Sourced from actions/checkout's releases.
v7.0.0
What's Changed
- block checking out fork pr for pull_request_target and workflow_run by
@aiqiaoyin actions/checkout#2454- Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the minor-actions-dependencies group across 1 directory by
@dependabot[bot] in actions/checkout#2458- Bump flatted from 3.3.1 to 3.4.2 by
@dependabot[bot] in actions/checkout#2460- Bump js-yaml from 4.1.0 to 4.2.0 by
@dependabot[bot] in actions/checkout#2461- Bump
@actions/coreand@actions/tool-cacheand Remove uuid by@dependabot[bot] in actions/checkout#2459- upgrade module to esm and update dependencies by
@aiqiaoyin actions/checkout#2463- Bump the minor-npm-dependencies group across 1 directory with 3 updates by
@dependabot[bot] in actions/checkout#2462- getting ready for checkout v7 release by
@aiqiaoyin actions/checkout#2464- update error wording by
@aiqiaoyin actions/checkout#2467New Contributors
@aiqiaoymade their first contribution in actions/checkout#2454Full Changelog: https://github.com/actions/checkout/compare/v6.0.3...v7.0.0
v6.0.3
What's Changed
- Update changelog by
@ericsciplein actions/checkout#2357- fix: expand merge commit SHA regex and add SHA-256 test cases by
@yaananthin actions/checkout#2414- Fix checkout init for SHA-256 repositories by
@yaananthin actions/checkout#2439- Update changelog for v6.0.3 by
@yaananthin actions/checkout#2446New Contributors
@yaananthmade their first contribution in actions/checkout#2414Full Changelog: https://github.com/actions/checkout/compare/v6...v6.0.3
Sourced from actions/checkout's changelog.
Changelog
v7.0.0
- Block checking out fork PR for pull_request_target and workflow_run by
@aiqiaoyin actions/checkout#2454- Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the minor-actions-dependencies group across 1 directory by
@dependabot[bot] in actions/checkout#2458- Bump flatted from 3.3.1 to 3.4.2 by
@dependabot[bot] in actions/checkout#2460- Bump js-yaml from 4.1.0 to 4.2.0 by
@dependabot[bot] in actions/checkout#2461- Bump
@actions/coreand@actions/tool-cacheand Remove uuid by@dependabot[bot] in actions/checkout#2459- upgrade module to esm and update dependencies by
@aiqiaoyin actions/checkout#2463- Bump the minor-npm-dependencies group across 1 directory with 3 updates by
@dependabot[bot] in actions/checkout#2462v6.0.3
- Fix checkout init for SHA-256 repositories by
@yaananthin actions/checkout#2439- fix: expand merge commit SHA regex and add SHA-256 test cases by
@yaananthin actions/checkout#2414v6.0.2
- Fix tag handling: preserve annotations and explicit fetch-tags by
@ericsciplein actions/checkout#2356v6.0.1
- Add worktree support for persist-credentials includeIf by
@ericsciplein actions/checkout#2327v6.0.0
- Persist creds to a separate file by
@ericsciplein actions/checkout#2286- Update README to include Node.js 24 support details and requirements by
@salmanmkcin actions/checkout#2248v5.0.1
- Port v6 cleanup to v5 by
@ericsciplein actions/checkout#2301v5.0.0
- Update actions checkout to use node 24 by
@salmanmkcin actions/checkout#2226v4.3.1
- Port v6 cleanup to v4 by
@ericsciplein actions/checkout#2305v4.3.0
- docs: update README.md by
@motssin actions/checkout#1971- Add internal repos for checking out multiple repositories by
@mouismailin actions/checkout#1977- Documentation update - add recommended permissions to Readme by
@benwellsin actions/checkout#2043- Adjust positioning of user email note and permissions heading by
@joshmgrossin actions/checkout#2044- Update README.md by
@nebuk89in actions/checkout#2194- Update CODEOWNERS for actions by
@TingluoHuangin actions/checkout#2224- Update package dependencies by
@salmanmkcin actions/checkout#2236v4.2.2
url-helper.tsnow leverages well-known environment variables by@jww3in actions/checkout#1941- Expand unit test coverage for
isGhesby@jww3in actions/checkout#1946v4.2.1
- Check out other refs/* by commit if provided, fall back to ref by
@orhantoyin actions/checkout#1924
... (truncated)
9c091bb
update error wording (#2467)1044a6d
getting ready for checkout v7 release (#2464)f028218
Bump the minor-npm-dependencies group across 1 directory with 3 updates
(#2462)d914b26
upgrade module to esm and update dependencies (#2463)537c7ef
Bump @actions/core and @actions/tool-cache
and Remove uuid (#2459)130a169
Bump js-yaml from 4.1.0 to 4.2.0 (#2461)7d09575
Bump flatted from 3.3.1 to 3.4.2 (#2460)0f9f3aa
Bump actions/publish-immutable-action (#2458)f9e715a
block checking out fork pr for pull_request_target and workflow_run (#2454)df4cb1c
Update changelog for v6.0.3 (#2446)Sourced from step-security/harden-runner's releases.
