Bump the github-actions group with 6 updates #416
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 6 updates:
12.2873.0
12.2913.0
3.27.4
3.27.5
2.1.2
2.1.3
3.0.13
3.0.16
7.1.0
8.4.0
2.68.0
2.70.0
Updates
bridgecrewio/checkov-action
from 12.2873.0 to 12.2913.0Commits
06270f7
Bump checkov container version to 3.2.3066fe0221
Bump checkov container version to 3.2.3058a618cc
Bump checkov container version to 3.2.304aa99f4e
Bump checkov container version to 3.2.303e6d0a8b
Bump checkov container version to 3.2.302416bcc9
Bump checkov container version to 3.2.301d3664c6
Bump checkov container version to 3.2.2987558bbd
Bump checkov container version to 3.2.2968f1d48b
Bump checkov container version to 3.2.295458c41d
Bump checkov container version to 3.2.294Updates
github/codeql-action
from 3.27.4 to 3.27.5Release notes
Sourced from github/codeql-action's releases.
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
f09c1c0
Merge pull request #2616 from github/update-v3.27.5-a6c8729a567b73ea
Update changelog for v3.27.5a6c8729
Merge pull request #2614 from github/marcogario/per-platform-proxy8f3b487
Start-proxy: Fetch OS specific binarycba5fb5
Merge pull request #2613 from github/dependabot/npm_and_yarn/npm_and_yarn-018...e782c3a
Merge pull request #2612 from github/angelapwen/report-linux-runner-releasedb67881
Update checked-in dependenciesecde4d2
Bump cross-spawn from 7.0.3 to 7.0.6 in the npm_and_yarn groupe3c67a0
Merge pull request #2610 from github/dependabot/npm_and_yarn/npm-d2ca52e617f9ada54
Telemetry: report OS release for GitHub-hosted Linux runnersUpdates
checkmarx/kics-github-action
from 2.1.2 to 2.1.3Release notes
Sourced from checkmarx/kics-github-action's releases.
Commits
9446974
Merge pull request #120 from Checkmarx/cx-monicac-update-kics-version517f0f8
refactor:updates kics version4c1b96b
Update README.mdUpdates
zgosalvez/github-actions-ensure-sha-pinned-actions
from 3.0.13 to 3.0.16Release notes
Sourced from zgosalvez/github-actions-ensure-sha-pinned-actions's releases.
Commits
38608ef
Bump zgosalvez/github-actions-get-action-runs-using-version (#193)4b7d01a
Bump actions/cache from 4.0.2 to 4.1.2 (#194)82c8ef0
Bump actions/setup-node from 4.0.4 to 4.1.0 (#192)ad9954c
Bump actions/checkout from 4.2.0 to 4.2.2 (#195)ed00f72
Bump yaml from 2.5.1 to 2.6.0 (#191)ba57c69
Bump eslint from 9.12.0 to 9.13.0 (#190)40ba2d5
Bump@actions/core
from 1.10.1 to 1.11.1 (#189)82e22ce
Bump actions/setup-node from 4.0.3 to 4.0.4 (#187)54b8b18
Bump actions/checkout from 4.1.7 to 4.2.0 (#185)856da4c
Bump zgosalvez/github-actions-get-action-runs-using-version (#186)Updates
Alfresco/alfresco-build-tools
from 7.1.0 to 8.4.0Release notes
Sourced from Alfresco/alfresco-build-tools's releases.
... (truncated)
Commits
a0837df
Release v8.4.0df9be3d
AAE-28088 Skip tests during PR draft (#811)24d3d12
Release v8.3.1ff7a2bd
AAE-26244 ECR Docker image URL in output (#803)d2f24da
Bump github/codeql-action from 3.27.0 to 3.27.1 in /.github/actions/docker-bu...d02b5ce
Bump pipenv from 2024.3.1 to 2024.4.0 in /.github/actions/pipenv (#812)57af739
Bump anchore/scan-action from 5.2.0 to 5.2.1 in /.github/actions/docker-build...185cdef
Bump updatecli/updatecli-action from 2.68.0 to 2.70.0 (#814)900580f
Release v8.3.059a39f5
OPSEXP-2656 Add slack file upload composite action (#808)Updates
updatecli/updatecli-action
from 2.68.0 to 2.70.0Release notes
Sourced from updatecli/updatecli-action's releases.
Commits
704a645
Bump updatecli version to v0.86.1 (#570)f54a34a
Bump "eslint" package version (#562)4fb893b
Bump "@types/jest
" package version (#569)de26c18
Bump "@types/node
" package version (#563)6d1ba47
chore(deps): Bump actions/setup-node from 4.0.4 to 4.1.0 (#567)efb5edc
Bump updatecli version to v0.86.0 (#568)3395b04
Bump updatecli version to v0.85.0 (#566)0ef1b66
Bump updatecli version to v0.86.0-rc.1 (#565)c29dd12
Bump updatecli version to v0.85.0 (#558)5591328
deps(updatecli/policies): bump all policies (#559)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions