Bump the github-actions group across 1 directory with 15 updates#2126
Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
Closed
Bump the github-actions group across 1 directory with 15 updates#2126dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
Bumps the github-actions group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `4.1.7` | `4.2.2` | | [actions/setup-python](https://github.com/actions/setup-python) | `5.1.0` | `5.4.0` | | [actions/setup-node](https://github.com/actions/setup-node) | `4.0.2` | `4.2.0` | | [rhysd/github-action-benchmark](https://github.com/rhysd/github-action-benchmark) | `1.20.3` | `1.20.4` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.3.3` | `4.6.0` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `4.1.7` | `4.1.8` | | [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) | `3.3.0` | `3.8.0` | | [docker/login-action](https://github.com/docker/login-action) | `3.2.0` | `3.3.0` | | [docker/build-push-action](https://github.com/docker/build-push-action) | `6.2.0` | `6.13.0` | | [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) | `1.9.0` | `1.12.4` | | [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) | `6.1.0` | `7.0.6` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.0.6` | `2.2.1` | | [reviewdog/action-suggester](https://github.com/reviewdog/action-suggester) | `1.15.0` | `1.19.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.3.3` | `2.4.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.25.11` | `3.28.8` | Updates `actions/checkout` from 4.1.7 to 4.2.2 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...11bd719) Updates `actions/setup-python` from 5.1.0 to 5.4.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@82c7e63...4237552) Updates `actions/setup-node` from 4.0.2 to 4.2.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@60edb5d...1d0ff46) Updates `rhysd/github-action-benchmark` from 1.20.3 to 1.20.4 - [Release notes](https://github.com/rhysd/github-action-benchmark/releases) - [Changelog](https://github.com/benchmark-action/github-action-benchmark/blob/master/CHANGELOG.md) - [Commits](benchmark-action/github-action-benchmark@4de1bed...d48d326) Updates `actions/upload-artifact` from 4.3.3 to 4.6.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@6546280...65c4c4a) Updates `actions/download-artifact` from 4.1.7 to 4.1.8 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@65a9edc...fa0a91b) Updates `docker/setup-buildx-action` from 3.3.0 to 3.8.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@d70bba7...6524bf6) Updates `docker/login-action` from 3.2.0 to 3.3.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@0d4c9c5...9780b0c) Updates `docker/build-push-action` from 6.2.0 to 6.13.0 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](docker/build-push-action@1556069...ca877d9) Updates `pypa/gh-action-pypi-publish` from 1.9.0 to 1.12.4 - [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases) - [Commits](pypa/gh-action-pypi-publish@ec4db0b...76f52bc) Updates `peter-evans/create-pull-request` from 6.1.0 to 7.0.6 - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@c5a7806...67ccf78) Updates `softprops/action-gh-release` from 2.0.6 to 2.2.1 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@a74c6b7...c95fe14) Updates `reviewdog/action-suggester` from 1.15.0 to 1.19.0 - [Release notes](https://github.com/reviewdog/action-suggester/releases) - [Commits](reviewdog/action-suggester@a1d57ff...a3026c6) Updates `ossf/scorecard-action` from 2.3.3 to 2.4.0 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@dc50aa9...62b2cac) Updates `github/codeql-action` from 3.25.11 to 3.28.8 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@b611370...dd74661) --- updated-dependencies: - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-python dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-node dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: rhysd/github-action-benchmark dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/download-artifact dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: docker/setup-buildx-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: docker/login-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: docker/build-push-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: pypa/gh-action-pypi-publish dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: softprops/action-gh-release dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-suggester dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: ossf/scorecard-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com>
mihaimaruseac
approved these changes
Jan 29, 2025
Contributor
Author
|
Superseded by #2127. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 15 updates in the / directory:
4.1.74.2.25.1.05.4.04.0.24.2.01.20.31.20.44.3.34.6.04.1.74.1.83.3.03.8.03.2.03.3.06.2.06.13.01.9.01.12.46.1.07.0.62.0.62.2.11.15.01.19.02.3.32.4.03.25.113.28.8Updates
actions/checkoutfrom 4.1.7 to 4.2.2Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
11bd719Prepare 4.2.2 Release (#1953)e3d2460Expand unit test coverage (#1946)163217durl-helper.tsnow leverages well-known environment variables. (#1941)eef6144Prepare 4.2.1 release (#1925)6b42224Add workflow file for publishing releases to immutable action package (#1919)de5a000Check out other refs/* by commit if provided, fall back to ref (#1924)d632683Prepare 4.2.0 release (#1878)6d193bfBump braces from 3.0.2 to 3.0.3 (#1777)db0cee9Bump the minor-npm-dependencies group across 1 directory with 4 updates (#1872)b684943Add Ref and Commit outputs (#1180)Updates
actions/setup-pythonfrom 5.1.0 to 5.4.0Release notes
Sourced from actions/setup-python's releases.
... (truncated)
Commits
4237552Improve Advanced Usage examples (#645)709bfa5Bump requests from 2.24.0 to 2.32.2 in /tests/data (#1019)ceb20b2Bump@actions/http-clientfrom 2.2.1 to 2.2.3 (#1020)0dc2d2cBump actions/publish-immutable-action from 0.0.3 to 0.0.4 (#1014)feb9c6eBump urllib3 from 1.25.9 to 1.26.19 in /tests/data (#895)d0b4fc4Bump undici from 5.28.4 to 5.28.5 (#1012)e3dfaacConfigure Dependabot settings (#1008)b8cf3ebUse the new cache service: upgrade@actions/cacheto^4.0.0(#1007)1928ae6Update README.md (#1009)3fddbeeEnhance Workflows: Add Ubuntu-24, Remove Python 3.8 (#985)Updates
actions/setup-nodefrom 4.0.2 to 4.2.0Release notes
Sourced from actions/setup-node's releases.
... (truncated)
Commits
1d0ff46Bump undici from 5.28.4 to 5.28.5 (#1205)574f09aBump@types/jestfrom 29.5.12 to 29.5.14 (#1201)260f870Bump semver from 7.6.0 to 7.6.3 (#1196)111c4beBump actions/publish-immutable-action from 0.0.3 to 0.0.4 (#1195)0bc26deBump pnpm/action-setup from 2 to 4 (#1194)8f9cc17Use the new cache service: upgrade@actions/cacheto^4.0.0(#1191)5eef37bCreate dependabot.yml (#1192)fbeca22Update README.md (#1193)48b9067Add macos-13 to the workflows and upgrade publish-actions from 0.2.2 to 0.3.0...39370e3fix: add arch to cached path (#843)Updates
rhysd/github-action-benchmarkfrom 1.20.3 to 1.20.4Release notes
Sourced from rhysd/github-action-benchmark's releases.
Changelog
Sourced from rhysd/github-action-benchmark's changelog.
... (truncated)
Commits
d48d326release v1.20.4Updates
actions/upload-artifactfrom 4.3.3 to 4.6.0Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
65c4c4aMerge pull request #662 from actions/yacaovsnc/add_variable_for_concurrency_a...0207619move files back to satisfy licensed ci1ecca81licensed cache updates9742269Expose env vars to controll concurrency and timeout6f51ac0Merge pull request #656 from bdehamer/bdehamer/artifact-digestc40c16dadd new artifact-digest output735efb4bump@actions/artifactfrom 2.1.11 to 2.2.0184d73bMerge pull request #578 from hamirmahal/fix/deprecated-nodejs-usage-in-actionb4a0a98Merge branch 'main' into fix/deprecated-nodejs-usage-in-actionb4b15b8Merge pull request #632 from actions/joshmgross/undo-dependency-changesUpdates
actions/download-artifactfrom 4.1.7 to 4.1.8Release notes
Sourced from actions/download-artifact's releases.
Commits
fa0a91bMerge pull request #341 from actions/robherley/bump-pkgsb54d088Update@actions/artifactversion, bump dependenciesUpdates
docker/setup-buildx-actionfrom 3.3.0 to 3.8.0Release notes
Sourced from docker/setup-buildx-action's releases.
Commits
6524bf6Merge pull request #390 from crazy-max/buildx-cloud-latest8d5e074chore: update generated content7199e57make cloud prefix optional to download buildx if driver is clouddb63ceeMerge pull request #381 from docker/dependabot/github_actions/codecov/codecov...043ebe1Merge pull request #389 from docker/dependabot/npm_and_yarn/docker/actions-to...686da90chore: update generated contenta3d7487Merge pull request #382 from docker/dependabot/npm_and_yarn/cross-spawn-7.0.64dcdbcebuild(deps): bump@docker/actions-toolkitfrom 0.39.0 to 0.48.01a8ac74ci: fix deprecated input for codecov-actione827ebebuild(deps): bump cross-spawn from 7.0.3 to 7.0.6Updates
docker/login-actionfrom 3.2.0 to 3.3.0Release notes
Sourced from docker/login-action's releases.
Commits
9780b0cMerge pull request #741 from docker/dependabot/npm_and_yarn/proxy-agent-depen...2fa130cchore: update generated content5e87b2abuild(deps): bump https-proxy-agente039495Merge pull request #754 from docker/dependabot/npm_and_yarn/docker/actions-to...9af18aachore: update generated content668190aswitch to Docker execbe5150dbuild(deps): bump@docker/actions-toolkitfrom 0.24.0 to 0.35.0e80ebcaMerge pull request #730 from docker/dependabot/npm_and_yarn/braces-3.0.375ee3eaMerge pull request #733 from docker/dependabot/github_actions/docker/bake-act...793c19cbuild(deps): bump docker/bake-action from 4 to 5Updates
docker/build-push-actionfrom 6.2.0 to 6.13.0Release notes
Sourced from docker/build-push-action's releases.
... (truncated)
Commits
ca877d9Merge pull request #1308 from docker/dependabot/npm_and_yarn/docker/actions-t...d2fe919chore: update generated contentf0fc9ecDescription has been truncated