v2.20.0
What's Changed
- Support for block policy for MacOS and Windows GitHub-hosted runners
- Support for Bitrise MacOS GitHub Actions runners
- HTTPS monitoring support for Bun for Linux runners (enterprise tier)
Full Changelog: https://github.com/step-security/harden-runner/compare/v2.19.4...v2.20.0
v2.19.4
What's Changed
- Improvements for HTTPS Monitoring for the Enterprise tier of Harden Runner
Full Changelog: https://github.com/step-security/harden-runner/compare/v2.19.3...v2.19.4
v2.19.3
What's Changed
- Default to audit mode when api-key missing with use-policy-store by
@varunsh-coderin step-security/harden-runner#665Full Changelog: https://github.com/step-security/harden-runner/compare/v2.19.2...v2.19.3
v2.19.2
What's Changed
- Update the Harden Runner agent for enterprise tier to use go 1.26 and fix minor bugs.
Full Changelog: https://github.com/step-security/harden-runner/compare/v2.19.1...v2.19.2
v2.19.1
What's Changed
- fix: detect ubuntu-slim runners early and bail out by
@devantlerin step-security/harden-runner#657What the fix changes
- Harden-Runner will detect
ubuntu-slimrunners and exit cleanly with an informational log message, instead of post harden runner step failing on chown: invalid user: 'undefined'.What the fix does not do
- Jobs running on
ubuntu-slimwill not be monitored by Harden-Runner. The agent relies on kernel-level features (that require elevated capabilities).- Per GitHub's docs on single-CPU runners: "The container for ubuntu-slim runners runs in unprivileged mode. This means that some operations requiring elevated privileges such as mounting file systems, using Docker-in-Docker, or accessing low-level kernel features are not supported." Those low-level kernel features are what the agent needs, so monitoring inside the unprivileged container is not feasible today.
For StepSecurity enterprise customers If your security posture requires that workflows are always monitored, you can block the use of
ubuntu-slimvia workflow run policies see the Runner Label Policy docs. This lets you enforce that jobs only run on monitored runner types.New Contributors
@devantlermade their first contribution in step-security/harden-runner#657Full Changelog: https://github.com/step-security/harden-runner/compare/v2.19.0...v2.19.1
v2.19.0
What's Changed
New Runner Support
... (truncated)
bf7454d
Merge pull request #673
from step-security/fix/aggregate-error-startup-hang1188420
Update non-TLS agent to v0.16.2162cfea
Update non-TLS agent to v0.16.1eb9e1f4
Bring macOS runner updates from PR 6741a10b01
Update Windows agent to v1.0.78b4a105
Apply npm audit fixes with release-age cooldown3626e03
Default TLS status check failures to enabled100e08b
Update agent-ebpf to v1.8.12774f75f
Update agent to v1.8.9f312657
Extend missing-agent-dir guard to Linux and macOS cleanup pathsSourced from dorny/paths-filter's releases.
v4.0.2
What's Changed
- fix warning message by
@cgundyin dorny/paths-filter#282- chore: fix GitHub spelling in logs by
@squatin dorny/paths-filter#278- fix: use rev-parse instead of branch --show-current for older git compat by
@saschabrattonin dorny/paths-filter#303- fix: work around git dubious ownership errors in container jobs by
@saschabrattonin dorny/paths-filter#317- docs: update changelog for v4.0.2 by
@saschabrattonin dorny/paths-filter#318New Contributors
@cgundymade their first contribution in dorny/paths-filter#282@squatmade their first contribution in dorny/paths-filter#278Full Changelog: https://github.com/dorny/paths-filter/compare/v4.0.1...v4.0.2
Sourced from dorny/paths-filter's changelog.
