Skip to content

Commit 88e5ffc

Browse files
build(deps): bump the actions group across 1 directory with 5 updates (#400)
Bumps the actions group with 5 updates in the / directory: | Package | From | To | | --- | --- | --- | | [actions/cache](https://github.com/actions/cache) | `5.0.5` | `6.1.0` | | [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv) | `8.2.0` | `8.3.0` | | [actions/setup-python](https://github.com/actions/setup-python) | `6.2.0` | `6.3.0` | | [cross-platform-actions/action](https://github.com/cross-platform-actions/action) | `1.2.0` | `1.3.0` | | [docker/setup-qemu-action](https://github.com/docker/setup-qemu-action) | `4.1.0` | `4.2.0` | Updates `actions/cache` from 5.0.5 to 6.1.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/cache/releases">actions/cache's releases</a>.</em></p> <blockquote> <h2>v6.1.0</h2> <h2>What's Changed</h2> <ul> <li>Bump <code>@​actions/cache</code> to v6.1.0 - handle read-only cache access by <a href="https://github.com/jasongin"><code>@​jasongin</code></a> in <a href="https://redirect.github.com/actions/cache/pull/1768">actions/cache#1768</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/cache/compare/v6...v6.1.0">https://github.com/actions/cache/compare/v6...v6.1.0</a></p> <h2>v6.0.0</h2> <h2>What's Changed</h2> <ul> <li>Update packages, migrate to ESM by <a href="https://github.com/Samirat"><code>@​Samirat</code></a> in <a href="https://redirect.github.com/actions/cache/pull/1760">actions/cache#1760</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/cache/compare/v5...v6.0.0">https://github.com/actions/cache/compare/v5...v6.0.0</a></p> <h2>v5.1.0</h2> <h2>What's Changed</h2> <ul> <li>Bump <code>@​actions/cache</code> to v5.1.0 - handle read-only cache access by <a href="https://github.com/jasongin"><code>@​jasongin</code></a> in <a href="https://redirect.github.com/actions/cache/pull/1775">actions/cache#1775</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/cache/compare/v5...v5.1.0">https://github.com/actions/cache/compare/v5...v5.1.0</a></p> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/actions/cache/blob/main/RELEASES.md">actions/cache's changelog</a>.</em></p> <blockquote> <h3>6.1.0</h3> <ul> <li>Bump <code>@actions/cache</code> to v6.1.0 to pick up <a href="https://redirect.github.com/actions/toolkit/pull/2435">actions/toolkit#2435 Handle cache write error due to read-only token</a></li> <li>Switch redundant &quot;Cache save failed&quot; warning to debug log in save-only</li> </ul> <h3>6.0.0</h3> <ul> <li>Updated <code>@actions/cache</code> to ^6.0.1, <code>@actions/core</code> to ^3.0.1, <code>@actions/exec</code> to ^3.0.0, <code>@actions/io</code> to ^3.0.2</li> <li>Migrated to ESM module system</li> <li>Upgraded Jest to v30 and test infrastructure to be ESM compatible</li> </ul> <h3>5.0.4</h3> <ul> <li>Bump <code>minimatch</code> to v3.1.5 (fixes ReDoS via globstar patterns)</li> <li>Bump <code>undici</code> to v6.24.1 (WebSocket decompression bomb protection, header validation fixes)</li> <li>Bump <code>fast-xml-parser</code> to v5.5.6</li> </ul> <h3>5.0.3</h3> <ul> <li>Bump <code>@actions/cache</code> to v5.0.5 (Resolves: <a href="https://github.com/actions/cache/security/dependabot/33">https://github.com/actions/cache/security/dependabot/33</a>)</li> <li>Bump <code>@actions/core</code> to v2.0.3</li> </ul> <h3>5.0.2</h3> <ul> <li>Bump <code>@actions/cache</code> to v5.0.3 <a href="https://redirect.github.com/actions/cache/pull/1692">#1692</a></li> </ul> <h3>5.0.1</h3> <ul> <li>Update <code>@azure/storage-blob</code> to <code>^12.29.1</code> via <code>@actions/cache@5.0.1</code> <a href="https://redirect.github.com/actions/cache/pull/1685">#1685</a></li> </ul> <h3>5.0.0</h3> <blockquote> <p>[!IMPORTANT] <code>actions/cache@v5</code> runs on the Node.js 24 runtime and requires a minimum Actions Runner version of <code>2.327.1</code>. If you are using self-hosted runners, ensure they are updated before upgrading.