Conversation
Bumps [actions/cache](https://github.com/actions/cache) from 5.0.3 to 5.0.4. - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](actions/cache@cdf6c1f...6682284) --- updated-dependencies: - dependency-name: actions/cache dependency-version: 5.0.4 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Bumps [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action) from 0.5.2 to 0.5.3. - [Release notes](https://github.com/zizmorcore/zizmor-action/releases) - [Commits](zizmorcore/zizmor-action@71321a2...b1d7e1f) --- updated-dependencies: - dependency-name: zizmorcore/zizmor-action dependency-version: 0.5.3 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Bumps [philss/rustler-precompiled-action](https://github.com/philss/rustler-precompiled-action) from 1.1.4 to 1.1.5. - [Release notes](https://github.com/philss/rustler-precompiled-action/releases) - [Changelog](https://github.com/philss/rustler-precompiled-action/blob/main/CHANGELOG.md) - [Commits](philss/rustler-precompiled-action@853ac56...67ed0cc) --- updated-dependencies: - dependency-name: philss/rustler-precompiled-action dependency-version: 1.1.5 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 7.0.0 to 7.0.1. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@bbbca2d...043fb46) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-version: 7.0.1 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
…precompiled-action-1.1.5
…rcore/zizmor-action-0.5.3 chore(deps): bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3
…ns/upload-artifact-7.0.1 chore(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1
…precompiled-action-1.1.5
…ns/cache-5.0.4 chore(deps): bump actions/cache from 5.0.3 to 5.0.4
…s/rustler-precompiled-action-1.1.5 chore(deps): bump philss/rustler-precompiled-action from 1.1.4 to 1.1.5
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Organization UI Review profile: CHILL Plan: Pro Run ID: 📒 Files selected for processing (3)
WalkthroughThis pull request updates pinned versions of GitHub Actions dependencies across three workflow files. The ChangesWorkflow Action Dependency Updates
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~3 minutes Possibly related PRs
Poem
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Summary
Merges four Dependabot CI action version bumps from
dev:actions/cache5.0.3 → 5.0.4 — security patches forminimatch(ReDoS fix),undici(WebSocket decompression bomb + header validation), andfast-xml-parser; applied across all 12 cache steps inci.ymlactions/upload-artifact7.0.0 → 7.0.1 — patch update inrelease.ymlphilss/rustler-precompiled-action1.1.4 → 1.1.5 — adds support for more Apple targets (no longer relies solely on "darwin" in the target name); fixes NodeJS deprecation warnings by updating the bundledgiantswarm/install-binary-actionto v4; inrelease.ymlzizmorcore/zizmor-action0.5.2 → 0.5.3 — patch update inzizmor.ymlNo library code, test, or documentation changes. All changes are pinned to their full commit SHA as per existing convention.
Test plan
mix.exs, Rust deps, or application codeSummary by CodeRabbit