chore(deps): update all github action dependencies (main) #36140
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v4.1.7
->v4.2.2
v4.2.1
->v4.2.2
v0.17.6
->v0.17.8
v1.16.1
->v1.16.2
746605a
->d3ecfd8
v3.5.16
->v3.5.17
v2.1.5
->v2.1.7
v2.1.1
->v2.1.2
499.0.0
->502.0.0
492.0.0
->502.0.0
aef7e18
->8158e8b
v0.24.0
->v0.25.0
v1.31.2
->v1.31.3
v40.3.5
->v41.0.3
38.142.6
->39.28.0
Release Notes
actions/checkout (actions/checkout)
v4.2.2
Compare Source
url-helper.ts
now leverages well-known environment variables by @jww3 in https://github.com/actions/checkout/pull/1941isGhes
by @jww3 in https://github.com/actions/checkout/pull/1946v4.2.1
Compare Source
v4.2.0
Compare Source
anchore/sbom-action (anchore/sbom-action)
v0.17.8
Compare Source
Changes in v0.17.8
v0.17.7
Compare Source
Changes in v0.17.7
cert-manager/cert-manager (cert-manager/cert-manager)
v1.16.2
Compare Source
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
This patch release of cert-manager 1.16 makes several changes to how PEM input is validated, adding maximum sizes appropriate to the type of PEM data which is being parsed.
This is to prevent an unacceptable slow-down in parsing specially crafted PEM data. The issue was found by Google's OSS-Fuzz project.
The issue is low severity; to exploit the PEM issue would require privileged access which would likely allow Denial-of-Service through other methods.
Note also that since most PEM data parsed by cert-manager comes from
ConfigMap
orSecret
resources which have a max size limit of approximately 1MB, it's difficult to force cert-manager to parse large amounts of PEM data.Further information is available in GHSA-r4pg-vg54-wxx4
In addition, the version of Go used to build cert-manager 1.16 was updated along with the base images.
Changes by Kind
Bug or Regression
Other (Cleanup or Flake)
google-github-actions/auth (google-github-actions/auth)
v2.1.7
Compare Source
What's Changed
Full Changelog: google-github-actions/auth@v2.1.6...v2.1.7
v2.1.6
Compare Source
What's Changed
gcloud storage
overgsutil
by @sethvargo in https://github.com/google-github-actions/auth/pull/438Full Changelog: google-github-actions/auth@v2.1.5...v2.1.6
google-github-actions/setup-gcloud (google-github-actions/setup-gcloud)
v2.1.2
Compare Source
What's Changed
Full Changelog: google-github-actions/setup-gcloud@v2.1.1...v2.1.2
kubernetes-sigs/kind (kubernetes-sigs/kind)
v0.25.0
Compare Source
This release contains a number of small networking fixes and the latest Kubernetes releases. Happy KubeCon!
Breaking Changes
kindest/node:v1.31.2@​sha256:18fbefc20a7113353c7b75b5c869d7145a6abd6269154825872dc59c1329912e
New Features
Images pre-built for this release:
kindest/node:v1.31.2@​sha256:18fbefc20a7113353c7b75b5c869d7145a6abd6269154825872dc59c1329912e
kindest/node:v1.30.6@​sha256:b6d08db72079ba5ae1f4a88a09025c0a904af3b52387643c285442afb05ab994
kindest/node:v1.29.10@​sha256:3b2d8c31753e6c8069d4fc4517264cd20e86fd36220671fb7d0a5855103aa84b
kindest/node:v1.28.15@​sha256:a7c05c7ae043a0b8c818f5a06188bc2c4098f6cb59ca7d1856df00375d839251
kindest/node:v1.27.16@​sha256:2d21a61643eafc439905e18705b8186f3296384750a835ad7a005dceb9546d20
kindest/node:v1.26.15@​sha256:c79602a44b4056d7e48dc20f7504350f1e87530fe953428b792def00bc1076dd
NOTE: You must use the
@sha256
digest to guarantee an image built for this release, until such a time as we switch to a different tagging scheme. Even then we will highly encourage digest pinning for security and reproducibility reasons.See also:
NOTE: These node images support amd64 and arm64, both of our supported platforms. You must use the same platform as your host, for more context see https://github.com/kubernetes-sigs/kind/issues/2718
Fixes
Contributors
Thank you to everyone who contributed to this release!
Users whose commits are in this release (alphabetically by user name)
Thank you to everyone who contributed in any way.
A special thank you to @neolit123 for all your help over the years, and stepping down when you no longer had the time.
Thank you!
kubernetes/kubernetes (kubernetes/kubernetes)
v1.31.3
: Kubernetes v1.31.3Compare Source
See kubernetes-announce@. Additional binary downloads are linked in the CHANGELOG.
See the CHANGELOG for more details.
renovatebot/github-action (renovatebot/github-action)
v41.0.3
Compare Source
Documentation
Miscellaneous Chores
Build System
Continuous Integration
v41.0.2
Compare Source
Build System
v41.0.1
Compare Source
Miscellaneous Chores
Tests
Build System
esbuild
(#887) (4a407be)Continuous Integration
github-actions[bot]
for merge commit (#882) (4c22a10)v41.0.0
Compare Source
⚠ BREAKING CHANGES
Features
v40.3.6
Compare Source
Bug Fixes
Documentation
Miscellaneous Chores
Continuous Integration
renovatebot/renovate (renovatebot/renovate)
v39.28.0
Compare Source
Features
Code Refactoring
v39.27.0
Compare Source
Features
Miscellaneous Chores
v39.26.3
Compare Source
Bug Fixes
v39.26.2
Compare Source
Bug Fixes
Code Refactoring
createPr
fn (#32428) (e3b97c1)v39.26.1
Compare Source
Bug Fixes
Miscellaneous Chores
v39.26.0
Compare Source
Features
Miscellaneous Chores
v39.25.5
Compare Source
Build System
v39.25.4
Compare Source
Bug Fixes
Miscellaneous Chores
v39.25.3
Compare Source
Bug Fixes
v39.25.2
Compare Source
Bug Fixes
v39.25.1
Compare Source
Bug Fixes
v39.25.0
Compare Source
Features
Code Refactoring
v39.24.0
Compare Source
Features
java.toolchain.languageVersion
detection in build.gradle(.kts) files (#32461) (0ff6e98)v39.23.1
Compare Source
Bug Fixes
Miscellaneous Chores
v39.23.0
Compare Source
Features
v39.22.0
Compare Source
Features
Documentation
Miscellaneous Chores
v39.21.1
Compare Source
Bug Fixes
Miscellaneous Chores
Build System
v39.21.0
Compare Source
Features
v39.20.6
Compare Source
Bug Fixes
Documentation
Miscellaneous Chores
v39.20.5
Compare Source
Documentation
Miscellaneous Chores
Build System
v39.20.4
Compare Source
Bug Fixes
Documentation
v39.20.3
Compare Source
Bug Fixes
Miscellaneous Chores
v39.20.2
Compare Source
Bug Fixes
Build System
v39.20.1
Compare Source
Bug Fixes
v39.20.0
Compare Source
Features
Documentation
Miscellaneous Chores
v39.19.1
Compare Source
Bug Fixes
Miscellaneous Chores
v39.19.0
Compare Source
Features
v39.18.4
Compare Source
Bug Fixes
Miscellaneous Chores
v39.18.3
Compare Source
Bug Fixes
Miscellaneous Chores
v39.18.2
Compare Source
Bug Fixes
v39.18.1
Compare Source
Bug Fixes
extractVersion
with release post-processing (#32540) (cb7c10b)v39.18.0
Compare Source
Features
v39.17.1
Compare Source
Bug Fixes
v39.17.0
Compare Source
Features
Miscellaneous Chores
v39.16.0
Compare Source
Features
v39.15.4
Compare Source
Bug Fixes
Miscellaneous Chores
bc78d3c
(#32553) (af7d6c6)v39.15.3
Compare Source
Bug Fixes
Documentation
Miscellaneous Chores
v39.15.2
Compare Source
Documentation
Build System
v39.15.1
Compare Source
Build System
v39.15.0
Compare Source
Features
Bug Fixes
v39.14.1
Compare Source
Bug Fixes
v39.14.0
Compare Source
Features
Miscellaneous Chores
a6ed02f
(#32524) (2862f76)v39.13.1
Compare Source
Bug Fixes
v39.13.0
Compare Source
Features
RENOVATE_
(#32499) (42b448b)Bug Fixes
punycode
built-in module (#32502) (41ba7c3)Miscellaneous Chores
f605a30
(#32518) (bf07498)v39.12.0
Compare Source
Features
Documentation
Miscellaneous Chores
Configuration
📅 Schedule: Branch creation - "on sunday" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Renovate Bot.