</p> </blockquote> <h3>4.3.0</h3> <ul> <li>Bump <code>@actions/cache</code> to <a href="https://redirect.github.com/actions/toolkit/pull/2132">v4.1.0</a></li> </ul> <h3>4.2.4</h3> <ul> <li>Bump <code>@actions/cache</code> to v4.0.5</li> </ul> <h3>4.2.3</h3> <ul> <li>Bump <code>@actions/cache</code> to v4.0.3 (obfuscates SAS token in debug logs for cache entries)</li> </ul> <h3>4.2.2</h3> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/cache/commit/55cc8345863c7cc4c66a329aec7e433d2d1c52a9"><code>55cc834</code></a> Merge pull request <a href="https://redirect.github.com/actions/cache/issues/1768">#1768</a> from jasongin/readonly-cache</li> <li><a href="https://github.com/actions/cache/commit/d8cd72f230726cdf4457ebb61ec1b593a8d12337"><code>d8cd72f</code></a> Bump <code>@​actions/cache</code> to v6.1.0 - handle cache write error due to RO token</li> <li><a href="https://github.com/actions/cache/commit/2c8a9bd7457de244a408f35966fab2fb45fda9c8"><code>2c8a9bd</code></a> Merge pull request <a href="https://redirect.github.com/actions/cache/issues/1760">#1760</a> from actions/samirat/esm_migration_and_package_update</li> <li><a href="https://github.com/actions/cache/commit/e9b91fdc3fea7d79165fceb79042ef45c2d51023"><code>e9b91fd</code></a> Prettier fixes</li> <li><a href="https://github.com/actions/cache/commit/e4884b8ff7f92ef6b52c79eda480bbc86e685adb"><code>e4884b8</code></a> Rebuild dist</li> <li><a href="https://github.com/actions/cache/commit/10baf0191a3c426ea0fa4a3253a5c04233b6e18f"><code>10baf01</code></a> Fixed licenses</li> <li><a href="https://github.com/actions/cache/commit/e39b386c9004d72a15d864ade8c0b3a702d47a37"><code>e39b386</code></a> Fix test mock return order</li> <li><a href="https://github.com/actions/cache/commit/b6928203372a8571ff984c0c883ef3a1adfb0c06"><code>b692820</code></a> PR feedback</li> <li><a href="https://github.com/actions/cache/commit/60749128a44d25d3c520a489e576380cf00ff3f1"><code>6074912</code></a> Rebuild dist bundles as ESM to match type:module</li> <li><a href="https://github.com/actions/cache/commit/5a912e8b4af820fa082a0e75cfd2c782f8fbfe0e"><code>5a912e8</code></a> Fix lint and jest issues</li> <li>Additional commits viewable in <a href="https://github.com/actions/cache/compare/v5.0.5...v6.1.0">compare view</a></li> </ul> </details> <br /> Updates `astral-sh/setup-uv` from 8.2.0 to 8.3.0 <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/astral-sh/setup-uv/commit/d31148d669074a8d0a63714ba94f3201e7020bc3"><code>d31148d</code></a> Strip environment markers from detected uv dependency pins (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/938">#938</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/17c398959b4611a88929fabb5c563a8e43a0ff60"><code>17c3989</code></a> Fix cache keys for Python version ranges (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/937">#937</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/3cc3c11fdf511cab39136b7c946d973d4ad0df20"><code>3cc3c11</code></a> chore(deps): roll up Dependabot updates (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/936">#936</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/9225f843d7a9f80a757cf25ef48901fda69ba4bc"><code>9225f84</code></a> chore(deps): bump release-drafter/release-drafter from 7.3.1 to 7.4.0 (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/924">#924</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/fc16fa3bbf37d2816834f76a1fe25d33564eaa34"><code>fc16fa3</code></a> chore(deps): bump actions/checkout from 6.0.2 to 7.0.0 (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/926">#926</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/a1a7345c8ef5d6d3b18c6f1c247244c19f1d878c"><code>a1a7345</code></a> ci: call docs update workflow from release (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/933">#933</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/a5e9cbfd5f946647f478460490fa497b0a732e63"><code>a5e9cbf</code></a> docs: update version references to v8.2.0 (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/932">#932</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/c5680ec91f7b9b91406fab4ded5d45245abf7b67"><code>c5680ec</code></a> chore: update known checksums for 0.11.26 (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/930">#930</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/c86fe4ef1f4a79845e6d465628d733650f6c41d8"><code>c86fe4e</code></a> Add a threat model for setup-uv (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/923">#923</a>)</li> <li><a href="https://github.com/astral-sh/setup-uv/commit/224c887d488ab24d8a1b49f10416d6ad6b6ca71d"><code>224c887</code></a> chore: update known checksums for 0.11.25 (<a href="https://redirect.github.com/astral-sh/setup-uv/issues/929">#929</a>)</li> <li>Additional commits viewable in <a href="https://github.com/astral-sh/setup-uv/compare/fac544c07dec837d0ccb6301d7b5580bf5edae39...d31148d669074a8d0a63714ba94f3201e7020bc3">compare view</a></li> </ul> </details> <br /> Updates `actions/setup-python` from 6.2.0 to 6.3.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/setup-python/releases">actions/setup-python's releases</a>.</em></p> <blockquote> <h2>v6.3.0</h2> <h2>What's Changed</h2> <h3>Enhancement</h3> <ul> <li>Add RHEL support and include Linux distro in cache keys by <a href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1323">actions/setup-python#1323</a></li> <li>Fix pip cache error handling on Windows by <a href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1040">actions/setup-python#1040</a></li> </ul> <h3>Dependency update</h3> <ul> <li>Upgrade minimatch from 3.1.2 to 3.1.5 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1281">actions/setup-python#1281</a></li> <li>Upgrade actions dependencies by <a href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1303">actions/setup-python#1303</a></li> <li>Upgrade <code>@​actions/cache</code> to 5.1.0, log cache write denied by <a href="https://github.com/jasongin"><code>@​jasongin</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1324">actions/setup-python#1324</a></li> <li>Upgrade dependency versions and test workflow configuration by <a href="https://github.com/HarithaVattikuti"><code>@​HarithaVattikuti</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1322">actions/setup-python#1322</a></li> </ul> <h3>Documentation</h3> <ul> <li>Update advanced-usage.md by <a href="https://github.com/Dunky-Z"><code>@​Dunky-Z</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/811">actions/setup-python#811</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-python/pull/1303">actions/setup-python#1303</a></li> <li><a href="https://github.com/jasongin"><code>@​jasongin</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-python/pull/1324">actions/setup-python#1324</a></li> <li><a href="https://github.com/Dunky-Z"><code>@​Dunky-Z</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-python/pull/811">actions/setup-python#811</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/setup-python/compare/v6.2.0...v6.3.0">https://github.com/actions/setup-python/compare/v6.2.0...v6.3.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/setup-python/commit/ece7cb06caefa5fff74198d8649806c4678c61a1"><code>ece7cb0</code></a> Fix pip cache error handling on Windows. (<a href="https://redirect.github.com/actions/setup-python/issues/1040">#1040</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/1d18d7af5f767c1259ede05a0a5bcc30f3dcf1cf"><code>1d18d7a</code></a> Update advanced-usage.md (<a href="https://redirect.github.com/actions/setup-python/issues/811">#811</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/d2b357a6a3a3687dd6781a416c0d24fcfd68660e"><code>d2b357a</code></a> Update dependency versions and test workflow configuration (<a href="https://redirect.github.com/actions/setup-python/issues/1322">#1322</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/8f639b1e75c1048640734b2bb46e22cecf136982"><code>8f639b1</code></a> Merge pull request <a href="https://redirect.github.com/actions/setup-python/issues/1324">#1324</a> from jasongin/update-actions-cache-5.1.0</li> <li><a href="https://github.com/actions/setup-python/commit/6731c2ba87f530c26324d128c8fdd53499a4d4b0"><code>6731c2b</code></a> Resolve high-severity audit issues</li> <li><a href="https://github.com/actions/setup-python/commit/0cb1a84326b90186fcd211036c65b42819794c87"><code>0cb1a84</code></a> Add RHEL support and include Linux distro in cache keys (<a href="https://redirect.github.com/actions/setup-python/issues/1323">#1323</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/dc6eab6194394e0119523369788b507096f923e2"><code>dc6eab6</code></a> Update dist</li> <li><a href="https://github.com/actions/setup-python/commit/6f4b74bfa2f520a380a620de3615c0dac427f4d3"><code>6f4b74b</code></a> Strict equality</li> <li><a href="https://github.com/actions/setup-python/commit/fa8bde1a9cc6347d06948d66bcd68c598b79eaea"><code>fa8bde1</code></a> Bump <code>@​actions/cache</code> to 5.1.0, log cache write denied</li> <li><a href="https://github.com/actions/setup-python/commit/c8813ba1bc76ebf779b911ad8ffccbf2e449cb48"><code>c8813ba</code></a> Upgrade <a href="https://github.com/actions"><code>@​actions</code></a> dependencies and update licenses (<a href="https://redirect.github.com/actions/setup-python/issues/1303">#1303</a>)</li> <li>Additional commits viewable in <a href="https://github.com/actions/setup-python/compare/v6.2.0...v6.3.0">compare view</a></li> </ul> </details> <br /> Updates `cross-platform-actions/action` from 1.2.0 to 1.3.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/cross-platform-actions/action/releases">cross-platform-actions/action's releases</a>.</em></p> <blockquote> <h2>Cross Platform Action 1.3.0</h2> <h3>Added</h3> <ul> <li> <p>Add support for FreeBSD 15.1 (<a href="https://redirect.github.com/cross-platform-actions/action/issues/153">#153</a>)</p> </li> <li> <p>Add a <code>--environment-variables</code> post-flag to the <code>cpa.sh</code> custom shell for forwarding additional environment variables to the VM on a per-step basis, without having to declare them on the <code>Start VM</code> step via the <code>environment_variables</code> input (<a href="https://redirect.github.com/cross-platform-actions/action/issues/145">#145</a>):</p> <pre lang="yaml"><code>- name: Run a command with extra environment variables shell: cpa.sh {0} --environment-variables MY_ENV1 MY_ENV2 env: MY_ENV1: value1 MY_ENV2: value2 run: echo &quot;$MY_ENV1 $MY_ENV2&quot; </code></pre> </li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/cross-platform-actions/action/blob/master/changelog.md">cross-platform-actions/action's changelog</a>.</em></p> <blockquote> <h1>Changelog</h1> <p>All notable changes to this project will be documented in this file.</p> <p>The format is based on <a href="https://keepachangelog.com/en/1.0.0/">Keep a Changelog</a>, and this project adheres to <a href="https://semver.org/spec/v2.0.0.html">Semantic Versioning</a>.</p> <h2>[Unreleased]</h2> <h2>[1.3.0] - 2026-06-22</h2> <h3>Added</h3> <ul> <li> <p>Add support for FreeBSD 15.1 (<a href="https://redirect.github.com/cross-platform-actions/action/issues/153">#153</a>)</p> </li> <li> <p>Add a <code>--environment-variables</code> post-flag to the <code>cpa.sh</code> custom shell for forwarding additional environment variables to the VM on a per-step basis, without having to declare them on the <code>Start VM</code> step via the <code>environment_variables</code> input (<a href="https://redirect.github.com/cross-platform-actions/action/issues/145">#145</a>):</p> <pre lang="yaml"><code>- name: Run a command with extra environment variables shell: cpa.sh {0} --environment-variables MY_ENV1 MY_ENV2 env: MY_ENV1: value1 MY_ENV2: value2 run: echo &quot;$MY_ENV1 $MY_ENV2&quot; </code></pre> </li> </ul> <h2>[1.2.0] - 2026-05-30</h2> <h3>Added</h3> <ul> <li>Add support for OpenBSD 7.9 (<a href="https://redirect.github.com/cross-platform-actions/action/issues/144">#144</a>)</li> </ul> <h3>Changed</h3> <ul> <li>Updated QEMU to 10.2.3</li> </ul> <h3>Security</h3> <ul> <li>Bump resources to a release that use immutable releases, providing integrity verification for downloaded artifacts (<a href="https://redirect.github.com/cross-platform-actions/action/issues/147">#147</a>)</li> </ul> <h2>[1.1.0] - 2026-05-17</h2> <h3>Added</h3> <ul> <li> <p>Add support for DragonFly BSD (<a href="https://redirect.github.com/cross-platform-actions/action/issues/19">#19</a>)</p> </li> <li> <p>Add support for MidnightBSD (<a href="https://redirect.github.com/cross-platform-actions/action/issues/102">#102</a>)</p> </li> <li> <p>Add support for FreeBSD 14.4 (<a href="https://redirect.github.com/cross-platform-actions/action/issues/122">#122</a>)</p> </li> <li> <p>Add support for OmniOS r151058</p> </li> <li> <p>New syntax for multiple steps (<a href="https://redirect.github.com/cross-platform-actions/action/issues/83">#83</a>). Instead of invoking the action multiple times it's now possible to use a custom shell when running commands:</p> <pre lang="yaml"><code></code></pre> </li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/cross-platform-actions/action/commit/5ea7e8e4677bd726033a10b094ba1c5762b15dee"><code>5ea7e8e</code></a> Release 1.3.0</li> <li><a href="https://github.com/cross-platform-actions/action/commit/bbc9473f11564d8beb142661cc7f1624bf71663f"><code>bbc9473</code></a> Add --environment-variables flag to the cpa.sh custom shell</li> <li><a href="https://github.com/cross-platform-actions/action/commit/e46047887297d10cb3c84f99651ebb3848181396"><code>e460478</code></a> Add support for FreeBSD 15.1</li> <li><a href="https://github.com/cross-platform-actions/action/commit/1726cd295cf25c68628bf5cb345c0c41d9bc593f"><code>1726cd2</code></a> Merge pull request <a href="https://redirect.github.com/cross-platform-actions/action/issues/148">#148</a> from cross-platform-actions/dependabot/github_actions...</li> <li><a href="https://github.com/cross-platform-actions/action/commit/e63a7f2c41fea64d34eb32df9e67f80db801ecc7"><code>e63a7f2</code></a> Bump actions/checkout from 6 to 6.0.2 in the gha-dependencies group</li> <li><a href="https://github.com/cross-platform-actions/action/commit/b6a4c35056840d53fa18aa198844fe4b43e3163d"><code>b6a4c35</code></a> [no ci] Fix incorrect changelog entry</li> <li>See full diff in <a href="https://github.com/cross-platform-actions/action/compare/be3d7e9ff5c8770b9c51b1a8c8c5446e1cad7cf9...5ea7e8e4677bd726033a10b094ba1c5762b15dee">compare view</a></li> </ul> </details> <br /> Updates `docker/setup-qemu-action` from 4.1.0 to 4.2.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/docker/setup-qemu-action/releases">docker/setup-qemu-action's releases</a>.</em></p> <blockquote> <h2>v4.2.0</h2> <ul> <li>Preserve names in esbuild bundle by <a href="https://github.com/crazy-max"><code>@​crazy-max</code></a> in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/311">docker/setup-qemu-action#311</a></li> <li>Bump <code>@​actions/core</code> from 3.0.0 to 3.0.1 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/295">docker/setup-qemu-action#295</a></li> <li>Bump <code>@​docker/actions-toolkit</code> from 0.91.0 to 0.92.0 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/315">docker/setup-qemu-action#315</a></li> <li>Bump <code>@​sigstore/core</code> from 3.1.0 to 3.2.1 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/312">docker/setup-qemu-action#312</a></li> <li>Bump js-yaml from 4.1.1 to 4.2.0 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/310">docker/setup-qemu-action#310</a></li> <li>Bump tmp from 0.2.6 to 0.2.7 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/304">docker/setup-qemu-action#304</a></li> <li>Bump undici from 6.26.0 to 6.27.0 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/308">docker/setup-qemu-action#308</a></li> <li>Bump vite from 7.3.2 to 7.3.6 in <a href="https://redirect.github.com/docker/setup-qemu-action/pull/307">docker/setup-qemu-action#307</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/docker/setup-qemu-action/compare/v4.1.0...v4.2.0">https://github.com/docker/setup-qemu-action/compare/v4.1.0...v4.2.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/docker/setup-qemu-action/commit/96fe6ef7f33517b61c61be40b68a1882f3264fb8"><code>96fe6ef</code></a> Merge pull request <a href="https://redirect.github.com/docker/setup-qemu-action/issues/315">#315</a> from docker/dependabot/npm_and_yarn/docker/actions-to...</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/31f08d3fc9186dbe4b4550696f2e32e9aa7f9465"><code>31f08d3</code></a> [dependabot skip] chore: update generated content</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/4e7017a474d2cf3912bb0437f7fafec6d5fb6c52"><code>4e7017a</code></a> build(deps): bump <code>@​docker/actions-toolkit</code> from 0.91.0 to 0.92.0</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/0eca235293ca1939b58c082f69bdc981ccce8c94"><code>0eca235</code></a> Merge pull request <a href="https://redirect.github.com/docker/setup-qemu-action/issues/314">#314</a> from crazy-max/fix-yarn-preapprove-actions-toolkit</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/ea66a4130b037e7961e14a0e5b155836e797cced"><code>ea66a41</code></a> chore: allow actions-toolkit to bypass yarn age gate</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/451542b03ae7946b7082a398b11c8c315a0e4e80"><code>451542b</code></a> Merge pull request <a href="https://redirect.github.com/docker/setup-qemu-action/issues/308">#308</a> from docker/dependabot/npm_and_yarn/undici-6.27.0</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/532ae0057542ec2102e2d19e9feccf85f1f69013"><code>532ae00</code></a> [dependabot skip] chore: update generated content</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/b6f5af659afad3f9931b782668dee4595ae7e841"><code>b6f5af6</code></a> build(deps): bump undici from 6.26.0 to 6.27.0</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/cf96b86294b57480ac6d330bd177fca87eac95bc"><code>cf96b86</code></a> Merge pull request <a href="https://redirect.github.com/docker/setup-qemu-action/issues/304">#304</a> from docker/dependabot/npm_and_yarn/tmp-0.2.7</li> <li><a href="https://github.com/docker/setup-qemu-action/commit/f0ba643f78dc96bc931fb83e5dadc39628e10047"><code>f0ba643</code></a> [dependabot skip] chore: update generated content</li> <li>Additional commits viewable in <a href="https://github.com/docker/setup-qemu-action/compare/06116385d9baf250c9f4dcb4858b16962ea869c3...96fe6ef7f33517b61c61be40b68a1882f3264fb8">compare view</a></li> </ul> </details> <br /> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore <dependency name> major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore <dependency name> minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore <dependency name>` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore <dependency name>` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore <dependency name> <ignore condition>` will remove the ignore condition of the specified dependency and ignore conditions </details> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 26719de commit 88e5ffc

