
9797
tags: kind-registry:5000/credential-issuer-processes-worker:testing
9898

9999
- name: Set up Helm
100-
uses: azure/setup-helm@fe7b79cd5ee1e45176fcad797de68ecaf3ca4814 # v4
100+
uses: azure/setup-helm@b9e51907a09c216f16ebe8536097933489208112 # v4
101101
with:
102102
version: v3.9.3
103103

104-
- uses: actions/setup-python@42375524e23c412d93fb67b49958b491fce71c38 # v5.4.0
104+
- uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55 # v5.5.0
105105
with:
106106
python-version: '3.9'
107107
check-latest: true

.github/workflows/codeql.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -74,13 +74,13 @@ jobs:
7474

7575
# This is needed because codeQl currently only supports .NET8
7676
- name: Setup .NET Core SDK ${{ matrix.dotnet-version }}
77-
uses: actions/setup-dotnet@3951f0dfe7a07e2313ec93c75700083e2005cbab # v4.3.0
77+
uses: actions/setup-dotnet@67a3573c9a986a3f9c594539f4ab511d57bb3ce9 # v4.3.1
7878
with:
7979
dotnet-version: ${{ matrix.dotnet-version }}
8080

8181
# Initializes the CodeQL tools for scanning.
8282
- name: Initialize CodeQL
83-
uses: github/codeql-action/init@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v2.227
83+
uses: github/codeql-action/init@fc7e4a0fa01c3cca5fd6a1fddec5c0740c977aa2 # v2.227
8484
with:
8585
languages: ${{ matrix.language }}
8686
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -94,7 +94,7 @@ jobs:
9494
# Automates dependency installation for Python, Ruby, and JavaScript, optimizing the CodeQL analysis setup.
9595
# If this step fails, then you should remove it and run the build manually (see below)
9696
- name: Autobuild
97-
uses: github/codeql-action/autobuild@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v2.227
97+
uses: github/codeql-action/autobuild@fc7e4a0fa01c3cca5fd6a1fddec5c0740c977aa2 # v2.227
9898

9999
# ℹ️ Command-line programs to run using the OS shell.
100100
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
@@ -107,6 +107,6 @@ jobs:
107107
# ./location_of_script_within_repo/buildscript.sh
108108

109109
- name: Perform CodeQL Analysis
110-
uses: github/codeql-action/analyze@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v2.227
110+
uses: github/codeql-action/analyze@fc7e4a0fa01c3cca5fd6a1fddec5c0740c977aa2 # v2.227
111111
with:
112112
category: "/language:${{matrix.language}}"

.github/workflows/credential-expiry-app-docker.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -49,17 +49,17 @@ jobs:
4949

5050
- name: Login to DockerHub
5151
if: github.event_name != 'pull_request'
52-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
52+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
5353
with:
5454
username: ${{ secrets.DOCKER_HUB_USER }}
5555
password: ${{ secrets.DOCKER_HUB_TOKEN }}
5656

5757
- name: Set up Docker Buildx
58-
uses: docker/setup-buildx-action@f7ce87c1d6bead3e36075b2ce75da1f6cc28aaca # v3.9.0
58+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
5959

6060
- name: Docker meta
6161
id: meta
62-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
62+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
6363
with:
6464
images: ${{ env.IMAGE_NAMESPACE }}/${{ env.IMAGE_NAME }}
6565
tags: |
@@ -80,7 +80,7 @@ jobs:
8080
# https://github.com/peter-evans/dockerhub-description
8181
- name: Update Docker Hub description
8282
if: github.event_name != 'pull_request'
83-
uses: peter-evans/dockerhub-description@e98e4d1628a5f3be2be7c231e50981aee98723ae # v4.0.0
83+
uses: peter-evans/dockerhub-description@432a30c9e07499fd01da9f8a49f0faf9e0ca5b77 # v4.0.2
8484
with:
8585
username: ${{ secrets.DOCKER_HUB_USER }}
8686
password: ${{ secrets.DOCKER_HUB_TOKEN }}

.github/workflows/dependencies.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -58,7 +58,7 @@ jobs:
5858
java-version: '17'
5959

6060
- name: Setup .NET Core SDK ${{ matrix.dotnet-version }}
61-
uses: actions/setup-dotnet@3951f0dfe7a07e2313ec93c75700083e2005cbab # v4.3.0
61+
uses: actions/setup-dotnet@67a3573c9a986a3f9c594539f4ab511d57bb3ce9 # v4.3.1
6262
with:
6363
dotnet-version: ${{ matrix.dotnet-version }}
6464

@@ -98,7 +98,7 @@ jobs:
9898
fi
9999
100100
- name: Upload DEPENDENCIES file
101-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
101+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
102102
with:
103103
path: DEPENDENCIES
104104
if: steps.dependencies-changed.outputs.changed == 'true'

.github/workflows/kics.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -45,7 +45,7 @@ jobs:
4545
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
4646

4747
- name: KICS scan
48-
uses: checkmarx/kics-github-action@3246fb456a46d1ea8848ae18793c036718b19fe0 # v2.1.5
48+
uses: checkmarx/kics-github-action@09100f0152c975eb238c67030f9fd1418acb3666 # v2.1.6
4949
with:
5050
# Scanning directory .
5151
path: "."
@@ -69,7 +69,7 @@ jobs:
6969
# Upload findings to GitHub Advanced Security Dashboard
7070
- name: Upload SARIF file for GitHub Advanced Security Dashboard
7171
if: always()
72-
uses: github/codeql-action/upload-sarif@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v3.28.9
72+
uses: github/codeql-action/upload-sarif@fc7e4a0fa01c3cca5fd6a1fddec5c0740c977aa2 # v3.28.14
7373
with:
7474
sarif_file: kicsResults/results.sarif
7575

.github/workflows/migrations-docker.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -50,17 +50,17 @@ jobs:
5050

5151
- name: Login to DockerHub
5252
if: github.event_name != 'pull_request'
53-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
53+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
5454
with:
5555
username: ${{ secrets.DOCKER_HUB_USER }}
5656
password: ${{ secrets.DOCKER_HUB_TOKEN }}
5757

5858
- name: Set up Docker Buildx
59-
uses: docker/setup-buildx-action@f7ce87c1d6bead3e36075b2ce75da1f6cc28aaca # v3.9.0
59+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
6060

6161
- name: Docker meta
6262
id: meta
63-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
63+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
6464
with:
6565
images: ${{ env.IMAGE_NAMESPACE }}/${{ env.IMAGE_NAME }}
6666
tags: |
@@ -81,7 +81,7 @@ jobs:
8181
# https://github.com/peter-evans/dockerhub-description
8282
- name: Update Docker Hub description
8383
if: github.event_name != 'pull_request'
84-
uses: peter-evans/dockerhub-description@e98e4d1628a5f3be2be7c231e50981aee98723ae # v4.0.0
84+
uses: peter-evans/dockerhub-description@432a30c9e07499fd01da9f8a49f0faf9e0ca5b77 # v4.0.2
8585
with:
8686
username: ${{ secrets.DOCKER_HUB_USER }}
8787
password: ${{ secrets.DOCKER_HUB_TOKEN }}

.github/workflows/owasp-zap.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@ jobs:
5656
version: v0.20.0
5757

5858
- name: Set up Helm
59-
uses: azure/setup-helm@fe7b79cd5ee1e45176fcad797de68ecaf3ca4814 # v4.2.0
59+
uses: azure/setup-helm@b9e51907a09c216f16ebe8536097933489208112 # v4.3.0
6060
with:
6161
version: v3.5.0
6262

@@ -144,7 +144,7 @@ jobs:
144144
145145
- name: Upload HTML report
146146
if: success() || failure()
147-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
147+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
148148
with:
149149
name: ZAP scan report
150150
path: ./report_html.html

.github/workflows/processes-worker-docker.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -49,17 +49,17 @@ jobs:
4949

5050
- name: Login to DockerHub
5151
if: github.event_name != 'pull_request'
52-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
52+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
5353
with:
5454
username: ${{ secrets.DOCKER_HUB_USER }}
5555
password: ${{ secrets.DOCKER_HUB_TOKEN }}
5656

5757
- name: Set up Docker Buildx
58-
uses: docker/setup-buildx-action@f7ce87c1d6bead3e36075b2ce75da1f6cc28aaca # v3.9.0
58+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
5959

6060
- name: Docker meta
6161
id: meta
62-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
62+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
6363
with:
6464
images: ${{ env.IMAGE_NAMESPACE }}/${{ env.IMAGE_NAME }}
6565
tags: |
@@ -80,7 +80,7 @@ jobs:
8080
# https://github.com/peter-evans/dockerhub-description
8181
- name: Update Docker Hub description
8282
if: github.event_name != 'pull_request'
83-
uses: peter-evans/dockerhub-description@e98e4d1628a5f3be2be7c231e50981aee98723ae # v4.0.0
83+
uses: peter-evans/dockerhub-description@432a30c9e07499fd01da9f8a49f0faf9e0ca5b77 # v4.0.2
8484
with:
8585
username: ${{ secrets.DOCKER_HUB_USER }}
8686
password: ${{ secrets.DOCKER_HUB_TOKEN }}

.github/workflows/release.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ jobs:
5151
git config user.email "$GITHUB_ACTOR@users.noreply.github.com"
5252
5353
- name: Install Helm
54-
uses: azure/setup-helm@fe7b79cd5ee1e45176fcad797de68ecaf3ca4814 # v4
54+
uses: azure/setup-helm@b9e51907a09c216f16ebe8536097933489208112 # v4
5555

5656
- name: Update helm dependencies for ssi-credential-issuer
5757
run: |
@@ -113,18 +113,18 @@ jobs:
113113
fetch-depth: 0
114114

115115
- name: Login to DockerHub
116-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
116+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
117117
with:
118118
username: ${{ secrets.DOCKER_HUB_USER }}
119119
password: ${{ secrets.DOCKER_HUB_TOKEN }}
120120

121121
- name: Set up Docker Buildx
122-
uses: docker/setup-buildx-action@f7ce87c1d6bead3e36075b2ce75da1f6cc28aaca # v3.9.0
122+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
123123

124124
# Create SemVer or ref tags dependent of trigger event
125125
- name: Docker meta
126126
id: meta
127-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
127+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
128128
with:
129129
images: ${{ matrix.image }}
130130
# Automatically prepare image tags; See action docs for more examples.
@@ -150,7 +150,7 @@ jobs:
150150

151151
# https://github.com/peter-evans/dockerhub-description
152152
- name: Update Docker Hub description
153-
uses: peter-evans/dockerhub-description@e98e4d1628a5f3be2be7c231e50981aee98723ae # v4.0.0
153+
uses: peter-evans/dockerhub-description@432a30c9e07499fd01da9f8a49f0faf9e0ca5b77 # v4.0.2
154154
with:
155155
username: ${{ secrets.DOCKER_HUB_USER }}
156156
password: ${{ secrets.DOCKER_HUB_TOKEN }}

.github/workflows/release_candidate.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -53,17 +53,17 @@ jobs:
5353

5454
- name: Login to DockerHub
5555
if: github.event_name != 'pull_request'
56-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
56+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
5757
with:
5858
username: ${{ secrets.DOCKER_HUB_USER }}
5959
password: ${{ secrets.DOCKER_HUB_TOKEN }}
6060

6161
- name: Set up Docker Buildx
62-
uses: docker/setup-buildx-action@f7ce87c1d6bead3e36075b2ce75da1f6cc28aaca # v3.9.0
62+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
6363

6464
- name: Docker meta
6565
id: meta
66-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
66+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
6767
with:
6868
images: ${{ matrix.image }}
6969
tags: |
@@ -84,7 +84,7 @@ jobs:
8484
# https://github.com/peter-evans/dockerhub-description
8585
- name: Update Docker Hub description
8686
if: github.event_name != 'pull_request'
87-
uses: peter-evans/dockerhub-description@e98e4d1628a5f3be2be7c231e50981aee98723ae # v4.0.0
87+
uses: peter-evans/dockerhub-description@432a30c9e07499fd01da9f8a49f0faf9e0ca5b77 # v4.0.2
8888
with:
8989
username: ${{ secrets.DOCKER_HUB_USER }}
9090
password: ${{ secrets.DOCKER_HUB_TOKEN }}

0 commit comments

Comments
 (0)