Sourced from actions/dependency-review-action's releases.
4.2.5
What's Changed
- Fixed a bug where some configuration options in external files were not being properly picked up -- actions/dependency-review-action#722
- Bump eslint from 8.56.0 to 8.57.0
Full Changelog: https://github.com/actions/dependency-review-action/compare/v4.2.4...v4.2.5
v4.2.4
What's Changed
Fixed a bug in the output of OpenSSF cards for GitHub Actions.
New Contributors
@sporkmonger
made their first contribution in actions/dependency-review-action#721Full Changelog: https://github.com/actions/dependency-review-action/compare/v4.2.3...v4.2.4
4.2.3
What's Changed
- Set comment as output by
@jsoref
in actions/dependency-review-action#698- Add support for calculating OpenSSF Scorecards by
@jhutchings1
in actions/dependency-review-action#709- Add outputs for the changes data by
@laughedelic
in actions/dependency-review-action#707New Contributors
@jhutchings1
made their first contribution in actions/dependency-review-action#709@laughedelic
made their first contribution in actions/dependency-review-action#707Full Changelog: https://github.com/actions/dependency-review-action/compare/v4.1.3...v4.2.3
5bbc3ba
bumping versionc59184a
Merge pull request #722
from actions/remove-warn-default54c0657
Merge pull request #728
from actions/dependabot/npm_and_yarn/eslint-8.57.021941b5
Bump eslint from 8.56.0 to 8.57.0733dd5d
bumping to 4.2.49093495
Merge pull request #725
from actions/issue-71835b83b4
Fix prettier issuese057056
Add packaged code updated684d03
Add trailing slash to tests2b0aaf1
Fix extra slash issueSourced from anchore/sbom-action's releases.
v0.15.10
Changes in v0.15.10
- Update Syft to v1.1.0 (#454)
- Bump Node to v20 on download-syft/publish-sbom actions (#448) [ViacheslavKudinov]
ab5d7b5
chore(deps): update Syft to v1.1.0 (#454)6e7f9d7
chore(deps): bump release-drafter/release-drafter from 5.25.0 to 6.0.0
(#450)2d906a3
chore(deps): bump peter-evans/create-or-update-comment (#452)691c762
chore(deps): bump peter-evans/create-pull-request from 5.0.2 to 6.0.2
(#453)f0dafef
chore(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#451)c6d7b2a
chore: add dependabot configuration for actions (#449)31e2bb2
chore(deps): update @types/node
to Node 20 (#443)670514f
chore: Bump Node to v20 on download-syft/publish-sbom actions (#448)a5afbb1
chore(deps): update Syft to v1.0.1 (#444)Sourced from codecov/codecov-action's releases.
v4.1.1
What's Changed
- build(deps): bump github/codeql-action from 3.24.5 to 3.24.6 by
@dependabot
in codecov/codecov-action#1315- build(deps-dev): bump typescript from 5.3.3 to 5.4.2 by
@dependabot
in codecov/codecov-action#1319- Removed mention of Mercurial by
@drazisil-codecov
in codecov/codecov-action#1325- build(deps): bump github/codeql-action from 3.24.6 to 3.24.7 by
@dependabot
in codecov/codecov-action#1332- build(deps): bump actions/checkout from 4.1.1 to 4.1.2 by
@dependabot
in codecov/codecov-action#1331- fix: force version by
@thomasrockhu-codecov
in codecov/codecov-action#1329- build(deps-dev): bump typescript from 5.4.2 to 5.4.3 by
@dependabot
in codecov/codecov-action#1334- build(deps): bump undici from 5.28.2 to 5.28.3 by
@dependabot
in codecov/codecov-action#1338- build(deps): bump github/codeql-action from 3.24.7 to 3.24.9 by
@dependabot
in codecov/codecov-action#1341- fix: typo in disable_safe_directory by
@mkroening
in codecov/codecov-action#1343- chore(release): 4.1.1 by
@thomasrockhu-codecov
in codecov/codecov-action#1344New Contributors
@mkroening
made their first contribution in codecov/codecov-action#1343Full Changelog: https://github.com/codecov/codecov-action/compare/v4.1.0...v4.1.1
Sourced from codecov/codecov-action's changelog.
4.0.0-beta.2
Fixes
- #1085 not adding -n if empty to do-upload command
4.0.0-beta.1
v4
represents a move from the universal uploader to the Codecov CLI. Although this will unlock new features for our users, the CLI is not yet at feature parity with the universal uploader.Breaking Changes
- No current support for
aarch64
andalpine
architectures.- Tokenless uploading is unsuported
- Various arguments to the Action have been removed
3.1.4
Fixes
- #967 Fix typo in README.md
- #971 fix: add back in working dir
- #969 fix: CLI option names for uploader
Dependencies
- #970 build(deps-dev): bump
@types/node
from 18.15.12 to 18.16.3- #979 build(deps-dev): bump
@types/node
from 20.1.0 to 20.1.2- #981 build(deps-dev): bump
@types/node
from 20.1.2 to 20.1.43.1.3
Fixes
- #960 fix: allow for aarch64 build
Dependencies
- #957 build(deps-dev): bump jest-junit from 15.0.0 to 16.0.0
- #958 build(deps): bump openpgp from 5.7.0 to 5.8.0
- #959 build(deps-dev): bump
@types/node
from 18.15.10 to 18.15.123.1.2
Fixes
- #718 Update README.md
- #851 Remove unsupported path_to_write_report argument
- #898 codeql-analysis.yml
- #901 Update README to contain correct information - inputs and negate feature
- #955 fix: add in all the extra arguments for uploader
Dependencies
- #819 build(deps): bump openpgp from 5.4.0 to 5.5.0
- #835 build(deps): bump node-fetch from 3.2.4 to 3.2.10
- #840 build(deps): bump ossf/scorecard-action from 1.1.1 to 2.0.4
- #841 build(deps): bump
@actions/core
from 1.9.1 to 1.10.0- #843 build(deps): bump
@actions/github
from 5.0.3 to 5.1.1- #869 build(deps): bump node-fetch from 3.2.10 to 3.3.0
- #872 build(deps-dev): bump jest-junit from 13.2.0 to 15.0.0
- #879 build(deps): bump decode-uri-component from 0.2.0 to 0.2.2
... (truncated)
c16abc2
chore(release): 4.1.1 (#1344)3e33441
fix: typo in disable_safe_directory (#1343)85aacc9
build(deps): bump github/codeql-action from 3.24.7 to 3.24.9 (#1341)4ea9be0
build(deps): bump undici from 5.28.2 to 5.28.3 (#1338)164fade
build(deps-dev): bump typescript from 5.4.2 to 5.4.3 (#1334)4621ecc
fix: force version (#1329)251ba34
build(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#1331)5a593a5
build(deps): bump github/codeql-action from 3.24.6 to 3.24.7 (#1332)a15c0e4
Removed mention of Mercurial (#1325)8be6ba5
build(deps-dev): bump typescript from 5.3.3 to 5.4.2 (#1319)Sourced from github.com/elastic/go-elasticsearch/v8's releases.
8.13.0
API
New APIS:
ConnectorSecretGet
ConnectorSecretPost
ConnectorSecretPut
ConnectorSecretDelete
ConnectorUpdateIndexName
ConnectorUpdateNative
ConnectorUpdateStatus
ConnectorUpdateAPIKeyDocumentID
ConnectorUpdateServiceDocumentType
EsqlAsyncQuery
Documentation
EsqlAsyncQueryGet
Documentation
ProfilingFlamegraph
Documentation
ProfilingStacktraces
Documentation
TextStructureTestGrokPattern
Documentation
Indices.ResolveCluster
Documentation
Security.QueryUser
DocumentationTyped API
indices.ResolveCluster
Documentationtextstructure.TestGrokPattern
DocumentationThanks to
@pakio
, transport now has an optional pool based compression option. elastic/elastic-transport-go#19 And to@tblyler
for fixing a very subtle memory leak in theBulkIndexer
. #797
Sourced from github.com/elastic/go-elasticsearch/v8's changelog.
8.13.0
API
New APIS:
ConnectorSecretGet
ConnectorSecretPost
ConnectorSecretPut
ConnectorSecretDelete
ConnectorUpdateIndexName
ConnectorUpdateNative
ConnectorUpdateStatus
ConnectorUpdateAPIKeyDocumentID
ConnectorUpdateServiceDocumentType
EsqlAsyncQuery
Documentation
EsqlAsyncQueryGet
Documentation
ProfilingFlamegraph
Documentation
ProfilingStacktraces
Documentation
TextStructureTestGrokPattern
Documentation
Indices.ResolveCluster
Documentation
Security.QueryUser
DocumentationTyped API
indices.ResolveCluster
Documentationtextstructure.TestGrokPattern
DocumentationThanks to
@pakio
, transport now has an optional pool based compression option. linkAnd to
@tblyler
for fixing a very subtle memory leak in theBulkIndexer
. #797
0ce9bb8
Release 8.13.02bdfb63
adding changelog for 8.13.0 (#838)
(#839)4acb97a
API: Update typed API v8.13.0 (b2c13a0) (#837)718e7aa
Bump elastictransport to v8.5.0 (#835)
(#836)37f00e3
Fixes #830
(#834)218d01d
[8.13] Update apis (#832)1123f6a
[Backport 8.13] go1.21 (#829)aa243a4
[DOCS] Adds compatibility matrix to docs. (#816)
(#818)8e14dd8
update changelog for 8.12.1 (#813)
(#815)215a321
update skip list for 8.12 (#810)
(#812)