From 4be0bcf4b02bbecb4ef533455d68bd1fba4cf1aa Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 10 Jan 2025 07:19:10 +0000 Subject: [PATCH 1/2] Bump actions/upload-artifact from 3 to 4 Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 3 to 4. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/v3...v4) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/ci.yml | 2 +- .github/workflows/scorecards.yml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index d4c8baf..bafbddb 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -131,7 +131,7 @@ jobs: - name: Add copyright/licence notice. run: | cd-license-files - - uses: actions/upload-artifact@v3 + - uses: actions/upload-artifact@v4 with: name: spdx path: ./spdx-tmp diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index e1ba06a..41ae78e 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -59,7 +59,7 @@ jobs: # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF # format to the repository Actions tab. - name: "Upload artifact" - uses: actions/upload-artifact@3cea5372237819ed00197afe530f5a7ea3e805c8 # v3.1.0 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3.2.1 with: name: SARIF file path: results.sarif From 3ce899e3656c5782058b4ef89ada09784afafdcf Mon Sep 17 00:00:00 2001 From: Monty Bot Date: Fri, 10 Jan 2025 07:23:31 +0000 Subject: [PATCH 2/2] =?UTF-8?q?=F0=9F=93=B0=20Automatic=20changes=20?= =?UTF-8?q?=E2=9A=99=20Adding=20news=20file?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- news/20250110072331.bugfix | 1 + 1 file changed, 1 insertion(+) create mode 100644 news/20250110072331.bugfix diff --git a/news/20250110072331.bugfix b/news/20250110072331.bugfix new file mode 100644 index 0000000..517cae4 --- /dev/null +++ b/news/20250110072331.bugfix @@ -0,0 +1 @@ +Dependency upgrade: upload-artifact-4