Changelog
v4.0.2
- Work around git dubious ownership errors in container jobs
- Use rev-parse instead of branch --show-current for older git compat
- Fix warning message
v4.0.1
v4.0.0
v3.0.3
v3.0.2
v3.0.1
v3.0.0
v2.11.1
- Update @actions/core to v1.10.0 - Fixes warning about deprecated set-output
- Document need for pull-requests: read permission
- Updating to actions/checkout@v3
v2.11.0
- Set list-files input parameter as not required
- Update Node.js
- Fix incorrect handling of Unicode characters in exec()
- Use Octokit pagination
- Updates real world links
v2.10.2
v2.10.1
v2.10.0
v2.9.3
... (truncated)
7b450ff
docs: update changelog for v4.0.2 (#318)9280377
fix: work around git dubious ownership errors in container jobs (#317)f3ceefd
fix: use rev-parse instead of branch --show-current for older git compat
(#303)61f87a1
chore: fix GitHub spelling in logs (#278)b82ff81
fix warning message (#282)Sourced from tj-actions/changed-files's releases.
v47.0.6
What's Changed
- Upgraded to v47.0.5 by
@github-actions[bot] in tj-actions/changed-files#2816- Updated README.md by
@github-actions[bot] in tj-actions/changed-files#2817- chore(deps): bump actions/setup-node from 6.2.0 to 6.3.0 by
@dependabot[bot] in tj-actions/changed-files#2818- chore(deps-dev): bump
@types/nodefrom 25.3.3 to 25.3.5 by@dependabot[bot] in tj-actions/changed-files#2820- chore(deps): bump github/codeql-action from 4.32.5 to 4.32.6 by
@dependabot[bot] in tj-actions/changed-files#2819- chore(deps-dev): bump
@types/nodefrom 25.3.5 to 25.5.0 by@dependabot[bot] in tj-actions/changed-files#2825- chore(deps): bump actions/download-artifact from 8.0.0 to 8.0.1 by
@dependabot[bot] in tj-actions/changed-files#2824- chore(deps): bump github/codeql-action from 4.32.6 to 4.35.1 by
@dependabot[bot] in tj-actions/changed-files#2834- chore(deps-dev): bump eslint-plugin-jest from 29.15.0 to 29.15.1 by
@dependabot[bot] in tj-actions/changed-files#2831- chore(deps): bump yaml from 2.8.2 to 2.8.3 by
@dependabot[bot] in tj-actions/changed-files#2830- chore(deps): bump nrwl/nx-set-shas from 4.4.0 to 5.0.1 by
@dependabot[bot] in tj-actions/changed-files#2829- chore(deps-dev): bump jest from 30.2.0 to 30.3.0 by
@dependabot[bot] in tj-actions/changed-files#2822- chore(deps): bump github/codeql-action from 4.35.1 to 4.35.2 by
@dependabot[bot] in tj-actions/changed-files#2849- chore(deps-dev): bump prettier from 3.8.1 to 3.8.3 by
@dependabot[bot] in tj-actions/changed-files#2848- chore(deps-dev): bump
@types/nodefrom 25.5.0 to 25.6.0 by@dependabot[bot] in tj-actions/changed-files#2846- chore(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by
@dependabot[bot] in tj-actions/changed-files#2844- chore(deps): bump peter-evans/create-pull-request from 8.1.0 to 8.1.1 by
@dependabot[bot] in tj-actions/changed-files#2843- chore(deps): bump lodash from 4.17.23 to 4.18.1 by
@dependabot[bot] in tj-actions/changed-files#2837Full Changelog: https://github.com/tj-actions/changed-files/compare/v47.0.5...v47.0.6
Sourced from tj-actions/changed-files's changelog.
Changelog
47.0.6 - (2026-04-18)
🔄 Update
- Updated README.md (#2817)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> Co-authored-by: Tonye Jack jtonye@ymail.com (c23d52b) - (github-actions[bot])⚙️ Miscellaneous Tasks
- deps: Bump lodash from 4.17.23 to 4.18.1 (#2837) (9426d40) - (dependabot[bot])
- deps: Bump peter-evans/create-pull-request from 8.1.0 to 8.1.1 (#2843) (32de080) - (dependabot[bot])
- deps: Bump actions/upload-artifact from 7.0.0 to 7.0.1 (#2844) (2487d12) - (dependabot[bot])
- deps-dev: Bump
@types/nodefrom 25.5.0 to 25.6.0 (#2846) (cef85a3) - (dependabot[bot])- deps-dev: Bump prettier from 3.8.1 to 3.8.3 (#2848) (7b082de) - (dependabot[bot])
- deps: Bump github/codeql-action from 4.35.1 to 4.35.2 (#2849) (07224ca) - (dependabot[bot])
- deps-dev: Bump jest from 30.2.0 to 30.3.0 (#2822) (2bb1357) - (dependabot[bot])
- deps: Bump nrwl/nx-set-shas from 4.4.0 to 5.0.1 (#2829) (cc98117) - (dependabot[bot])
- deps: Bump yaml from 2.8.2 to 2.8.3 (#2830) (786e421) - (dependabot[bot])
- deps-dev: Bump eslint-plugin-jest from 29.15.0 to 29.15.1 (#2831) (726b41b) - (dependabot[bot])
- deps: Bump github/codeql-action from 4.32.6 to 4.35.1 (#2834) (2c3585e) - (dependabot[bot])
- deps: Bump actions/download-artifact from 8.0.0 to 8.0.1 (#2824) (3d37a7f) - (dependabot[bot])
- deps-dev: Bump
@types/nodefrom 25.3.5 to 25.5.0 (#2825) (445b0eb) - (dependabot[bot])- deps: Bump github/codeql-action from 4.32.5 to 4.32.6 (#2819) (4f892cd) - (dependabot[bot])
- deps-dev: Bump
@types/nodefrom 25.3.3 to 25.3.5 (#2820) (6118651) - (dependabot[bot])- deps: Bump actions/setup-node from 6.2.0 to 6.3.0 (#2818) (e517d7a) - (dependabot[bot])
⬆️ Upgrades
- Upgraded to v47.0.5 (#2816)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> Co-authored-by: Tonye Jack jtonye@ymail.com (4750530) - (github-actions[bot])47.0.5 - (2026-03-03)
🔄 Update
- Updated README.md (#2805)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> (35dace0) - (github-actions[bot])
- Updated README.md (#2803)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> Co-authored-by: Tonye Jack jtonye@ymail.com (9ee99eb) - (github-actions[bot])⚙️ Miscellaneous Tasks
... (truncated)
9426d40
chore(deps): bump lodash from 4.17.23 to 4.18.1 (#2837)32de080
chore(deps): bump peter-evans/create-pull-request from 8.1.0 to 8.1.1
(#2843)2487d12
chore(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 (#2844)cef85a3
chore(deps-dev): bump @types/node from 25.5.0 to 25.6.0
(#2846)7b082de
chore(deps-dev): bump prettier from 3.8.1 to 3.8.3 (#2848)07224ca
chore(deps): bump github/codeql-action from 4.35.1 to 4.35.2 (#2849)2bb1357
chore(deps-dev): bump jest from 30.2.0 to 30.3.0 (#2822)cc98117
chore(deps): bump nrwl/nx-set-shas from 4.4.0 to 5.0.1 (#2829)786e421
chore(deps): bump yaml from 2.8.2 to 2.8.3 (#2830)726b41b
chore(deps-dev): bump eslint-plugin-jest from 29.15.0 to 29.15.1 (#2831)Sourced from actions/cache/restore's releases.
v6.1.0
What's Changed
- Bump
@actions/cacheto v6.1.0 - handle read-only cache access by@jasonginin actions/cache#1768Full Changelog: https://github.com/actions/cache/compare/v6...v6.1.0
v6.0.0
What's Changed
- Update packages, migrate to ESM by
@Samiratin actions/cache#1760Full Changelog: https://github.com/actions/cache/compare/v5...v6.0.0
v5.1.0
What's Changed
- Bump
@actions/cacheto v5.1.0 - handle read-only cache access by@jasonginin actions/cache#1775Full Changelog: https://github.com/actions/cache/compare/v5...v5.1.0
Sourced from actions/cache/restore's changelog.
Releases
How to prepare a release
[!NOTE] Relevant for maintainers with write access only.
- Switch to a new branch from
main.- Run
npm testto ensure all tests are passing.- Update the version in
https://github.com/actions/cache/blob/main/package.json.- Run
npm run buildto update the compiled files.- Update this
https://github.com/actions/cache/blob/main/RELEASES.mdwith the new version and changes in the## Changelogsection.- Run
licensed cacheto update the license report.- Run
licensed statusand resolve any warnings by updating thehttps://github.com/actions/cache/blob/main/.licensed.ymlfile with the exceptions.- Commit your changes and push your branch upstream.
- Open a pull request against
mainand get it reviewed and merged.- Draft a new release https://github.com/actions/cache/releases use the same version number used in
package.json
- Create a new tag with the version number.
- Auto generate release notes and update them to match the changes you made in
RELEASES.md.- Toggle the set as the latest release option.
- Publish the release.
- Navigate to https://github.com/actions/cache/actions/workflows/release-new-action-version.yml
- There should be a workflow run queued with the same version number.
- Approve the run to publish the new version and update the major tags for this action.
Changelog
6.1.0
- Bump
@actions/cacheto v6.1.0 to pick up actions/toolkit#2435 Handle cache write error due to read-only token- Switch redundant "Cache save failed" warning to debug log in save-only
6.0.0
- Updated
@actions/cacheto ^6.0.1,@actions/coreto ^3.0.1,@actions/execto ^3.0.0,@actions/ioto ^3.0.2- Migrated to ESM module system
- Upgraded Jest to v30 and test infrastructure to be ESM compatible
5.0.4
- Bump
minimatchto v3.1.5 (fixes ReDoS via globstar patterns)- Bump
undicito v6.24.1 (WebSocket decompression bomb protection, header validation fixes)- Bump
fast-xml-parserto v5.5.65.0.3
- Bump
@actions/cacheto v5.0.5 (Resolves: https://github.com/actions/cache/security/dependabot/33)- Bump
@actions/coreto v2.0.35.0.2
... (truncated)
55cc834
Merge pull request #1768
from jasongin/readonly-cached8cd72f
Bump @actions/cache to v6.1.0 - handle cache write error
due to RO token2c8a9bd
Merge pull request #1760
from actions/samirat/esm_migration_and_package_updatee9b91fd
Prettier fixese4884b8
Rebuild dist10baf01
Fixed licensese39b386
Fix test mock return orderb692820
PR feedback6074912
Rebuild dist bundles as ESM to match type:module5a912e8
Fix lint and jest issuesSourced from actions/cache/save's releases.
v6.1.0
What's Changed
- Bump
@actions/cacheto v6.1.0 - handle read-only cache access by@jasonginin actions/cache#1768Full Changelog: https://github.com/actions/cache/compare/v6...v6.1.0
v6.0.0
What's Changed
- Update packages, migrate to ESM by
@Samiratin actions/cache#1760Full Changelog: https://github.com/actions/cache/compare/v5...v6.0.0
v5.1.0
What's Changed
- Bump
@actions/cacheto v5.1.0 - handle read-only cache access by@jasonginin actions/cache#1775Full Changelog: https://github.com/actions/cache/compare/v5...v5.1.0
Sourced from actions/cache/save's changelog.
Releases
How to prepare a release
[!NOTE] Relevant for maintainers with write access only.
- Switch to a new branch from
main.- Run
npm testto ensure all tests are passing.- Update the version in
https://github.com/actions/cache/blob/main/package.json.- Run
npm run buildto update the compiled files.- Update this
https://github.com/actions/cache/blob/main/RELEASES.mdwith the new version and changes in the## Changelogsection.- Run
licensed cacheto update the license report.- Run
licensed statusand resolve any warnings by updating thehttps://github.com/actions/cache/blob/main/.licensed.ymlfile with the exceptions.- Commit your changes and push your branch upstream.
- Open a pull request against
mainand get it reviewed and merged.- Draft a new release https://github.com/actions/cache/releases use the same version number used in
package.json
- Create a new tag with the version number.
- Auto generate release notes and update them to match the changes you made in
RELEASES.md.- Toggle the set as the latest release option.
- Publish the release.
- Navigate to https://github.com/actions/cache/actions/workflows/release-new-action-version.yml
- There should be a workflow run queued with the same version number.
- Approve the run to publish the new version and update the major tags for this action.
Changelog
6.1.0
- Bump
@actions/cacheto v6.1.0 to pick up actions/toolkit#2435 Handle cache write error due to read-only token- Switch redundant "Cache save failed" warning to debug log in save-only
6.0.0
- Updated
@actions/cacheto ^6.0.1,@actions/coreto ^3.0.1,@actions/execto ^3.0.0,@actions/ioto ^3.0.2- Migrated to ESM module system
- Upgraded Jest to v30 and test infrastructure to be ESM compatible
5.0.4
- Bump
minimatchto v3.1.5 (fixes ReDoS via globstar patterns)- Bump
undicito v6.24.1 (WebSocket decompression bomb protection, header validation fixes)- Bump
fast-xml-parserto v5.5.65.0.3
- Bump
@actions/cacheto v5.0.5 (Resolves: https://github.com/actions/cache/security/dependabot/33)- Bump
@actions/coreto v2.0.35.0.2
... (truncated)
55cc834
Merge pull request #1768
from jasongin/readonly-cached8cd72f
Bump @actions/cache to v6.1.0 - handle cache write error
due to RO token2c8a9bd
Merge pull request #1760
from actions/samirat/esm_migration_and_package_updatee9b91fd
Prettier fixese4884b8
Rebuild dist10baf01
Fixed licensese39b386
Fix test mock return orderb692820
PR feedback6074912
Rebuild dist bundles as ESM to match type:module5a912e8
Fix lint and jest issuesSourced from docker/login-action's releases.
v4.4.0
- Skip empty
registry-authsecret mask by@crazy-maxin docker/login-action#1035- Bump
@aws-sdk/client-ecrand@aws-sdk/client-ecr-publicto 3.1077.0 docker/login-action#1034Full Changelog: https://github.com/docker/login-action/compare/v4.3.0...v4.4.0
v4.3.0
- Preserve names in esbuild bundle by
@crazy-maxin docker/login-action#1022- Bump
@aws-sdk/client-ecrand@aws-sdk/client-ecr-publicto 3.1076.0 docker/login-action#999 docker/login-action#1030- Bump
@docker/actions-toolkitfrom 0.90.0 to 0.92.0 in docker/login-action#1004 docker/login-action#1027- Bump
@sigstore/corefrom 3.1.0 to 3.2.1 in docker/login-action#1023- Bump
@sigstore/verifyfrom 3.1.0 to 3.1.1 in docker/login-action#1029- Bump http-proxy-agent and https-proxy-agent to 9.1.0 in docker/login-action#1017
- Bump js-yaml from 4.1.1 to 5.2.0 in docker/login-action#1028
- Bump sigstore from 4.1.0 to 4.1.1 in docker/login-action#1031
- Bump tmp from 0.2.5 to 0.2.7 in docker/login-action#1002
- Bump undici from 6.24.1 to 6.27.0 in docker/login-action#1020
- Bump vite from 7.3.3 to 7.3.6 in docker/login-action#1019
Full Changelog: https://github.com/docker/login-action/compare/v4.2.0...v4.3.0
v4.2.0
- Bump
@actions/corefrom 3.0.0 to 3.0.1 in docker/login-action#976- Bump
@aws-sdk/client-ecrand@aws-sdk/client-ecr-publicto 3.1050.0 in docker/login-action#960- Bump
@docker/actions-toolkitfrom 0.86.0 to 0.90.0 in docker/login-action#970- Bump brace-expansion from 2.0.1 to 5.0.6 in docker/login-action#993
- Bump fast-xml-builder from 1.1.4 to 1.2.0 in docker/login-action#985
- Bump fast-xml-parser from 5.3.6 to 5.8.0 in docker/login-action#963
- Bump http-proxy-agent and https-proxy-agent to 9.0.0 in docker/login-action#961
- Bump postcss from 8.5.6 to 8.5.10 in docker/login-action#979
- Bump tar from 6.2.1 to 7.5.15 in docker/login-action#991
- Bump vite from 7.3.1 to 7.3.3 in docker/login-action#986
Full Changelog: https://github.com/docker/login-action/compare/v4.1.0...v4.2.0
af1e73f
Merge pull request #1034
from docker/dependabot/npm_and_yarn/aws-sdk-dependen...da722bd
[dependabot skip] chore: update generated content2916ad6
build(deps): bump the aws-sdk-dependencies group across 1 directory with
2 up...ca0a662
Merge pull request #1035
from crazy-max/fix-registry-auth-empty-maskc455755
chore: update generated content4835190
skip empty registry-auth secret mask992421c
Merge pull request #1033
from docker/dependabot/github_actions/docker/bake-ac...