Skip to content

Bump github/codeql-action from 2 to 3#1483

Merged
Link- merged 1 commit into
mainfrom
dependabot/github_actions/github/codeql-action-3
Oct 22, 2024
Merged

Bump github/codeql-action from 2 to 3#1483
Link- merged 1 commit into
mainfrom
dependabot/github_actions/github/codeql-action-3

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 22, 2024

Copy link
Copy Markdown
Contributor

Bumps github/codeql-action from 2 to 3.

Release notes

Sourced from github/codeql-action's releases.

CodeQL Bundle v2.19.2

Bundles CodeQL CLI v2.19.2

Includes the following CodeQL language packs from github/codeql@codeql-cli/v2.19.2:

CodeQL Bundle v2.19.1

Bundles CodeQL CLI v2.19.1

Includes the following CodeQL language packs from github/codeql@codeql-cli/v2.19.1:

CodeQL Bundle v2.19.0

Bundles CodeQL CLI v2.19.0

Includes the following CodeQL language packs from github/codeql@codeql-cli/v2.19.0:

... (truncated)

Changelog

Sourced from github/codeql-action's changelog.

Commits
  • c0098c8 Update changelog and version after v3.26.12
  • c36620d Merge pull request #2529 from github/update-v3.26.12-c9a70ff45
  • 570aecb Update changelog for v3.26.12
  • c9a70ff Merge pull request #2526 from github/henrymercer/check-zstd-on-path
  • d65a176 Rebuild
  • bf2e624 Update src/tar.ts
  • 56d1975 Merge pull request #2489 from github/redsun82/rust
  • 7cf65a5 Merge pull request #2518 from github/dependabot/npm_and_yarn/npm-88156698cd
  • 8a56dd2 Update to @​actions/core 1.11.1
  • 1532671 Update default bundle to 2.19.1 (#2519)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot Bot requested a review from a team as a code owner October 22, 2024 11:04
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Oct 22, 2024
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github/codeql-action-3 branch from 179b4cf to c29c145 Compare October 22, 2024 11:12
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2 to 3.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@v2...v3)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github/codeql-action-3 branch from c29c145 to 02bf319 Compare October 22, 2024 11:14
@Link- Link- merged commit 366d43d into main Oct 22, 2024
@Link- Link- deleted the dependabot/github_actions/github/codeql-action-3 branch October 22, 2024 11:16
fbidu added a commit to fbidu/cookie-py that referenced this pull request Jun 16, 2026
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [actions/cache](https://github.com/actions/cache) | major | `v4` → `v5.0.5` |

---

### Release Notes

<details>
<summary>actions/cache (actions/cache)</summary>

### [`v5.0.5`](https://github.com/actions/cache/releases/tag/v5.0.5)

[Compare Source](actions/cache@v5.0.4...v5.0.5)

#### What's Changed

- Update ts-http-runtime dependency by [@&#8203;yacaovsnc](https://github.com/yacaovsnc) in [#&#8203;1747](actions/cache#1747)

**Full Changelog**: <actions/cache@v5...v5.0.5>

### [`v5.0.4`](https://github.com/actions/cache/releases/tag/v5.0.4)

[Compare Source](actions/cache@v5.0.3...v5.0.4)

#### What's Changed

- Add release instructions and update maintainer docs by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1696](actions/cache#1696)
- Potential fix for code scanning alert no. 52: Workflow does not contain permissions by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1697](actions/cache#1697)
- Fix workflow permissions and cleanup workflow names / formatting by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1699](actions/cache#1699)
- docs: Update examples to use the latest version by [@&#8203;XZTDean](https://github.com/XZTDean) in [#&#8203;1690](actions/cache#1690)
- Fix proxy integration tests by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1701](actions/cache#1701)
- Fix cache key in examples.md for bun.lock by [@&#8203;RyPeck](https://github.com/RyPeck) in [#&#8203;1722](actions/cache#1722)
- Update dependencies & patch security vulnerabilities by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1738](actions/cache#1738)

#### New Contributors

- [@&#8203;XZTDean](https://github.com/XZTDean) made their first contribution in [#&#8203;1690](actions/cache#1690)
- [@&#8203;RyPeck](https://github.com/RyPeck) made their first contribution in [#&#8203;1722](actions/cache#1722)

**Full Changelog**: <actions/cache@v5...v5.0.4>

### [`v5.0.3`](https://github.com/actions/cache/releases/tag/v5.0.3)

[Compare Source](actions/cache@v5.0.2...v5.0.3)

#### What's Changed

- Bump `@actions/cache` to v5.0.5 (Resolves: <https://github.com/actions/cache/security/dependabot/33>)
- Bump `@actions/core` to v2.0.3

**Full Changelog**: <actions/cache@v5...v5.0.3>

### [`v5.0.2`](https://github.com/actions/cache/releases/tag/v5.0.2): v.5.0.2

[Compare Source](actions/cache@v5.0.1...v5.0.2)

### v5.0.2

#### What's Changed

When creating cache entries, 429s returned from the cache service will not be retried.