7 files changed

Lines changed: 20 additions & 20 deletions

File tree

.github/workflows/benchmark.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -49,7 +49,7 @@ jobs:
4949
ref: ${{ matrix.commit }}
5050
persist-credentials: false
5151
- name: Cache base ref build
52-
uses: actions/cache@v5.0.5
52+
uses: actions/cache@v6.1.0
5353
id: cache
5454
with:
5555
key: bin-cache-${{ hashFiles('cpp-linter/src/**', 'Cargo.toml', 'Cargo.lock', 'cpp-linter/Cargo.toml') }}
@@ -137,7 +137,7 @@ jobs:
137137
- name: Install nushell
138138
uses: hustcer/setup-nu@ccd5bb5426b05a32009c2ba967946231f3919c97 # v3.25
139139
- name: Install uv
140-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
140+
uses: astral-sh/setup-uv@d31148d669074a8d0a63714ba94f3201e7020bc3 # v8.3.0
141141

142142
- name: Run benchmark script
143143
working-directory: benchmark

.github/workflows/build-docs.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ jobs:
3838
persist-credentials: false
3939
- run: rustup update --no-self-update
4040
- name: Cache .cargo locked resources
41-
uses: actions/cache@v5.0.5
41+
uses: actions/cache@v6.1.0
4242
with:
4343
path: ~/.cargo
4444
key: ${{ runner.os }}-docs-cargo-${{ hashFiles('Cargo.lock') }}
@@ -56,12 +56,12 @@ jobs:
5656
with:
5757
persist-credentials: false
5858
- name: Cache .cargo locked resources
59-
uses: actions/cache/restore@v5.0.5
59+
uses: actions/cache/restore@v6.1.0
6060
with:
6161
path: ~/.cargo
6262
key: ${{ runner.os }}-docs-cargo-${{ hashFiles('Cargo.lock') }}
6363
- name: Install uv
64-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
64+
uses: astral-sh/setup-uv@d31148d669074a8d0a63714ba94f3201e7020bc3 # v8.3.0
6565
- name: Install cargo-binstall
6666
uses: cargo-bins/cargo-binstall@732870f031d2fb36309d0deaf36abcc704a7be65 # v1.20.1
6767
env:
@@ -92,12 +92,12 @@ jobs:
9292
persist-credentials: false
9393
- run: rustup update --no-self-update
9494
- name: Cache .cargo locked resources
95-
uses: actions/cache/restore@v5.0.5
95+
uses: actions/cache/restore@v6.1.0
9696
with:
9797
path: ~/.cargo
9898
key: ${{ runner.os }}-docs-cargo-${{ hashFiles('Cargo.lock') }}
9999
- name: Install uv
100-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
100+
uses: astral-sh/setup-uv@d31148d669074a8d0a63714ba94f3201e7020bc3 # v8.3.0
101101
- name: Install cargo-binstall
102102
uses: cargo-bins/cargo-binstall@732870f031d2fb36309d0deaf36abcc704a7be65 # v1.20.1
103103
env:

.github/workflows/bump-n-release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -53,7 +53,7 @@ jobs:
5353
persist-credentials: true # needed for `git push`
5454
- name: Set up Python
5555
if: inputs.package == 'cpp-linter-py'
56-
uses: actions/setup-python@v6.2.0
56+
uses: actions/setup-python@v6.3.0
5757
with:
5858
python-version: 3.x
5959
- name: Install Node.js

.github/workflows/node-js-packaging.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -94,7 +94,7 @@ jobs:
9494
rustup update stable --no-self-update
9595
rustup target add ${{ matrix.settings.target }}
9696
- name: Cache cargo
97-
uses: actions/cache@v5.0.5 # zizmor: ignore[cache-poisoning]
97+
uses: actions/cache@v6.1.0 # zizmor: ignore[cache-poisoning]
9898
with:
9999
path: |
100100
~/.cargo/registry/index/
@@ -151,7 +151,7 @@ jobs:
151151
with:
152152
persist-credentials: false
153153
- name: setup FreeBSD VM
154-
uses: cross-platform-actions/action@be3d7e9ff5c8770b9c51b1a8c8c5446e1cad7cf9 # v1.2.0
154+
uses: cross-platform-actions/action@5ea7e8e4677bd726033a10b094ba1c5762b15dee # v1.3.0
155155
env:
156156
DEBUG: napi:*
157157
RUSTUP_IO_THREADS: 1
@@ -304,7 +304,7 @@ jobs:
304304
run: ls -R .
305305
shell: bash
306306
- name: Set up QEMU
307-
uses: docker/setup-qemu-action@06116385d9baf250c9f4dcb4858b16962ea869c3 # v4.1.0
307+
uses: docker/setup-qemu-action@96fe6ef7f33517b61c61be40b68a1882f3264fb8 # v4.2.0
308308
if: ${{ contains(matrix.target, 'armv7') }}
309309
with:
310310
platforms: all

.github/workflows/pre-commit-hooks.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ jobs:
2727
persist-credentials: false
2828
- run: rustup update
2929
- name: Cache .cargo locked resources
30-
uses: actions/cache@v5.0.5
30+
uses: actions/cache@v6.1.0
3131
with:
3232
path: ~/.cargo
3333
key: ${{ runner.os }}-cargo-${{ hashFiles('Cargo.lock') }}

.github/workflows/python-packaging.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -73,7 +73,7 @@ jobs:
7373
- uses: actions/checkout@v7.0.0
7474
with:
7575
persist-credentials: false
76-
- uses: actions/setup-python@v6.2.0
76+
- uses: actions/setup-python@v6.3.0
7777
with:
7878
python-version: '3.x'
7979
- name: Restore build script seed
@@ -111,7 +111,7 @@ jobs:
111111
- uses: actions/checkout@v7.0.0
112112
with:
113113
persist-credentials: false
114-
- uses: actions/setup-python@v6.2.0
114+
- uses: actions/setup-python@v6.3.0
115115
with:
116116
python-version: '3.x'
117117
architecture: ${{ matrix.platform.target }}
@@ -147,7 +147,7 @@ jobs:
147147
- uses: actions/checkout@v7.0.0
148148
with:
149149
persist-credentials: false
150-
- uses: actions/setup-python@v6.2.0
150+
- uses: actions/setup-python@v6.3.0
151151
with:
152152
python-version: '3.x'
153153
- name: Restore build script seed
@@ -173,7 +173,7 @@ jobs:
173173
- uses: actions/checkout@v7.0.0
174174
with:
175175
persist-credentials: false
176-
- uses: actions/setup-python@v6.2.0
176+
- uses: actions/setup-python@v6.3.0
177177
with:
178178
python-version: 3.x
179179
- name: Build sdist
@@ -201,7 +201,7 @@ jobs:
201201
merge-multiple: true
202202
- name: Setup Python
203203
if: ${{ !startsWith(github.ref, 'refs/tags/cpp-linter-py/v') }}
204-
uses: actions/setup-python@v6.2.0
204+
uses: actions/setup-python@v6.3.0
205205
with:
206206
python-version: 3.x
207207
- name: Check distributions

.github/workflows/run-dev-tests.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -71,12 +71,12 @@ jobs:
7171
env:
7272
GITHUB_TOKEN: ${{ github.token }}
7373

74-
- uses: actions/setup-python@v6.2.0
74+
- uses: actions/setup-python@v6.3.0
7575
with:
7676
python-version: 3.x
7777

7878
- name: Install uv
79-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
79+
uses: astral-sh/setup-uv@d31148d669074a8d0a63714ba94f3201e7020bc3 # v8.3.0
8080
with:
8181
enable-cache: true
8282
cache-dependency-glob: "uv.lock"
@@ -90,7 +90,7 @@ jobs:
9090
run: choco install ninja
9191

9292
- name: Cache .cargo locked resources
93-
uses: actions/cache@v5.0.5
93+
uses: actions/cache@v6.1.0
9494
with:
9595
path: ~/.cargo
9696
key: ${{ runner.os }}-tests-cargo-${{ hashFiles('Cargo.lock') }}

0 commit comments

Comments
 (0)