From 5761b5602ad8de620fd8e46938fed9d0d4bbdfa6 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 27 Oct 2025 07:25:15 +0000 Subject: [PATCH 1/2] :arrow_up: Bump actions/upload-artifact from 4.6.2 to 5.0.0 Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.6.2 to 5.0.0. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/v4.6.2...v5) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/ci.yml | 2 +- .github/workflows/scorecards.yml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 87779aa..9c4b866 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -131,7 +131,7 @@ jobs: - name: Add copyright/licence notice. run: | cd-license-files - - uses: actions/upload-artifact@v4.6.2 + - uses: actions/upload-artifact@v5.0.0 with: name: spdx path: ./spdx-tmp diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index e1d91e1..3ccc1bb 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -59,7 +59,7 @@ jobs: # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF # format to the repository Actions tab. - name: "Upload artifact" - uses: actions/upload-artifact@de65e23aa2b7e23d713bb51fbfcb6d502f8667d8 # v4.6.1 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v4.6.1 with: name: SARIF file path: results.sarif From 9e3ef68c2f758e5986292c26a9c82960d373ef55 Mon Sep 17 00:00:00 2001 From: Monty Bot Date: Mon, 27 Oct 2025 07:25:52 +0000 Subject: [PATCH 2/2] =?UTF-8?q?=F0=9F=93=B0=20Automatic=20changes=20?= =?UTF-8?q?=E2=9A=99=20Adding=20news=20file?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- news/20251027072552.bugfix | 1 + 1 file changed, 1 insertion(+) create mode 100644 news/20251027072552.bugfix diff --git a/news/20251027072552.bugfix b/news/20251027072552.bugfix new file mode 100644 index 0000000..775c94c --- /dev/null +++ b/news/20251027072552.bugfix @@ -0,0 +1 @@ +Dependency upgrade: upload-artifact-5.0.0