Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Chore: Prepare E2E Test for TX 2412 #167

Open
wants to merge 16 commits into
base: main
Choose a base branch
from

Conversation

drcgjung
Copy link
Contributor

@drcgjung drcgjung commented Oct 9, 2024

WHAT

Contains all version and dependency updates necessary to enter the E2E phase of TX/CX 2412 release.
Also checked with latest TRGs and issues around that.

WHY

We need to mitigate new CVEs and care for the TRGs.

FURTHER NOTES

Closes #164 <-- insert Issue number if one exists

dependabot bot and others added 16 commits February 13, 2024 05:59
Bumps [docker/metadata-action](https://github.com/docker/metadata-action) from 5.5.0 to 5.5.1.
- [Release notes](https://github.com/docker/metadata-action/releases)
- [Commits](docker/metadata-action@dbef880...8e5442c)

---
updated-dependencies:
- dependency-name: docker/metadata-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [peter-evans/dockerhub-description](https://github.com/peter-evans/dockerhub-description) from 3.4.2 to 4.0.0.
- [Release notes](https://github.com/peter-evans/dockerhub-description/releases)
- [Commits](peter-evans/dockerhub-description@dc67fad...e98e4d1)

---
updated-dependencies:
- dependency-name: peter-evans/dockerhub-description
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [actions/setup-python](https://github.com/actions/setup-python) from 4.7.1 to 5.1.1.
- [Release notes](https://github.com/actions/setup-python/releases)
- [Commits](actions/setup-python@65d7f2d...39cd149)

---
updated-dependencies:
- dependency-name: actions/setup-python
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [azure/setup-helm](https://github.com/azure/setup-helm) from 3.5 to 4.
- [Release notes](https://github.com/azure/setup-helm/releases)
- [Changelog](https://github.com/Azure/setup-helm/blob/main/CHANGELOG.md)
- [Commits](Azure/setup-helm@5119fcb...fe7b79c)

---
updated-dependencies:
- dependency-name: azure/setup-helm
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [com.google.guava:guava](https://github.com/google/guava) from 32.1.2-jre to 33.3.0-jre.
- [Release notes](https://github.com/google/guava/releases)
- [Commits](https://github.com/google/guava/commits)

---
updated-dependencies:
- dependency-name: com.google.guava:guava
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.22.6 to 3.26.3.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@v2.22.6...883d858)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
…ithub/codeql-action-3.26.3' into feature/2412-upgrade
….guava-guava-33.3.0-jre' into feature/2412-upgrade
…zure/setup-helm-4' into feature/2412-upgrade
…ctions/setup-python-5.1.1' into feature/2412-upgrade
…eter-evans/dockerhub-description-4.0.0' into feature/2412-upgrade
…ocker/metadata-action-5.5.1' into feature/2412-upgrade
Copy link
Contributor

@almadigabor almadigabor left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All looks good. There are restricted dependencies and I've opened the issues so the Eclipse IP team can review them. Once they are approved the DEPENDENCIES file should be updated and I can merge this PR.

[INFO] License information could not be automatically verified for the following content:
[INFO] 
[INFO] maven/mavencentral/com.google.inject/guice/5.0.1
[INFO] maven/mavencentral/it.unibz.inf.ontop/ontop-model/5.2.0
[INFO] maven/mavencentral/it.unibz.inf.ontop/ontop-rdb/5.2.0
[INFO] 
[INFO] This content is either not correctly mapped by the system, or requires review.
[INFO] A review is required for maven/mavencentral/it.unibz.inf.ontop/ontop-rdb/5.2.0.
[INFO] A review request was created https://gitlab.eclipse.org/eclipsefdn/emo-team/iplab/-/issues/16804 .
[INFO] A review is required for maven/mavencentral/com.google.inject/guice/5.0.1.
[INFO] A review request was created https://gitlab.eclipse.org/eclipsefdn/emo-team/iplab/-/issues/16805 .
[INFO] A review is required for maven/mavencentral/it.unibz.inf.ontop/ontop-model/5.2.0.
[INFO] A review request was created https://gitlab.eclipse.org/eclipsefdn/emo-team/iplab/-/issues/16806 .
[INFO] Summary file was written to: /Users/A200134305/repos/forks/knowledge-agents/DEPENDENCIES

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: 👀 In review
Development

Successfully merging this pull request may close these issues.

Remove all Catena-X (NG) references
2 participants