Bump the github-actions group across 1 directory with 9 updates #165
+19
−19
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 9 updates in the / directory:
2.10.42.13.14.2.25.0.0344.5.04.8.1d6e91a2266cdb9d62096cebf1e8546899c6aa18f0ff001de0805038ff3f118de48750022000577320.46.01.7.15.4.06.0.02.4.02.4.33.2.1.pre.node205Updates
step-security/harden-runnerfrom 2.10.4 to 2.13.1Release notes
Sourced from step-security/harden-runner's releases.
... (truncated)
Commits
f4a75cfMerge pull request #588 from step-security/rc-2695503d0ci: remove code-review workflow4b250a0ci: add job to confirm dist is as expected5b0ab6aupdate dependenciesd11f2c1fix bug where status code was not being preservedb3fc98eimprove error handling for policy store sceanrio92fc5d4update error messageb61b0a4policy store improvementse3d3f2buse GitHub release instead of packages646ac01update agentUpdates
actions/checkoutfrom 4.2.2 to 5.0.0Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
08c6903Prepare v5.0.0 release (#2238)9f26565Update actions checkout to use node 24 (#2226)08eba0bPrepare release v4.3.0 (#2237)631c7dcUpdate package dependencies (#2236)8edcb1bUpdate CODEOWNERS for actions (#2224)09d2acaUpdate README.md (#2194)85e6279Adjust positioning of user email note and permissions heading (#2044)009b9aeDocumentation update - add recommended permissions to Readme (#2043)cbb7224Update README.md (#1977)3b9b8c8docs: update README.md (#1971)Updates
github/codeql-actionfrom 3 to 4Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Commits
74c8748Update analyze/action.yml34c50c1Merge pull request #3251 from github/mbg/user-error/enablement4ae68afWarn if theadd-snippetsinput is used52a7bd7Check for 403 status194ba0eMake error message tests less brittle53acf0bTurn enablement errors into configuration errorsac9aeeeMerge pull request #3249 from github/henrymercer/api-loggingd49e837Merge branch 'main' into henrymercer/api-logging3d988b2Pass minimal copy ofcore8cc18acMerge pull request #3250 from github/henrymercer/prefer-fs-deleteUpdates
actions/dependency-review-actionfrom 4.5.0 to 4.8.1Release notes
Sourced from actions/dependency-review-action's releases.
... (truncated)
Commits
40c09b7Merge pull request #1001 from actions/ahpook/v4.8.1-release4552948Bump version for 4.8.1 releasee63da9aMerge pull request #1000 from actions/ahpook/deprecation-redux71365c7(bug) Fix spamming link test in deprecation warning (again)56339e5Merge pull request #988 from actions/brrygrdn/rc-4.8.01688b74Bump to a 4.8.031c9f17Merge pull request #987 from actions/rc-4.7.4eacde78Update version8151009Merge pull request #986 from actions/brrygrdn/rc-4.7.4b472ec9Add a quick regression test for the artefact summaryUpdates
tj-actions/changed-filesfrom d6e91a2266cdb9d62096cebf1e8546899c6aa18f to 0ff001de0805038ff3f118de4875002200057732Changelog
Sourced from tj-actions/changed-files's changelog.
... (truncated)
Commits
0ff001dchore(deps-dev): bump ts-jest from 29.4.4 to 29.4.5 (#2688)52b808achore(deps-dev): bump@types/micromatchfrom 4.0.9 to 4.0.10 (#2699)d6388b7chore(deps): bump actions/download-artifact from 5.0.0 to 6.0.0 (#2697)cf5e80achore(deps): bump actions/upload-artifact from 4.6.2 to 5.0.0 (#2698)cff4543chore(deps-dev): bump@types/nodefrom 24.9.1 to 24.9.2 (#2700)9dc1b5fchore(deps): bump github/codeql-action from 4.30.9 to 4.31.2 (#2702)dbf178cchore(deps): bump actions/setup-node from 5.0.0 to 6.0.0 (#2690)1900262chore(deps): bump github/codeql-action from 3.30.6 to 4.30.9 (#2693)27e5d78chore(deps-dev): bump@types/nodefrom 24.6.2 to 24.9.1 (#2695)d03a93cchore(deps): bump github/codeql-action from 3.30.5 to 3.30.6 (#2680)Updates
aminya/setup-cppfrom 0.46.0 to 1.7.1Release notes
Sourced from aminya/setup-cpp's releases.
... (truncated)
Commits
a276e6echore(release): v1.7.1 [skip test]1c89539fix: handle no update failures for llvmb32feb0chore(deps): update devdependencies (#426)d857140Merge pull request #425 from aminya/windows-llvmaa0fcb9fix: use 7z for tar extraction on windows988cdb3fix: extra tar by 7z on windowsd09e6b8Merge pull request #418 from aminya/renovate/dependenciesc43a237fix(deps): update dependency@types/nodeto v22.16.06004ecaMerge pull request #423 from aminya/renovate/node-22.xd42bb0bchore(deps): update node.js to v22.17.0Updates
actions/setup-pythonfrom 5.4.0 to 6.0.0Release notes
Sourced from actions/setup-python's releases.
... (truncated)
Commits
e797f83Upgrade to node 24 (#1164)3d1e2d2Revert "Enhance cache-dependency-path handling to support files outside the w...65b0712Clarify pythonLocation behavior for PyPy and GraalPy in environment variables...5b668cfBump actions/checkout from 4 to 5 (#1181)f62a0e2Change missing cache directory error to warning (#1182)9322b3cUpgrade setuptools to 78.1.1 to fix path traversal vulnerability in PackageIn...fbeb884Bump form-data to fix critical vulnerabilities #182 & #183 (#1163)03bb615Bump idna from 2.9 to 3.7 in /tests/data (#843)36da51dAdd version parsing from Pipfile (#1067)3c6f142update documentation (#1156)Updates
ossf/scorecard-actionfrom 2.4.0 to 2.4.3Release notes
Sourced from ossf/scorecard-action's releases.