Skip to content

Commit b79808a

Browse files
chore(deps): Bump the github-actions group across 1 directory with 3 updates (#383)
Bumps the github-actions group with 3 updates in the / directory: [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action), [github/codeql-action](https://github.com/github/codeql-action) and [actions/upload-artifact](https://github.com/actions/upload-artifact). Updates `docker/setup-buildx-action` from 3.7.1 to 3.8.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@c47758b...6524bf6) Updates `github/codeql-action` from 3.27.6 to 3.28.0 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@aa57810...48ab28a) Updates `actions/upload-artifact` from 4.4.3 to 4.5.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@b4b15b8...6f51ac0) --- updated-dependencies: - dependency-name: docker/setup-buildx-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent ec667bb commit b79808a

File tree

3 files changed

+12
-12
lines changed

3 files changed

+12
-12
lines changed

.github/workflows/commit.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -66,7 +66,7 @@ jobs:
6666
uses: docker/setup-qemu-action@49b3bc8e6bdd4a60e6116a5414239cba5943d3cf # v3.2.0
6767

6868
- name: Set up Docker Buildx
69-
uses: docker/setup-buildx-action@c47758b77c9736f4b2ef4073d4d51994fabfe349 # v3.7.1
69+
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
7070

7171
- name: Install Hadolint
7272
uses: action-stars/install-tool-from-github-release@ece2623611b240002e0dd73a0d685505733122f6 # v0.2.4
@@ -87,7 +87,7 @@ jobs:
8787
hadolint --no-fail --format sarif ./${{ matrix.variant }}.dockerfile > ./hadolint-${{ matrix.variant }}.sarif
8888
8989
- name: Upload Hadolint SARIF report
90-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
90+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
9191
with:
9292
category: hadolint-${{ matrix.variant }}
9393
sarif_file: hadolint-${{ matrix.variant }}.sarif
@@ -151,7 +151,7 @@ jobs:
151151
echo "paths=${sbom_paths%,}" >> $GITHUB_OUTPUT
152152
153153
- name: Upload SBOM artifacts
154-
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
154+
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b # v4.5.0
155155
with:
156156
name: ${{ matrix.variant }}-sboms
157157
retention-days: 28
@@ -182,7 +182,7 @@ jobs:
182182
echo "path=${directory_path}" >> $GITHUB_OUTPUT
183183
184184
- name: Upload Grype SARIF report
185-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
185+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
186186
with:
187187
category: grype-${{ matrix.variant }}
188188
sarif_file: ${{ steps.grype.outputs.path }}

.github/workflows/pull-request.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -62,7 +62,7 @@ jobs:
6262
uses: docker/setup-qemu-action@49b3bc8e6bdd4a60e6116a5414239cba5943d3cf # v3.2.0
6363

6464
- name: Set up Docker Buildx
65-
uses: docker/setup-buildx-action@c47758b77c9736f4b2ef4073d4d51994fabfe349 # v3.7.1
65+
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
6666

6767
- name: Install Hadolint
6868
uses: action-stars/install-tool-from-github-release@ece2623611b240002e0dd73a0d685505733122f6 # v0.2.4
@@ -83,7 +83,7 @@ jobs:
8383
hadolint --no-fail --format sarif ./${{ matrix.variant }}.dockerfile > ./hadolint-${{ matrix.variant }}.sarif
8484
8585
- name: Upload Hadolint SARIF report
86-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
86+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
8787
with:
8888
category: hadolint-${{ matrix.variant }}
8989
sarif_file: hadolint-${{ matrix.variant }}.sarif
@@ -142,7 +142,7 @@ jobs:
142142
done
143143
144144
- name: Upload SBOM artifacts
145-
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
145+
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b # v4.5.0
146146
with:
147147
name: ${{ matrix.variant }}-sboms
148148
retention-days: 28
@@ -173,7 +173,7 @@ jobs:
173173
echo "path=${directory_path}" >> $GITHUB_OUTPUT
174174
175175
- name: Upload Grype SARIF report
176-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
176+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
177177
with:
178178
category: grype-${{ matrix.variant }}
179179
sarif_file: ${{ steps.grype.outputs.path }}

.github/workflows/release.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -61,7 +61,7 @@ jobs:
6161
uses: docker/setup-qemu-action@49b3bc8e6bdd4a60e6116a5414239cba5943d3cf # v3.2.0
6262

6363
- name: Set up Docker Buildx
64-
uses: docker/setup-buildx-action@c47758b77c9736f4b2ef4073d4d51994fabfe349 # v3.7.1
64+
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
6565

6666
- name: Install Hadolint
6767
uses: action-stars/install-tool-from-github-release@ece2623611b240002e0dd73a0d685505733122f6 # v0.2.4
@@ -82,7 +82,7 @@ jobs:
8282
hadolint --no-fail --format sarif ./${{ matrix.variant }}.dockerfile > ./hadolint-${{ matrix.variant }}.sarif
8383
8484
- name: Upload Hadolint SARIF report
85-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
85+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
8686
with:
8787
category: hadolint-${{ matrix.variant }}
8888
sarif_file: hadolint-${{ matrix.variant }}.sarif
@@ -149,7 +149,7 @@ jobs:
149149
echo "paths=${sbom_paths}" >> $GITHUB_OUTPUT
150150
151151
- name: Upload SBOM artifacts
152-
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
152+
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b # v4.5.0
153153
with:
154154
name: ${{ matrix.variant }}-sboms
155155
retention-days: 28
@@ -180,7 +180,7 @@ jobs:
180180
echo "path=${directory_path}" >> $GITHUB_OUTPUT
181181
182182
- name: Upload Grype SARIF report
183-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
183+
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
184184
with:
185185
category: grype-${{ matrix.variant }}
186186
sarif_file: ${{ steps.grype.outputs.path }}

0 commit comments

Comments
 (0)