Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@renovate-bot
Copy link
Contributor

@renovate-bot renovate-bot commented Jun 17, 2025

This PR contains the following updates:

Package Type Update Change
actions/cache action minor v4.2.3 -> v4.3.0
actions/checkout action minor v4.2.2 -> v4.3.0
actions/create-github-app-token action minor v2.0.6 -> v2.1.4
actions/github-script action minor v7.0.1 -> v7.1.0
docker/login-action action minor v3.4.0 -> v3.6.0
google/osv-scanner-action action minor v2.0.2 -> v2.2.3
saadmk11/github-actions-version-updater action minor v0.8.1 -> v0.9.0
softprops/action-gh-release action minor v2.2.2 -> v2.4.1

Release Notes

actions/cache (actions/cache)

v4.3.0

Compare Source

What's Changed
New Contributors

Full Changelog: actions/cache@v4...v4.3.0

v4.2.4

Compare Source

What's Changed
New Contributors

Full Changelog: actions/cache@v4...v4.2.4

actions/checkout (actions/checkout)

v4.3.0

Compare Source

What's Changed
New Contributors

Full Changelog: actions/checkout@v4...v4.3.0

actions/create-github-app-token (actions/create-github-app-token)

v2.1.4

Compare Source

Bug Fixes

v2.1.3

Compare Source

Bug Fixes
  • deps: bump undici from 7.8.0 to 7.10.0 in the production-dependencies group (#​254) (f3d5ec2)

v2.1.2

Compare Source

Bug Fixes

v2.1.1

Compare Source

Bug Fixes

v2.1.0

Compare Source

Features
actions/github-script (actions/github-script)

v7.1.0

Compare Source

What's Changed

New Contributors

Full Changelog: actions/github-script@v7...v7.1.0

docker/login-action (docker/login-action)

v3.6.0

Compare Source

Full Changelog: docker/login-action@v3.5.0...v3.6.0

v3.5.0

Compare Source

Full Changelog: docker/login-action@v3.4.0...v3.5.0

google/osv-scanner-action (google/osv-scanner-action)

v2.2.3

Compare Source

What's Changed

Full Changelog: google/osv-scanner-action@v2.2.2...v2.2.3

v2.2.2

Compare Source

This updates OSV-Scanner to v2.2.2.

What's Changed

Full Changelog: google/osv-scanner-action@v2.2.1...v2.2.2

v2.2.1

Compare Source

What's Changed

OSV-Scanner now supports all OSV-Scalibr features behind experimental flags (--experimental-plugins, see details here)!

Features:
Fixes:
  • Bug #​2141 Fix OSV-Scanner json scans not matching with correct ecosystem.
  • Bug #​2084 Show absolute paths when scanning containers.
  • Bug #​2126 Log and preserve package count before continuing on db error.
  • Bug #​2095 Pass through plugin capabilities correctly.
  • Bug #​2051 Properly flag if running on Linux or Mac OSs for plugin compatibility.
  • Bug #​2072 Add missing "text" property in description fields.
  • Bug #​2068 Change links in output to go to the specific vulnerability page instead of the list page.
  • Bug #​2064 Fix SARIF v3 output to include results.
  • Bug #​2151 Filter by ecosystem before querying.
API Changes:

[!WARNING]
This release was originally incorrectly pointing to the bugged v2.2.0 osv-scanner release, it has now been retagged to the correct v2.2.1 release.

v2.1.0

Compare Source

What's Changed

Full Changelog: google/osv-scanner-action@v2.0.3...v2.1.0

v2.0.3

Compare Source

Update to use osv-scanner v2.0.3

Notable changes:

  • There's now a flag --allow-no-lockfiles you can pass to osv-scanner to avoid getting an error when running against a repo with no lockfiles.
  • We no longer ignore general errors when they occur on osv-scanner-action, and will fail the workflow (e.g. invalid flags passed in)
saadmk11/github-actions-version-updater (saadmk11/github-actions-version-updater)

v0.9.0

Compare Source

  • #​92: [pre-commit.ci] pre-commit autoupdate
  • #​100: Update README.md - update checkout versions
  • #​106: Fix the actions enclosed in quotes are not updated
  • #​115: Base on 3.12-slim-bullseye
  • #​116: Update changelog-ci version
softprops/action-gh-release (softprops/action-gh-release)

v2.4.1

Compare Source

What's Changed

Other Changes 🔄
  • fix(util): support brace expansion globs containing commas in parseInputFiles by @​Copilot in #​672
  • fix: gracefully fallback to body when body_path cannot be read by @​Copilot in #​671

Full Changelog: softprops/action-gh-release@v2...v2.4.1

v2.4.0

Compare Source

What's Changed

Exciting New Features 🎉
Other Changes 🔄

Full Changelog: softprops/action-gh-release@v2.3.4...v2.4.0

v2.3.4

Compare Source

What's Changed

Bug fixes 🐛
Other Changes 🔄

Full Changelog: softprops/action-gh-release@v2...v2.3.4

v2.3.3

Compare Source

What's Changed

Exciting New Features 🎉
Other Changes 🔄
  • dependency updates

New Contributors

Full Changelog: softprops/action-gh-release@v2...v2.3.3

v2.3.2

Compare Source

  • fix: revert fs readableWebStream change

v2.3.1

Compare Source

What's Changed

Bug fixes 🐛

New Contributors

Full Changelog: softprops/action-gh-release@v2.3.0...v2.3.1

v2.3.0

Compare Source

  • Migrate from jest to vitest
  • Replace mime with mime-types
  • Bump to use node 24
  • Dependency updates

Full Changelog: softprops/action-gh-release@v2.2.2...v2.3.0


Configuration

📅 Schedule: Branch creation - "after 2am on monday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@forking-renovate forking-renovate bot added the team:VM Assigned to OTP team VM label Jun 17, 2025
@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

@garazdawi garazdawi removed their assignment Jun 17, 2025
@github-actions
Copy link
Contributor

github-actions bot commented Jun 17, 2025

CT Test Results

  1 files   11 suites   3m 58s ⏱️
 93 tests  91 ✅ 2 💤 0 ❌
109 runs  107 ✅ 2 💤 0 ❌

Results for commit f821456.

♻️ This comment has been updated with latest results.

To speed up review, make sure that you have read Contributing to Erlang/OTP and that all checks pass.

See the TESTING and DEVELOPMENT HowTo guides for details about how to run test locally.

Artifacts

// Erlang/OTP Github Action Bot

# Only needs to read contents
contents: read
uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@e69cc6c86b31f1e7e23935bbe7031b50e51082de" # ratchet:google/osv-scanner-action/.github/workflows/[email protected].2
uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@e69cc6c86b31f1e7e23935bbe7031b50e51082de" # ratchet:google/osv-scanner-action/.github/workflows/[email protected].3"
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I do not think this is correct, it should be this one
google/osv-scanner-action@40a8940

@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 2 times, most recently from 2d9fb38 to e6c20f3 Compare July 15, 2025 11:42
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch from e6c20f3 to 6390353 Compare July 28, 2025 14:04
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 7 times, most recently from 33de957 to a6c5514 Compare August 11, 2025 11:37
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch from a6c5514 to 2d99f2d Compare August 11, 2025 17:23
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch from 2d99f2d to b6a4f3c Compare August 27, 2025 04:49
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 2 times, most recently from 15d52f9 to 456c7a6 Compare September 7, 2025 05:14
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 2 times, most recently from c4f8b50 to 5fca42f Compare September 13, 2025 04:47
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 3 times, most recently from 431074c to 7d0c2e3 Compare October 1, 2025 07:42
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch 2 times, most recently from 498e167 to c99cf47 Compare October 7, 2025 06:06
@renovate-bot renovate-bot force-pushed the renovate/maint-26-github-actions branch from c99cf47 to f821456 Compare October 11, 2025 17:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

team:VM Assigned to OTP team VM

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants