From 540ba6a4e5fbc8b4a00ba796d1b35b5d16f55c23 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 1 Jul 2025 23:13:51 +0000 Subject: [PATCH 1/3] Bump astral-sh/setup-uv from 5.4.1 to 6.3.1 Bumps [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv) from 5.4.1 to 6.3.1. - [Release notes](https://github.com/astral-sh/setup-uv/releases) - [Commits](https://github.com/astral-sh/setup-uv/compare/0c5e2b8115b80b4c7c5ddf6ffdd634974642d182...bd01e18f51369d5a26f1651c3cb451d3417e3bba) --- updated-dependencies: - dependency-name: astral-sh/setup-uv dependency-version: 6.3.1 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/gha_security.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/gha_security.yml b/.github/workflows/gha_security.yml index ff207f3e8b7..f1b6d05bfe7 100644 --- a/.github/workflows/gha_security.yml +++ b/.github/workflows/gha_security.yml @@ -21,7 +21,7 @@ jobs: with: persist-credentials: false - name: Install the latest version of uv - uses: astral-sh/setup-uv@0c5e2b8115b80b4c7c5ddf6ffdd634974642d182 # v5.4.1 + uses: astral-sh/setup-uv@bd01e18f51369d5a26f1651c3cb451d3417e3bba # v6.3.1 - name: Run zizmor run: uvx zizmor --persona=pedantic --format sarif . > results.sarif env: From c32163850cd3c9f30ac100b0e8a2ffc86d594e85 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 1 Jul 2025 23:14:22 +0000 Subject: [PATCH 2/3] Add chango fragment for PR #4842 --- changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml | 6 ++++++ 1 file changed, 6 insertions(+) create mode 100644 changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml diff --git a/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml b/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml new file mode 100644 index 00000000000..ba50efdb2b4 --- /dev/null +++ b/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml @@ -0,0 +1,6 @@ +dependencies = "Bump astral-sh/setup-uv from 5.4.1 to 6.3.1" +internal = "Bump astral-sh/setup-uv from 5.4.1 to 6.3.1" +[[pull_requests]] +uid = "4842" +author_uid = "dependabot[bot]" +closes_threads = [] From 55f30d4e8afed42880ba37b6cabacd848e4606a3 Mon Sep 17 00:00:00 2001 From: Bibo-Joshi <22366557+Bibo-Joshi@users.noreply.github.com> Date: Wed, 2 Jul 2025 19:16:54 +0200 Subject: [PATCH 3/3] Update 4842.PSW9ZbxENhwfRhbSfemCwE.toml --- changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml b/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml index ba50efdb2b4..25aab233487 100644 --- a/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml +++ b/changes/unreleased/4842.PSW9ZbxENhwfRhbSfemCwE.toml @@ -1,6 +1,5 @@ -dependencies = "Bump astral-sh/setup-uv from 5.4.1 to 6.3.1" internal = "Bump astral-sh/setup-uv from 5.4.1 to 6.3.1" [[pull_requests]] uid = "4842" -author_uid = "dependabot[bot]" +author_uid = "dependabot" closes_threads = []