### [`v5.0.1`](https://github.com/actions/cache/releases/tag/v5.0.1)

[Compare Source](actions/cache@v5...v5.0.1)

> \[!IMPORTANT]
> **`actions/cache@v5` runs on the Node.js 24 runtime and requires a minimum Actions Runner version of `2.327.1`.**
>
> If you are using self-hosted runners, ensure they are updated before upgrading.

***

### v5.0.1

#### What's Changed

- fix: update [@&#8203;actions/cache](https://github.com/actions/cache) for Node.js 24 punycode deprecation by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1685](actions/cache#1685)
- prepare release v5.0.1 by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1686](actions/cache#1686)

### v5.0.0

#### What's Changed

- Upgrade to use node24 by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1630](actions/cache#1630)
- Prepare v5.0.0 release by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1684](actions/cache#1684)

**Full Changelog**: <actions/cache@v5...v5.0.1>

### [`v5.0.0`](https://github.com/actions/cache/releases/tag/v5.0.0)

[Compare Source](actions/cache@v5...v5)

> \[!IMPORTANT]
> **`actions/cache@v5` runs on the Node.js 24 runtime and requires a minimum Actions Runner version of `2.327.1`.**
>
> If you are using self-hosted runners, ensure they are updated before upgrading.

***

#### What's Changed

- Upgrade to use node24 by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1630](actions/cache#1630)
- Prepare v5.0.0 release by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1684](actions/cache#1684)

**Full Changelog**: <actions/cache@v4.3.0...v5.0.0>

### [`v5`](actions/cache@v4.3.0...v5)

[Compare Source](actions/cache@v4.3.0...v5)

### [`v4.3.0`](https://github.com/actions/cache/releases/tag/v4.3.0)

[Compare Source](actions/cache@v4.2.4...v4.3.0)

#### What's Changed

- Add note on runner versions by [@&#8203;GhadimiR](https://github.com/GhadimiR) in [#&#8203;1642](actions/cache#1642)
- Prepare `v4.3.0` release by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1655](actions/cache#1655)

#### New Contributors

- [@&#8203;GhadimiR](https://github.com/GhadimiR) made their first contribution in [#&#8203;1642](actions/cache#1642)

**Full Changelog**: <actions/cache@v4...v4.3.0>

### [`v4.2.4`](https://github.com/actions/cache/releases/tag/v4.2.4)

[Compare Source](actions/cache@v4.2.3...v4.2.4)

#### What's Changed

- Update README.md by [@&#8203;nebuk89](https://github.com/nebuk89) in [#&#8203;1620](actions/cache#1620)
- Upgrade `@actions/cache` to `4.0.5` and move `@protobuf-ts/plugin` to dev depdencies by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1634](actions/cache#1634)
- Prepare release `4.2.4` by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1636](actions/cache#1636)

#### New Contributors

- [@&#8203;nebuk89](https://github.com/nebuk89) made their first contribution in [#&#8203;1620](actions/cache#1620)

**Full Changelog**: <actions/cache@v4...v4.2.4>

### [`v4.2.3`](https://github.com/actions/cache/releases/tag/v4.2.3)

[Compare Source](actions/cache@v4.2.2...v4.2.3)

#### What's Changed

- Update to use [@&#8203;actions/cache](https://github.com/actions/cache) 4.0.3 package & prepare for new release by [@&#8203;salmanmkc](https://github.com/salmanmkc) in [#&#8203;1577](actions/cache#1577) (SAS tokens for cache entries are now masked in debug logs)

#### New Contributors

- [@&#8203;salmanmkc](https://github.com/salmanmkc) made their first contribution in [#&#8203;1577](actions/cache#1577)

**Full Changelog**: <actions/cache@v4.2.2...v4.2.3>

### [`v4.2.2`](https://github.com/actions/cache/releases/tag/v4.2.2)

[Compare Source](actions/cache@v4.2.1...v4.2.2)

#### What's Changed

> \[!IMPORTANT]
> As a reminder, there were important backend changes to release v4.2.0, see [those release notes](https://github.com/actions/cache/releases/tag/v4.2.0) and [the announcement](actions/cache#1510) for more details.

- Bump [@&#8203;actions/cache](https://github.com/actions/cache) to v4.0.2 by [@&#8203;robherley](https://github.com/robherley) in [#&#8203;1560](actions/cache#1560)

**Full Changelog**: <actions/cache@v4.2.1...v4.2.2>

### [`v4.2.1`](https://github.com/actions/cache/releases/tag/v4.2.1)

[Compare Source](actions/cache@v4.2.0...v4.2.1)

#### What's Changed

> \[!IMPORTANT]
> As a reminder, there were important backend changes to release v4.2.0, see [those release notes](https://github.com/actions/cache/releases/tag/v4.2.0) and [the announcement](actions/cache#1510) for more details.

- docs: GitHub is spelled incorrectly in caching-strategies.md by [@&#8203;janco-absa](https://github.com/janco-absa) in [#&#8203;1526](actions/cache#1526)
- docs: Make the "always save prime numbers" example more clear by [@&#8203;Tobbe](https://github.com/Tobbe) in [#&#8203;1525](actions/cache#1525)
- Update force deletion docs due a recent deprecation by [@&#8203;sebbalex](https://github.com/sebbalex) in [#&#8203;1500](actions/cache#1500)
- Bump [@&#8203;actions/cache](https://github.com/actions/cache) to v4.0.1 by [@&#8203;robherley](https://github.com/robherley) in [#&#8203;1554](actions/cache#1554)

#### New Contributors

- [@&#8203;janco-absa](https://github.com/janco-absa) made their first contribution in [#&#8203;1526](actions/cache#1526)
- [@&#8203;Tobbe](https://github.com/Tobbe) made their first contribution in [#&#8203;1525](actions/cache#1525)
- [@&#8203;sebbalex](https://github.com/sebbalex) made their first contribution in [#&#8203;1500](actions/cache#1500)

**Full Changelog**: <actions/cache@v4.2.0...v4.2.1>

### [`v4.2.0`](https://github.com/actions/cache/releases/tag/v4.2.0)

[Compare Source](actions/cache@v4.1.2...v4.2.0)

#### ⚠️ Important Changes

The cache backend service has been rewritten from the ground up for improved performance and reliability. [actions/cache](https://github.com/actions/cache) now integrates with the new cache service (v2) APIs.

The new service will gradually roll out as of **February 1st, 2025**. The legacy service will also be sunset on the same date. Changes in these release are **fully backward compatible**.

**We are deprecating some versions of this action**. We recommend upgrading to version `v4` or `v3` as soon as possible before **February 1st, 2025.** (Upgrade instructions below).

If you are using pinned SHAs, please use the SHAs of versions `v4.2.0` or `v3.4.0`

If you do not upgrade, all workflow runs using any of the deprecated [actions/cache](https://github.com/actions/cache) will fail.

Upgrading to the recommended versions will not break your workflows.

Read more about the change & access the migration guide: [reference to the announcement](actions/cache#1510).

##### Minor changes

Minor and patch version updates for these dependencies:

- [@&#8203;actions/core](https://github.com/actions/core): `1.11.1`
- [@&#8203;actions/io](https://github.com/actions/io): `1.1.3`
- [@&#8203;vercel/ncc](https://github.com/vercel/ncc): `0.38.3`

**Full Changelog**: <actions/cache@v4.1.2...v4.2.0>

### [`v4.1.2`](https://github.com/actions/cache/releases/tag/v4.1.2)

[Compare Source](actions/cache@v4.1.1...v4.1.2)

#### What's Changed

- Add Bun example by [@&#8203;idleberg](https://github.com/idleberg) in [#&#8203;1456](actions/cache#1456)
- Revise `isGhes` logic by [@&#8203;jww3](https://github.com/jww3) in [#&#8203;1474](actions/cache#1474)
- Bump braces from 3.0.2 to 3.0.3 by [@&#8203;dependabot](https://github.com/dependabot) in [#&#8203;1475](actions/cache#1475)
- Add dependabot.yml to enable automatic dependency upgrades by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1476](actions/cache#1476)
- Bump actions/checkout from 3 to 4 by [@&#8203;dependabot](https://github.com/dependabot) in [#&#8203;1478](actions/cache#1478)
- Bump actions/stale from 3 to 9 by [@&#8203;dependabot](https://github.com/dependabot) in [#&#8203;1479](actions/cache#1479)
- Bump github/codeql-action from 2 to 3 by [@&#8203;dependabot](https://github.com/dependabot) in [#&#8203;1483](actions/cache#1483)
- Bump actions/setup-node from 3 to 4 by [@&#8203;dependabot](https://github.com/dependabot) in [#&#8203;1481](actions/cache#1481)
- Prepare `4.1.2` release by [@&#8203;Link-](https://github.com/Link-) in [#&#8203;1477](actions/cache#1477)

