Bump the "all" group with 2 updates across multiple ecosystems#1023
Merged
MikeMcQuaid merged 1 commit intomainfrom Mar 16, 2026
Merged
Bump the "all" group with 2 updates across multiple ecosystems#1023MikeMcQuaid merged 1 commit intomainfrom
MikeMcQuaid merged 1 commit intomainfrom
Conversation
Bumps the all group with 4 updates: [github/codeql-action](https://github.com/github/codeql-action), [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action), [docker/login-action](https://github.com/docker/login-action) and [docker/build-push-action](https://github.com/docker/build-push-action). Updates `github/codeql-action` from 4.32.4 to 4.32.6 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@89a39a4...0d579ff) Updates `docker/setup-buildx-action` from 3.12.0 to 4.0.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@8d2750c...4d04d5d) Updates `docker/login-action` from 3.7.0 to 4.0.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@c94ce9f...b45d80f) Updates `docker/build-push-action` from 6.19.2 to 7.0.0 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](docker/build-push-action@10e90e3...d08e5c3) build(deps): bump the all group with 10 updates Bumps the all group with 10 updates: | Package | From | To | | --- | --- | --- | | [sorbet-runtime](https://github.com/sorbet/sorbet) | `0.6.12997` | `0.6.13028` | | [rubocop](https://github.com/rubocop/rubocop) | `1.85.0` | `1.85.1` | | [sorbet](https://github.com/sorbet/sorbet) | `0.6.12997` | `0.6.13028` | | [sorbet-static-and-runtime](https://github.com/sorbet/sorbet) | `0.6.12997` | `0.6.13028` | | [rspec-rails](https://github.com/rspec/rspec-rails) | `8.0.3` | `8.0.4` | | [action_text-trix](https://github.com/basecamp/trix) | `2.1.16` | `2.1.17` | | [rubocop-ast](https://github.com/rubocop/rubocop-ast) | `1.49.0` | `1.49.1` | | [sorbet-static](https://github.com/sorbet/sorbet) | `0.6.12997` | `0.6.13028` | | [tailwindcss-ruby](https://github.com/flavorjones/tailwindcss-ruby) | `4.2.0` | `4.2.1` | | [timeout](https://github.com/ruby/timeout) | `0.6.0` | `0.6.1` | Updates `sorbet-runtime` from 0.6.12997 to 0.6.13028 - [Release notes](https://github.com/sorbet/sorbet/releases) - [Commits](https://github.com/sorbet/sorbet/commits) Updates `rubocop` from 1.85.0 to 1.85.1 - [Release notes](https://github.com/rubocop/rubocop/releases) - [Changelog](https://github.com/rubocop/rubocop/blob/master/CHANGELOG.md) - [Commits](rubocop/rubocop@v1.85.0...v1.85.1) Updates `sorbet` from 0.6.12997 to 0.6.13028 - [Release notes](https://github.com/sorbet/sorbet/releases) - [Commits](https://github.com/sorbet/sorbet/commits) Updates `sorbet-static-and-runtime` from 0.6.12997 to 0.6.13028 - [Release notes](https://github.com/sorbet/sorbet/releases) - [Commits](https://github.com/sorbet/sorbet/commits) Updates `rspec-rails` from 8.0.3 to 8.0.4 - [Changelog](https://github.com/rspec/rspec-rails/blob/main/Changelog.md) - [Commits](rspec/rspec-rails@v8.0.3...v8.0.4) Updates `action_text-trix` from 2.1.16 to 2.1.17 - [Release notes](https://github.com/basecamp/trix/releases) - [Commits](basecamp/trix@v2.1.16...v2.1.17) Updates `rubocop-ast` from 1.49.0 to 1.49.1 - [Release notes](https://github.com/rubocop/rubocop-ast/releases) - [Changelog](https://github.com/rubocop/rubocop-ast/blob/master/CHANGELOG.md) - [Commits](rubocop/rubocop-ast@v1.49.0...v1.49.1) Updates `sorbet-static` from 0.6.12997 to 0.6.13028 - [Release notes](https://github.com/sorbet/sorbet/releases) - [Commits](https://github.com/sorbet/sorbet/commits) Updates `tailwindcss-ruby` from 4.2.0 to 4.2.1 - [Release notes](https://github.com/flavorjones/tailwindcss-ruby/releases) - [Changelog](https://github.com/flavorjones/tailwindcss-ruby/blob/main/CHANGELOG.md) - [Commits](flavorjones/tailwindcss-ruby@v4.2.0...v4.2.1) Updates `timeout` from 0.6.0 to 0.6.1 - [Release notes](https://github.com/ruby/timeout/releases) - [Commits](ruby/timeout@v0.6.0...v0.6.1) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: 4.32.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: docker/setup-buildx-action dependency-version: 4.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: docker/login-action dependency-version: 4.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: docker/build-push-action dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: sorbet-runtime dependency-version: 0.6.13028 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: all - dependency-name: rubocop dependency-version: 1.85.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: all - dependency-name: sorbet dependency-version: 0.6.13028 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: all - dependency-name: sorbet-static-and-runtime dependency-version: 0.6.13028 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: all - dependency-name: rspec-rails dependency-version: 8.0.4 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: all - dependency-name: action_text-trix dependency-version: 2.1.17 dependency-type: indirect update-type: version-update:semver-patch dependency-group: all - dependency-name: rubocop-ast dependency-version: 1.49.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: all - dependency-name: sorbet-static dependency-version: 0.6.13028 dependency-type: indirect update-type: version-update:semver-patch dependency-group: all - dependency-name: tailwindcss-ruby dependency-version: 4.2.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: all - dependency-name: timeout dependency-version: 0.6.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: all ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the all group with 4 updates: github/codeql-action, docker/setup-buildx-action, docker/login-action and docker/build-push-action.
Updates
github/codeql-actionfrom 4.32.4 to 4.32.6Release notes
Sourced from github/codeql-action's releases.
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
0d579ffMerge pull request #3551 from github/update-v4.32.6-72d2d850dd4c6be7Update changelog for v4.32.672d2d85Merge pull request #3548 from github/update-bundle/codeql-bundle-v2.24.323f983cMerge pull request #3544 from github/dependabot/github_actions/dot-github/wor...832e97cMerge pull request #3545 from github/dependabot/github_actions/dot-github/wor...5ef38c0Merge pull request #3546 from github/dependabot/npm_and_yarn/tar-7.5.1080c9cdaAdd changelog notef2669ddUpdate default bundle to codeql-bundle-v2.24.3bd03c44Merge branch 'main' into dependabot/github_actions/dot-github/workflows/actio...102d762Bump tar from 7.5.7 to 7.5.10Updates
docker/setup-buildx-actionfrom 3.12.0 to 4.0.0Release notes
Sourced from docker/setup-buildx-action's releases.
Commits
4d04d5dMerge pull request #485 from docker/dependabot/npm_and_yarn/docker/actions-to...cd74e05chore: update generated contenteee38ecbuild(deps): bump@docker/actions-toolkitfrom 0.77.0 to 0.79.07a83f65Merge pull request #484 from docker/dependabot/github_actions/docker/setup-qe...a5aa967Merge pull request #464 from crazy-max/rm-deprecatede73d53fbuild(deps): bump docker/setup-qemu-action from 3 to 428a438eMerge pull request #483 from crazy-max/node24034e9d3chore: update generated contentb4664d8remove deprecated inputs/outputsa8257denode 24 as default runtimeUpdates
docker/login-actionfrom 3.7.0 to 4.0.0Release notes
Sourced from docker/login-action's releases.
Commits
b45d80fMerge pull request #929 from crazy-max/node24176cb9cnode 24 as default runtimecad8984Merge pull request #920 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...92cbcb2chore: update generated content5a2d6a7build(deps): bump the aws-sdk-dependencies group with 2 updates44512b6Merge pull request #928 from docker/dependabot/npm_and_yarn/docker/actions-to...28737a5chore: update generated contentdac0793build(deps): bump@docker/actions-toolkitfrom 0.76.0 to 0.77.062029f3Merge pull request #919 from docker/dependabot/npm_and_yarn/actions/core-3.0.008c8f06chore: update generated contentUpdates
docker/build-push-actionfrom 6.19.2 to 7.0.0Release notes
Sourced from docker/build-push-action's releases.
Commits
d08e5c3Merge pull request #1479 from docker/dependabot/npm_and_yarn/docker/actions-t...cbd2dffchore: update generated contentf76f51fchore(deps): Bump@docker/actions-toolkitfrom 0.78.0 to 0.79.07d03e66Merge pull request #1473 from crazy-max/rm-deprecated-envs98f853dchore: update generated contentcadccf6remove deprecated envs03fe877Merge pull request #1478 from docker/dependabot/github_actions/docker/setup-b...827e366chore(deps): Bump docker/setup-buildx-action from 3 to 4e25db87Merge pull request #1474 from crazy-max/rm-export-build-tool1ac2573Merge pull request #1470 from crazy-max/node24Bumps the all group with 10 updates:
0.6.129970.6.130281.85.01.85.10.6.129970.6.130280.6.129970.6.130288.0.38.0.42.1.162.1.171.49.01.49.10.6.129970.6.130284.2.04.2.10.6.00.6.1Updates
sorbet-runtimefrom 0.6.12997 to 0.6.13028Release notes
Sourced from sorbet-runtime's releases.
... (truncated)
Commits
Updates
rubocopfrom 1.85.0 to 1.85.1Release notes
Sourced from rubocop's releases.
Changelog
Sourced from rubocop's changelog.
Commits
fd07672Cut 1.85.15c41f90Update Changelog5e8e492Merge pull request #14975 from sferik/fix_1497390f3780FixStyle/ReduceToHashfalse positive when accumulator is read in key/value90c7959Merge pull request #14972 from lovro-bikic/relevant-options-digest-cache3c20e8dCache relevant options digeste305f79Merge pull request #14969 from lovro-bikic/autoload-formatter-constants3f0a304Autoload formatters; they're required only when actually usedeb973f4Merge pull request #14966 from koic/fix_false_positives_in_style_redundant_pa...3338a40[Fix #14964] Fix false positives inStyle/RedundantParenthesesUpdates
sorbetfrom 0.6.12997 to 0.6.13028Release notes
Sourced from sorbet's releases.
... (truncated)
Commits
Updates
sorbet-static-and-runtimefrom 0.6.12997 to 0.6.13028Release notes
Sourced from sorbet-static-and-runtime's releases.
... (truncated)
Commits
Updates
rspec-railsfrom 8.0.3 to 8.0.4Changelog
Sourced from rspec-rails's changelog.
Commits
222fb55Drop compatibility check rails version to 8.0.0769a3c4v8.0.40549e59Merge pull request #2895 from rspec/add-rspec-4-ci-checkUpdates
action_text-trixfrom 2.1.16 to 2.1.17Release notes
Sourced from action_text-trix's releases.
Commits
2e46d51v2.1.1753197abMerge pull request #1282 from basecamp/h1-3581911-serialized-attr3229c29Fix stored XSS via data-trix-serialized-attributes sanitizer bypass (H1 #3581...7069343Merge pull request #1239 from Cromian/patch-1d9dbf0aMerge pull request #1280 from basecamp/fix-bullets-merging-with-prior-elementbef13e2Fix bullets merging with prior elements when the first node is removed194a36cMerge pull request #1275 from basecamp/flavorjones/wtr-failure-messagesc94abe6Use source-map to get better test failure messages6f6ab9aTest runner reporter emits failure details1d2d1a3Merge pull request #1276 from basecamp/flavorjones/ci-green-20260109Updates
rubocop-astfrom 1.49.0 to 1.49.1Changelog
Sourced from rubocop-ast's changelog.
Commits
c249734Cut 1.49.1145839bChangelogaea6f62Fix unification variables not persisting in any-order nodes1e260ffFix latest RuboCopa9c9ffbAdd blocknilarg2bcb818Suppress RuboCop's offense380e10dDropprism_specfrom the default Rake task6903649Restore docs/antora.ymlUpdates
sorbet-staticfrom 0.6.12997 to 0.6.13028Release notes
Sourced from sorbet-static's releases.
... (truncated)
Commits
Updates
tailwindcss-rubyfrom 4.2.0 to 4.2.1Release notes
Sourced from tailwindcss-ruby's releases.
Changelog
Sourced from tailwindcss-ruby's changelog.
Commits
16fd116Merge pull request #105 from flavorjones/bot-dep-tailwindcss-v4.2.11c95aabdep: update to Tailwind CSS v4.2.15e84094ci: skeleton workflows so I can iterate in a PR9adac31dev: Add a dependabot file for actions and bundler5adb316Merge pull request #98 from flavorjones/flavorjones/harden-github-actionsd070836ci: harden github actions239a04bdep(dev): bundle updateUpdates
timeoutfrom 0.6.0 to 0.6.1Release notes
Sourced from timeout's releases.
Commits
951e802Bump version to 0.6.19b93553Remove warningse4aa360Fix timing-dependent test55d7c84Compatibility with Fiber scheduler. (#97)35504baMerge pull request #98 from ruby/dependabot/github_actions/step-security/hard...5c0e61eBump step-security/harden-runner from 2.15.0 to 2.15.1f4e1cafMerge pull request #96 from ruby/dependabot/github_actions/step-security/hard...7960b04Bump step-security/harden-runner from 2.14.2 to 2.15.029e4fd3Merge pull request #95 from ruby/dependabot/github_actions/step-security/hard...ccbc5e6Bump step-security/harden-runner from 2.14.1 to 2.14.2Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions