chore(deps): bump the actions group across 1 directory with 6 updates - #557
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
Bumps the actions group with 6 updates in the /.github/workflows directory: | Package | From | To | | --- | --- | --- | | [github/codeql-action/init](https://github.com/github/codeql-action) | `4.37.1` | `4.37.7` | | [github/codeql-action/autobuild](https://github.com/github/codeql-action) | `4.37.1` | `4.37.7` | | [github/codeql-action/analyze](https://github.com/github/codeql-action) | `4.37.1` | `4.37.7` | | [actions/stale](https://github.com/actions/stale) | `10.4.0` | `11.0.0` | | [Azure/action-release-workflows/.github/workflows/release_js_project.yaml](https://github.com/azure/action-release-workflows) | `1.0.3` | `1.1.0` | | [azure/login](https://github.com/azure/login) | `3.0.0` | `3.0.1` | Updates `github/codeql-action/init` from 4.37.1 to 4.37.7 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@7188fc3...ff2f1c6) Updates `github/codeql-action/autobuild` from 4.37.1 to 4.37.7 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@7188fc3...ff2f1c6) Updates `github/codeql-action/analyze` from 4.37.1 to 4.37.7 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@7188fc3...ff2f1c6) Updates `actions/stale` from 10.4.0 to 11.0.0 - [Release notes](https://github.com/actions/stale/releases) - [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md) - [Commits](actions/stale@1e223db...4391f3d) Updates `Azure/action-release-workflows/.github/workflows/release_js_project.yaml` from 1.0.3 to 1.1.0 - [Release notes](https://github.com/azure/action-release-workflows/releases) - [Changelog](https://github.com/Azure/action-release-workflows/blob/main/CHANGELOG.md) - [Commits](Azure/action-release-workflows@3c677ba...2ff0844) Updates `azure/login` from 3.0.0 to 3.0.1 - [Release notes](https://github.com/azure/login/releases) - [Commits](Azure/login@v3.0.0...v3.0.1) --- updated-dependencies: - dependency-name: actions/stale dependency-version: 11.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions - dependency-name: Azure/action-release-workflows/.github/workflows/release_js_project.yaml dependency-version: 1.1.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: azure/login dependency-version: 3.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/analyze dependency-version: 4.37.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/autobuild dependency-version: 4.37.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/init dependency-version: 4.37.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
Bot
force-pushed
the
dependabot/github_actions/dot-github/workflows/actions-122e495a1c
branch
from
August 17, 2026 22:21
abaaed1 to
b132dfc
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the actions group with 6 updates in the /.github/workflows directory:
4.37.14.37.74.37.14.37.74.37.14.37.710.4.011.0.01.0.31.1.03.0.03.0.1Updates
github/codeql-action/initfrom 4.37.1 to 4.37.7Release notes
Sourced from github/codeql-action/init's releases.
Changelog
Sourced from github/codeql-action/init's changelog.
... (truncated)
Commits
ff2f1c6Merge pull request #4093 from github/update-v4.37.7-be7a3dbb8951a133Update changelog for v4.37.7be7a3dbMerge pull request #4087 from github/dependabot/npm_and_yarn/npm-minor-0aa561...9310334Merge pull request #4086 from github/mbg/thread-action-state-to-codeqlb4d8a54Rebuildab5db25Bump the npm-minor group across 1 directory with 8 updates38055a3DroploggerfromdatabaseInitClusterin interface1f87aedMerge pull request #4085 from github/update-bundle/codeql-bundle-v2.26.3dc1b98aMakeloggeravailable togetCodeQLForCmd6f0220eMerge pull request #4084 from github/navntoft/bump-undiciUpdates
github/codeql-action/autobuildfrom 4.37.1 to 4.37.7Release notes
Sourced from github/codeql-action/autobuild's releases.
Changelog
Sourced from github/codeql-action/autobuild's changelog.
... (truncated)
Commits
ff2f1c6Merge pull request #4093 from github/update-v4.37.7-be7a3dbb8951a133Update changelog for v4.37.7be7a3dbMerge pull request #4087 from github/dependabot/npm_and_yarn/npm-minor-0aa561...9310334Merge pull request #4086 from github/mbg/thread-action-state-to-codeqlb4d8a54Rebuildab5db25Bump the npm-minor group across 1 directory with 8 updates38055a3DroploggerfromdatabaseInitClusterin interface1f87aedMerge pull request #4085 from github/update-bundle/codeql-bundle-v2.26.3dc1b98aMakeloggeravailable togetCodeQLForCmd6f0220eMerge pull request #4084 from github/navntoft/bump-undiciUpdates
github/codeql-action/analyzefrom 4.37.1 to 4.37.7Release notes
Sourced from github/codeql-action/analyze's releases.
Changelog
Sourced from github/codeql-action/analyze's changelog.
... (truncated)
Commits
ff2f1c6Merge pull request #4093 from github/update-v4.37.7-be7a3dbb8951a133Update changelog for v4.37.7be7a3dbMerge pull request #4087 from github/dependabot/npm_and_yarn/npm-minor-0aa561...9310334Merge pull request #4086 from github/mbg/thread-action-state-to-codeqlb4d8a54Rebuildab5db25Bump the npm-minor group across 1 directory with 8 updates38055a3DroploggerfromdatabaseInitClusterin interface1f87aedMerge pull request #4085 from github/update-bundle/codeql-bundle-v2.26.3dc1b98aMakeloggeravailable togetCodeQLForCmd6f0220eMerge pull request #4084 from github/navntoft/bump-undiciUpdates
actions/stalefrom 10.4.0 to 11.0.0Release notes
Sourced from actions/stale's releases.
Commits
4391f3dFix 24 high severity vulnerabilities by overriding brace-expansion to 5.0.8 (...eaf9131refactor: update imports to use ES module syntax and improve test structure (...Updates
Azure/action-release-workflows/.github/workflows/release_js_project.yamlfrom 1.0.3 to 1.1.0Release notes
Sourced from Azure/action-release-workflows/.github/workflows/release_js_project.yaml's releases.
Changelog
Sourced from Azure/action-release-workflows/.github/workflows/release_js_project.yaml's changelog.
... (truncated)
Commits
2ff0844fix(release): correct target_commitish and use v-prefixed tags (#37)54f4326release: prepare v1.1.0 (#36)98a94a6Bump actions/checkout from 7.0.0 to 7.0.1 (#35)c5e43fbBump actions/checkout from 6 to 7 and pin to commit SHA (#34)6d0a54cBump actions/ai-inference from 2.1.0 to 2.1.1 (#33)3fb2be6Bump mindsers/changelog-reader-action from 2.2.3 to 2.4.0 (#32)e135e3aBump actions/ai-inference from 2.0.7 to 2.1.0 (#31)7970974Bump actions/ai-inference from 2.0.6 to 2.0.7 (#29)7b32173Add CODEOWNERS with@Azure/cloud-native-github-action-owners(#28)2247d90Feature/release proposal workflow (#27)Updates
azure/loginfrom 3.0.0 to 3.0.1Release notes
Sourced from azure/login's releases.
Commits
f5d393aMerge remote-tracking branch 'origin/master' into releases/v3.0.1e8cd11fReplacing hardcoded version v2 with v3 (#603)73730b8prepare release v3.0.1f4dcb80Escape single quotes in PowerShell login script inputs (#599)e82415aAdd IDE files to .gitignore (#597)a842007Update CODEOWNERS (#598)9dfca58use the latest auzre/powershell@v3 (#581)