upgrade(ci): bump anchore/sbom-action from 0.13.1 to 0.20.11 in /.github/workflows#457
Conversation
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.13.1 to 0.20.11. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@06e1094...43a17d6) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-version: 0.20.11 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
|
|
|
The Pull Request has been marked as stale due to inactivity. Please show activity within 8 days or it will be automatically closed. |
|
The Pull Request has been marked as stale due to inactivity. Please show activity within 8 days or it will be automatically closed. |
Bumps anchore/sbom-action from 0.13.1 to 0.20.11.
Release notes
Sourced from anchore/sbom-action's releases.
... (truncated)
Commits
43a17d6chore(deps): update Syft to v1.38.2 (#557)4df6110chore(deps): bump@octokit/plugin-paginate-rest,@actions/artifactand@actio...2df107dchore(deps): bump js-yaml (#552)ef53eb7chore(deps): bump actions/checkout from 5.0.0 to 6.0.1 (#555)5758fe4chore(deps): bump peter-evans/create-pull-request from 7.0.8 to 7.0.11 (#556)fbfd9c6chore(deps): update Syft to v1.38.0 (#548)8e94d75chore(deps): update Syft to v1.36.0 (#546)aa0e114chore(deps): update Syft to v1.34.2 (#545)d8a2c01chore(deps): update Syft to v1.34.1 (#544)c73dd3fAdd llms.txt to describe this repo to our AI overlords 🤖 (#534)You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)