#### New Contributors

- [@&#8203;idleberg](https://github.com/idleberg) made their first contribution in [#&#8203;1456](actions/cache#1456)
- [@&#8203;jww3](https://github.com/jww3) made their first contribution in [#&#8203;1474](actions/cache#1474)
- [@&#8203;Link-](https://github.com/Link-) made their first contribution in [#&#8203;1476](actions/cache#1476)

**Full Changelog**: <actions/cache@v4.1.1...v4.1.2>

### [`v4.1.1`](https://github.com/actions/cache/releases/tag/v4.1.1)

[Compare Source](actions/cache@v4.1.0...v4.1.1)

#### What's Changed

- Restore original behavior of `cache-hit` output by [@&#8203;joshmgross](https://github.com/joshmgross) in [#&#8203;1467](actions/cache#1467)

**Full Changelog**: <actions/cache@v4.1.0...v4.1.1>

### [`v4.1.0`](https://github.com/actions/cache/releases/tag/v4.1.0)

[Compare Source](actions/cache@v4.0.2...v4.1.0)

#### What's Changed

- Fix cache-hit output when cache missed by [@&#8203;fchimpan](https://github.com/fchimpan) in [#&#8203;1404](actions/cache#1404)
- Deprecate `save-always` input by [@&#8203;joshmgross](https://github.com/joshmgross) in [#&#8203;1452](actions/cache#1452)

#### New Contributors

- [@&#8203;ottlinger](https://github.com/ottlinger) made their first contribution in [#&#8203;1437](actions/cache#1437)
- [@&#8203;Olegt0rr](https://github.com/Olegt0rr) made their first contribution in [#&#8203;1377](actions/cache#1377)
- [@&#8203;fchimpan](https://github.com/fchimpan) made their first contribution in [#&#8203;1404](actions/cache#1404)
- [@&#8203;x612skm](https://github.com/x612skm) made their first contribution in [#&#8203;1434](actions/cache#1434)
- [@&#8203;todgru](https://github.com/todgru) made their first contribution in [#&#8203;1311](actions/cache#1311)
- [@&#8203;Jcambass](https://github.com/Jcambass) made their first contribution in [#&#8203;1463](actions/cache#1463)
- [@&#8203;mackey0225](https://github.com/mackey0225) made their first contribution in [#&#8203;1462](actions/cache#1462)
- [@&#8203;quatquatt](https://github.com/quatquatt) made their first contribution in [#&#8203;1445](actions/cache#1445)

**Full Changelog**: <actions/cache@v4.0.2...v4.1.0>

### [`v4.0.2`](https://github.com/actions/cache/releases/tag/v4.0.2)

[Compare Source](actions/cache@v4.0.1...v4.0.2)

#### What's Changed

- Fix `fail-on-cache-miss` not working by [@&#8203;cdce8p](https://github.com/cdce8p) in [#&#8203;1327](actions/cache#1327)

**Full Changelog**: <actions/cache@v4.0.1...v4.0.2>

### [`v4.0.1`](https://github.com/actions/cache/releases/tag/v4.0.1)

[Compare Source](actions/cache@v4...v4.0.1)

#### What's Changed

- Update README.md by [@&#8203;yacaovsnc](https://github.com/yacaovsnc) in [#&#8203;1304](actions/cache#1304)
- Update examples by [@&#8203;yacaovsnc](https://github.com/yacaovsnc) in [#&#8203;1305](actions/cache#1305)
- Update actions/cache publish flow by [@&#8203;bethanyj28](https://github.com/bethanyj28) in [#&#8203;1340](actions/cache#1340)
- Update [@&#8203;actions/cache](https://github.com/actions/cache) by [@&#8203;bethanyj28](https://github.com/bethanyj28) in [#&#8203;1341](actions/cache#1341)

#### New Contributors

- [@&#8203;yacaovsnc](https://github.com/yacaovsnc) made their first contribution in [#&#8203;1304](actions/cache#1304)

**Full Changelog**: <actions/cache@v4...v4.0.1>

</details>

---

### Configuration

📅 **Schedule**: (UTC)

- Branch creation
  - At any time (no schedule defined)
- Automerge
  - At any time (no schedule defined)

🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update again.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box

---

This PR has been generated by [Mend Renovate](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My4yMTQuNCIsInVwZGF0ZWRJblZlciI6IjQzLjIxNC40IiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJ0ZW1wbGF0ZSJdfQ==-->

Reviewed-on: https://git.lx.e6a.app/tools/cookie-py/pulls/86
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant