Skip to content

Commit 9e436ee

Browse files
Bump the github-actions group with 5 updates
Bumps the github-actions group with 5 updates: | Package | From | To | | --- | --- | --- | | [github/codeql-action](https://github.com/github/codeql-action) | `3` | `4` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4` | `5` | | [mikepenz/release-changelog-builder-action](https://github.com/mikepenz/release-changelog-builder-action) | `5` | `6` | | [devops-infra/action-pull-request](https://github.com/devops-infra/action-pull-request) | `0.6.1` | `1.0.2` | | [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) | `3.10.0` | `4.0.0` | Updates `github/codeql-action` from 3 to 4 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@v3...v4) Updates `actions/upload-artifact` from 4 to 5 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@v4...v5) Updates `mikepenz/release-changelog-builder-action` from 5 to 6 - [Release notes](https://github.com/mikepenz/release-changelog-builder-action/releases) - [Commits](mikepenz/release-changelog-builder-action@v5...v6) Updates `devops-infra/action-pull-request` from 0.6.1 to 1.0.2 - [Release notes](https://github.com/devops-infra/action-pull-request/releases) - [Commits](devops-infra/action-pull-request@v0.6.1...v1.0.2) Updates `sigstore/cosign-installer` from 3.10.0 to 4.0.0 - [Release notes](https://github.com/sigstore/cosign-installer/releases) - [Commits](sigstore/cosign-installer@d7543c9...faadad0) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: mikepenz/release-changelog-builder-action dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: devops-infra/action-pull-request dependency-version: 1.0.2 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: sigstore/cosign-installer dependency-version: 4.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent ad2ad7a commit 9e436ee

File tree

2 files changed

+5
-5
lines changed

2 files changed

+5
-5
lines changed

.github/workflows/build-test.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ jobs:
5151
severity: "CRITICAL,HIGH,MEDIUM"
5252

5353
- name: Upload Trivy scan results to GitHub Security tab
54-
uses: github/codeql-action/upload-sarif@v3
54+
uses: github/codeql-action/upload-sarif@v4
5555
with:
5656
sarif_file: "trivy-results.sarif"
5757

@@ -98,7 +98,7 @@ jobs:
9898
continue-on-error: true
9999

100100
- name: Generate code coverage artifacts
101-
uses: actions/upload-artifact@v4
101+
uses: actions/upload-artifact@v5
102102
with:
103103
name: code-coverage
104104
path: coverage.out

.github/workflows/release.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -110,12 +110,12 @@ jobs:
110110

111111
- name: Build Changelog
112112
id: github_release
113-
uses: mikepenz/release-changelog-builder-action@v5
113+
uses: mikepenz/release-changelog-builder-action@v6
114114
with:
115115
ignorePreReleases: true
116116

117117
- name: Create Release PR
118-
uses: devops-infra/action-pull-request@v0.6.1
118+
uses: devops-infra/action-pull-request@v1.0.2
119119
with:
120120
github_token: ${{ secrets.GITHUB_TOKEN }}
121121
target_branch: main
@@ -207,7 +207,7 @@ jobs:
207207
# Install the cosign tool except on PR
208208
# https://github.com/sigstore/cosign-installer
209209
- name: Install cosign
210-
uses: sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 #v3.10.0
210+
uses: sigstore/cosign-installer@faadad0cce49287aee09b3a48701e75088a2c6ad #v4.0.0
211211
with:
212212
cosign-release: "v2.2.4"
213213

0 commit comments

Comments
 (0)